Re: Help With w32.spybot.worm



Is the system fully patched? Most worms use spread by exploiting the
vulnerabilities in the Operating System. First thing you should do is to
make sure that your system is up-to-date. Personally, I've seen several
cases where the system (not fully patched) is affected, even with a good
firewall application installed.

Visit http://windowsupdate.microsoft.com to get download updates for the
Operating System. It's recommended that you install the "Microsoft Update"
ActiveX control when promped by the Windows Update site. Microsoft Update is
a recent addition wherein you can download the updates for the Operating
System, as well as for the Microsoft Office products.

Secondly, use a third-party firewall like Zone Alarm. This is because the
Windows XP's built-in firewall monitors the inbound traffic pretty well, but
does not monitor outgoing traffic.

IMHO, use a better anti-virus application (in terms of detection and memory
use). AVG Anti-virus (from www.grisoft.com) is what I use and can recommend.

If your system is already infestated badly, don't hesitate to backup the
existing data to a removable media and then do a clean installation
(preferably with a XP CD-ROM with Service Pack 2 integration, a.k.a
"slipstreamed cd"). Visit the following links to know how to create a
bootable Windows XP CD-ROM (if you have a Windows XP retail CD already) with
Service Pack 2 integration.

How to integrate Windows XP Service Pack 2 files into the Windows XP
installation folder:
http://support.microsoft.com/kb/900871/
http://www.winsupersite.com/showcase/windowsxp_sp2_slipstream.asp

[Automated slipstreaming] AutoStreamer 1.0.30:
http://www.majorgeeks.com/download4444.html

Importantly, don't forget to get the post-SP2 updates after the clean
install. Plenty of updates were security were released post SP2, available
via Windows Update site.

--
Regards,

Ramesh Srinivasan, Microsoft MVP [Windows XP Shell/User]
Windows® XP Troubleshooting http://www.winhelponline.com


"jnjmitch" <jnjmitch@xxxxxxxxxx> wrote in message
news:1156434575.523198.11690@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
A Norton scan tells me that I have the w32.spybot.worm. I'm currently
doing a Norton scan from safe mode, but it was almost done before I
left for work and hadn't detected anything. My system has become
almost useless when in regular mode- I get tons of pop-ups, my DSL
light flashes constantly indicating activity even without a browser
open, and I can't access various features like system manager, regedit,

add/remove, etc. Any suggestions beyond formatting my drive? Are
Norton's steps for removing the worm from the registry effective? Any
programs that specifically target this virus? How do I tell which file
has specifically been
infected?

(And yes, I'm all too aware of what I need to do to prevent it. I had
briefly disconnected my firewall, and apparently became infected with
it almost immediately!!!)


Thanks!


.



Relevant Pages

  • Re: Since January 18th, no high-priority updates...
    ... Since I do not intend to install NIS 2006 again, I thought it does not matter ... I checked about what you say (time of the Automatic Updates) and changed it ... I uninstalled NIS 2006... ... 2 February 2006 Windows Update Agent Unable to Connect: ...
    (microsoft.public.windowsupdate)
  • Re: no signal error
    ... from biosupdate to the other updates. ... And also when i finally get into windows and just doing regular tasks as ... Select "review and install updates" and "install ... If you removed any softwares in step 7, restart computer. ...
    (microsoft.public.windowsxp.help_and_support)
  • Re: Latest Update Wreaked Havok - Cannot Restore
    ... track of what you install in order to be able to uninstall it. ... been diligent with your critical updates, ... Windows Update ... You should at least turn on the built in firewall. ...
    (microsoft.public.windowsxp.perform_maintain)
  • Re: Windows updates fail after install of SP2
    ... I'm sure I didn't delete any log files since my last update though; especially anything to do with Windows Update. ... Are the updates now showing in Add/Remove Programs in the Control ... I thought I would turn automatic updates on so that it would automatically download and install updates but that didn't seem to do anything either. ... The issue of updates not being offered after the application of SP2 is a new twist on an old theme ... ...
    (microsoft.public.windowsupdate)
  • Re: Windows 98 box is "owned"
    ... Microsoft officially is no longer issuing *new* updates for Windos 98, ... on Windows update, although you will find all the "critical" (as defined ... Perhaps it is time to say screw it and install ... You noted that your mother has ZA. ...
    (Security-Basics)