Ecoman
Well-Known Member
- Joined
- Sep 8, 2010
- Messages
- 1,896
- Country Flag
Just a quick heads up about a virus I have recently encountered
Last night while surfing the web for wiring diagrams for the MK4 Hilux. I managed to access a site that kindly downloaded a virus to my computer. The first thing I knew about it was a pop up window from AVG telling me about a threat. The next thing I knew about 20 alerts popped up saying that certain system tasks could not be performed. I then got a window up like this:
It won't let you do anything other than move the window of click the buttons.
I then got the following warnings flashing up randomly fron the taskbar:
The worst bit about it is that it hides everything on your hard drive or any hard drive attached to, or in your computer. It also empties your start menu so that all you can do is restart or switch off your computer. Basically it renders the computer unuseable. It also keeps asking you to buy a piece of software called "System Fix" that will eradicate the virus. The idea being that you enter your credit card details and pay for this illegal software. I never buy software in these circumstances as it is obviously a sham and there is always a free solution to antivirus/ malware issues.
At this point I started to panic but had the sense to walk away and have a think. It was then I decided that if all the files were gone why was this program and windows still operating. I had my netbook to hand and started browsing phrases that popped up in the warnings and finally got a solution to the problem.
The trick to its removal is to make the virus think you have paid for the solution to the issue by entering cracked codes from the website below. That way it gives you some breathing space. Once you have got the space you can then work through the rest of the solution to remove the virus from your system.
Another problem with this SF virus is that it can download a whole software bundle onto your computer so you will need to be pretty vigilant when it comes to removing it as it is acompanied by different trojans and worms that will alter registry keys and the like. Use all the tools linked to in the solution and follow the instructions to the letter. Also make a point of deleting the rogue files in the "application data" folder after the process has been followed as it can miss a few.
The only part of the following solution I didn't agree with was using the "STOPzilla" software as, although the scan is free, you have to pay for the virus removal. Also it not as good as "Malwarebytes" as it missed a couple of trojans that MB picked up.
http://deletemalware.blogspot.com/2011/09/how-to-remove-data-recovery-uninstall.html
Oh and one more tip is the file names of the SF virus can change so don't specifically look for what is quoted in the solution.
I hope you don't get this virus as its a PITA to get rid off and took me about 6 hours in total to be sure the virus and all its mates was all wiped from the system. But on the bright side it looks worse than it really is and it finally kicked my arse to sorting out the files and folders on my machine.

Last night while surfing the web for wiring diagrams for the MK4 Hilux. I managed to access a site that kindly downloaded a virus to my computer. The first thing I knew about it was a pop up window from AVG telling me about a threat. The next thing I knew about 20 alerts popped up saying that certain system tasks could not be performed. I then got a window up like this:
It won't let you do anything other than move the window of click the buttons.
I then got the following warnings flashing up randomly fron the taskbar:
The worst bit about it is that it hides everything on your hard drive or any hard drive attached to, or in your computer. It also empties your start menu so that all you can do is restart or switch off your computer. Basically it renders the computer unuseable. It also keeps asking you to buy a piece of software called "System Fix" that will eradicate the virus. The idea being that you enter your credit card details and pay for this illegal software. I never buy software in these circumstances as it is obviously a sham and there is always a free solution to antivirus/ malware issues.
At this point I started to panic but had the sense to walk away and have a think. It was then I decided that if all the files were gone why was this program and windows still operating. I had my netbook to hand and started browsing phrases that popped up in the warnings and finally got a solution to the problem.
The trick to its removal is to make the virus think you have paid for the solution to the issue by entering cracked codes from the website below. That way it gives you some breathing space. Once you have got the space you can then work through the rest of the solution to remove the virus from your system.
Another problem with this SF virus is that it can download a whole software bundle onto your computer so you will need to be pretty vigilant when it comes to removing it as it is acompanied by different trojans and worms that will alter registry keys and the like. Use all the tools linked to in the solution and follow the instructions to the letter. Also make a point of deleting the rogue files in the "application data" folder after the process has been followed as it can miss a few.
The only part of the following solution I didn't agree with was using the "STOPzilla" software as, although the scan is free, you have to pay for the virus removal. Also it not as good as "Malwarebytes" as it missed a couple of trojans that MB picked up.
http://deletemalware.blogspot.com/2011/09/how-to-remove-data-recovery-uninstall.html
Oh and one more tip is the file names of the SF virus can change so don't specifically look for what is quoted in the solution.
I hope you don't get this virus as its a PITA to get rid off and took me about 6 hours in total to be sure the virus and all its mates was all wiped from the system. But on the bright side it looks worse than it really is and it finally kicked my arse to sorting out the files and folders on my machine.
