Virus won’t let me do anything online

Status
Not open for further replies.
May 22, 2018
2
0
10
I have a virus on my hp laptop and need some help. It wont let me run defender (says something about the app being turned off by group policy). When I turn WiFi on I only have a limited amount of time to do anything before this “blue screen of death” comes on asking for some activation key and has some sketchy phone number to call (not legit, called and some middle eastern guy answered “hello?”) and I have to force shut down the computer. This all happens in safe mode as well, and there are a couple things that just won’t let me uninstall for some reason. I was able to get Avast but it doesn’t work so I’m not sure if this virus is also preventing other antivirus from being able to download or run. Since I did just reset this thing I’m not worried at all about files or anything else because there aren’t any, it’s practicallt empty. Please help! Thank you.
 
Solution
Try to open task manager as soon as you can and see if the Virus inserted itself into the startup tab.

Right click task bar.

Click Task Manager.

Goto Startup Tab

Disable virus from starting.

Anything with a sketchy name that doesnt say microsoft or intel is fair game


Group policy can easily be changed once the virus is dormant and you have control back.

woodmass14

Estimable
Aug 2, 2015
38
0
4,610
Personally, id do a fresh install of windows. But i have heard good things about https://www.malwarebytes.com/ could give them a go but its better being safe than sorry and just start fresh.
 

mbarnes86

Distinguished
Sep 16, 2010
245
0
19,110
Hi

Since the virus software runs in safe mode it will probably stop any av software removing it

Try downloading kaspersky rescue cd
This is a bootable linux antivirus cd for windows
If you can boot from this cd or the usb version
And if it can find & remove the virus software

You would probably need to run several programs like malwarebytes to be sure the virus has gone

Is there any warning about your files being encrypted and paying a ransom to get them back.?

Booting from a linux based rescue cd , dvd or usb and copying files off to a usb hard disk may be required

Linux rescue cds avoids the problems of windows user file permissions preventing files being copied or entering folders being blocked by some windows based rescue disks .

An alternative is removing the hard drive and putting it in a usb tray
(preferably usb 3.0) to recover document files on another pc before putting it back in its pc and doing a clean install of windows taking advanced options to format the partitions before re installing windows

Regards
Mike Barnes
 

derekullo

Distinguished
Jan 25, 2009
135
0
18,660
Try to open task manager as soon as you can and see if the Virus inserted itself into the startup tab.

Right click task bar.

Click Task Manager.

Goto Startup Tab

Disable virus from starting.

Anything with a sketchy name that doesnt say microsoft or intel is fair game


Group policy can easily be changed once the virus is dormant and you have control back.
 
Solution
Status
Not open for further replies.