Whats happened to my PC

Author
Discussion

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
I have just tried to download a full version of software and a few things have occurred - got multiple AVG warnings about Trojan Horses, it temporarily screwed my browser with the usual survey and prize draw nonsense but taking me directly to those pages and not allowing me to browse anything else, deleted Chrome from desktop and toolbar, and now my PC is running super super slow.

I have managed to post this after a long time waiting but as I type the text is lagging behind. Im running AVG but its not coming up with anything.

What do I do?

LordHaveMurci

12,045 posts

170 months

Monday 20th March 2017
quotequote all
Can you remove the HDD & put in an external caddy then plug it into a (virus protected) machine to run scans on?

essayer

9,080 posts

195 months

Monday 20th March 2017
quotequote all
Unplug PC from network, reinstall Windows from scratch, restore data from backup.

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
I have no idea bout how to do any of that, your speaking a different language.

The internet is working all be it slow, managed to find Chrome and re pin to taskbar.

It created 3 icons on desktop about playing War games or something, and I have found various files in Program Files from the time of download with silly names, I have removed some but they all say I don't have access / permission to see or modify them.

LordHaveMurci

12,045 posts

170 months

Monday 20th March 2017
quotequote all
Ok, go to filhippo.com or similar & download ccleaner (if it will let you), run that & scan with your anti virus program.

Try malwarebytes too, probably some others people can recommend?

Digger

14,698 posts

192 months

Monday 20th March 2017
quotequote all
I'm no expert but I find running System Restore to revert to a restore point prior to similar issues works for me, as long as your valuable data has been backed up, just in case.

UpTheIron

3,998 posts

269 months

Monday 20th March 2017
quotequote all
What did you download, and from where?

Chances are you have downloaded and executed something that has now installed various nasties on your PC, and depending what it is will be difficult to remove. Worst case is you have handed over control of your PC to somebody else.

Don't go typing in any passwords / doing any banking etc.



Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
Ill try that. Keeps opening internet explorer and searching for something on yahoo, I close it down then 2 mins later it opens up again saying "AVG Yahoo error handler page cannot be displayed"

Muntu

7,635 posts

200 months

Monday 20th March 2017
quotequote all
Download malwarebytes from malwarebytes.org and run it.

If you still have the issue after that, take your PC to the local PC shop and tell them to fix it

The_Jackal

4,854 posts

198 months

Monday 20th March 2017
quotequote all
First of all STOP and make sure anything you need is backed up.
Then try to restore to a previous known good time.
Unless you are techy minded you will spend days and days trying to sort your machine out.
If no joy then a reinstall will be the quickest and best option.
When you are back up and running install Malwarebytes Premium (especially if downloading FULL versions....) and dump AVG (as you have found out, it doesn't work very well).

One final tip is once you have your freshly installed PC take a backup image with something like Macrium Reflect. Then if something like this happens again you can just restore a clean image simply and quickly.

Edited by The_Jackal on Monday 20th March 14:21

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
I already had malware bytes and it is half way through scanning, finding plenty of stuff and most of it are teh files I have already seen from this afternoon so hopefully will be able to remove it.

I went to download full version of Windows Movie Maker, site looked reputable and came up towards top of Google results.

Whats really annoying though is internet explorer keeps opening every 5 minutes with a "my best offer" window, then again, and again, so having come back to the PC there are 4 of them open all on a yahoo search with my best offer. Want to work out how to stop that happening.

The_Jackal

4,854 posts

198 months

Monday 20th March 2017
quotequote all
Movie maker should only be downloaded from Microsoft, loads of dodgy sites will claim to have it and also pay to be at the top of Google lists.
It does sound like you are really infected.
You will need to nuke it and reinstall I'm afraid, so get any files copied off.

Digger

14,698 posts

192 months

Monday 20th March 2017
quotequote all
As I suggested booting to a command prompt and running System Restore might be the easier option with a bit of know how! No need for a reinstall just yet unless the op is happy to just get on with it.

essayer

9,080 posts

195 months

Monday 20th March 2017
quotequote all
Seriously, for all you know your PC is DDOSing some CIA server somewhere, and simultaneously sending your keystrokes+screen output to another server in China.

Shut it down, reinstall Windows, recover data from backup.

Don't search for software on Google!

loudlashadjuster

5,130 posts

185 months

Monday 20th March 2017
quotequote all
Yeah, the days of trusting a download from anywhere other than the original author/publisher are long gone. And even then you're ideally looking for signed binaries, independently-validated checksums etc.

Don't assume that just because you manage to clear up any dodgy icons/processes that any infection is cleared. I'd restore from an old backup or just reinstall Windows again. It's not half the hassle it used to be considering most of our lives/apps are web-based nowadays.

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
How do you re install windows?

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all

Dizeee

Original Poster:

18,351 posts

207 months

Monday 20th March 2017
quotequote all
Its quarantined 2188 of the threats above and just stopped?

Actual

753 posts

107 months

Monday 20th March 2017
quotequote all
Microsoft has depreciated Windows Movie Maker and you CANNOT download it from Microsoft any more and any download you do find will likely be loaded with malware as you have found to your cost.

Beware those "nice" offshore Microsoft engineers who may coincidentally give you call on your landline to offer help.

essayer

9,080 posts

195 months

Monday 20th March 2017
quotequote all
Dizeee said:
How do you re install windows?
You create a recovery USB stick and reinstall from that - but you can't do that now

If your Windows is activated use ProduKey to get the Windows product key (just in case)

From another PC create Windows 10 installation media (via the Microsoft website)

It may detect your licence from the PC hardware or Microsoft account - if not you can re-enter your product key during installation