• Log InLog In
  • Register
Liquid`
Team Liquid Liquipedia
EDT 08:31
CEST 14:31
KST 21:31
  • Home
  • Forum
  • Calendar
  • Streams
  • Liquipedia
  • Features
  • Store
  • EPT
  • TL+
  • StarCraft 2
  • Brood War
  • Smash
  • Heroes
  • Counter-Strike
  • Overwatch
  • Liquibet
  • Fantasy StarCraft
  • TLPD
  • StarCraft 2
  • Brood War
  • Blogs
Forum Sidebar
Events/Features
News
Featured News
[ASL20] Finals Preview: Arrival1TL.net Map Contest #21: Voting10[ASL20] Ro4 Preview: Descent11Team TLMC #5: Winners Announced!3[ASL20] Ro8 Preview Pt2: Holding On9
Community News
Chinese SC2 server to reopen; live all-star event in Hangzhou21Weekly Cups (Oct 13-19): Clem Goes for Four3BSL Team A vs Koreans - Sat-Sun 16:00 CET9Weekly Cups (Oct 6-12): Four star herO85.0.15 Patch Balance Hotfix (2025-10-8)81
StarCraft 2
General
RotterdaM "Serral is the GOAT, and it's not close" Chinese SC2 server to reopen; live all-star event in Hangzhou The New Patch Killed Mech! Weekly Cups (Oct 13-19): Clem Goes for Four 5.0.15 Patch Balance Hotfix (2025-10-8)
Tourneys
Merivale 8 Open - LAN - Stellar Fest Tenacious Turtle Tussle RSL Season 3 Qualifier Links and Dates $1,200 WardiTV October (Oct 21st-31st) SC2's Safe House 2 - October 18 & 19
Strategy
Custom Maps
Map Editor closed ?
External Content
Mutation # 496 Endless Infection Mutation # 495 Rest In Peace Mutation # 494 Unstable Environment Mutation # 493 Quick Killers
Brood War
General
[ASL20] Finals Preview: Arrival BSL Team A vs Koreans - Sat-Sun 16:00 CET OGN to release AI-upscaled StarLeague from Feb 24 Is there anyway to get a private coach? BW General Discussion
Tourneys
[ASL20] Grand Finals ASL final tickets help Small VOD Thread 2.0 [Megathread] Daily Proleagues
Strategy
Roaring Currents ASL final Relatively freeroll strategies BW - ajfirecracker Strategy & Training TvP Upgrades
Other Games
General Games
Path of Exile Nintendo Switch Thread Stormgate/Frost Giant Megathread Dawn of War IV ZeroSpace Megathread
Dota 2
Official 'what is Dota anymore' discussion LiquidDota to reintegrate into TL.net
League of Legends
Heroes of the Storm
Simple Questions, Simple Answers Heroes of the Storm 2.0
Hearthstone
Deck construction bug Heroes of StarCraft mini-set
TL Mafia
TL Mafia Community Thread SPIRED by.ASL Mafia {211640}
Community
General
US Politics Mega-thread Russo-Ukrainian War Thread Things Aren’t Peaceful in Palestine YouTube Thread The Chess Thread
Fan Clubs
White-Ra Fan Club The herO Fan Club!
Media & Entertainment
Anime Discussion Thread [Manga] One Piece Korean Music Discussion Series you have seen recently... Movie Discussion!
Sports
MLB/Baseball 2023 2024 - 2026 Football Thread TeamLiquid Health and Fitness Initiative For 2023 Formula 1 Discussion NBA General Discussion
World Cup 2022
Tech Support
SC2 Client Relocalization [Change SC2 Language] Linksys AE2500 USB WIFI keeps disconnecting Computer Build, Upgrade & Buying Resource Thread
TL Community
The Automated Ban List Recent Gifted Posts
Blogs
The Benefits Of Limited Comm…
TrAiDoS
Sabrina was soooo lame on S…
Peanutsc
Our Last Hope in th…
KrillinFromwales
Certified Crazy
Hildegard
Customize Sidebar...

Website Feedback

Closed Threads



Active: 1513 users

Malware Misery

Blogs > Arrian
Post a Reply
Arrian
Profile Blog Joined February 2008
United States889 Posts
Last Edited: 2010-01-18 03:53:08
January 18 2010 03:51 GMT
#1
In case you haven't heard of it, there's a nasty new guy out there: Malware Defender.

Like most effective pieces of malware these days, it pretends like it's helping your computer. I contracted it using a service (instead of my cache, stupid me) to download files from youtube to make an MSL finals hype vid.

There are lingering files I believe that are preventing me from installing Malwarebytes to finish it off and the files that are preventing me from accessing computer forums capable of helping me find out which files are doing this but I manually removed the dll and registry values so that's crippled it but it's not down for good.

I just fucking hate malware. I hate people who make it. I hate people who distribute it. Fuck them all in the fucking ear forever. God damn.

Writersator arepo tenet opera rotas
Mykill
Profile Blog Joined February 2009
Canada3402 Posts
January 18 2010 03:52 GMT
#2
ahhhh that sucks.
[~~The Impossible Leads To Invention~~] CJ Entusman #52 The problem with internet quotations is that they are hard to verify -Abraham Lincoln c.1863
micronesia
Profile Blog Joined July 2006
United States24721 Posts
January 18 2010 03:54 GMT
#3
People that do things for the sole purpose of making others suffer exist in surprising numbers!

Malware that serves some purpose such as using your computer to do something other than simply give other people malware makes sense to me at least even though it's still a pretty shitty thing to make/distribute.
ModeratorThere are animal crackers for people and there are people crackers for animals.
Arrian
Profile Blog Joined February 2008
United States889 Posts
Last Edited: 2010-01-18 04:01:20
January 18 2010 03:55 GMT
#4
shit. i'm not out of the woods yet. it's launching ads now and spybot doesn't know what the fuck it's doing.

it's not the hostile part that's left just the annoying one.

"Hostile?"
"...Annoying..."

gold star if you get the reference

haha these people suck so much that my browser based popup blocker is shutting down the ads. losers.
Writersator arepo tenet opera rotas
iceburn
Profile Blog Joined February 2008
United States303 Posts
January 18 2010 04:01 GMT
#5
unplug your internet, check msconfig for anything to stop it from booting, go into safe mode and then try to remove it.

also try out sandboxie next time when you install something to keep issues from happening
Arrian
Profile Blog Joined February 2008
United States889 Posts
January 18 2010 04:04 GMT
#6
my problem isn't removing the remaining components it's finding out what i need to remove and finding where it's hiding. it won't let me run spybot and won't let me install malwarebytes and i need to know how it's doing that and what's letting it do that so i can kill it
Writersator arepo tenet opera rotas
motbob
Profile Blog Joined July 2008
United States12546 Posts
Last Edited: 2010-01-18 04:06:47
January 18 2010 04:05 GMT
#7
make recovery disks and whenever this happens just reformat. It's probably quicker than trying to fix it, especially if it's newer malware.

EDIT: but as for your problem right now, you need to open up task manager ASAP when the computer starts up and manually kill the bad processes when they start up. That's how I got rid of malware that was keeping me from running anti-malware programs (or programs of any kind)
ModeratorGood content always wins.
Arrian
Profile Blog Joined February 2008
United States889 Posts
January 18 2010 04:10 GMT
#8
clever developers have hidden this process...i can't identify anything malicious. i'm chasing registry values at the moment hoping that i hit the achilles' heel of whatever's launching the ads and preventing me from running antimalware programs.
Writersator arepo tenet opera rotas
motbob
Profile Blog Joined July 2008
United States12546 Posts
January 18 2010 04:18 GMT
#9
well have you tried safe mode yet? if you can't install adwarebytes in safe mode then that means your system files have been modified... I think
ModeratorGood content always wins.
meeple
Profile Blog Joined April 2009
Canada10211 Posts
January 18 2010 04:21 GMT
#10
Gah... unfortunate. I'm sure I have some malware acting up on my computer but if it doesn't shut me down it doesn't bug me. If only these people were doing productive things... the world would be so much better.
Arrian
Profile Blog Joined February 2008
United States889 Posts
Last Edited: 2010-01-18 04:31:30
January 18 2010 04:23 GMT
#11
On January 18 2010 13:18 motbob wrote:
well have you tried safe mode yet? if you can't install adwarebytes in safe mode then that means your system files have been modified... I think


i don't like the sound of that at all.

would reinstalling my browsers get rid of the ads?

EDIT: apparently renaming malwarebytes 'monkey brains' fools the program blocking it from starting. idiots.
Writersator arepo tenet opera rotas
CharlieMurphy
Profile Blog Joined March 2006
United States22895 Posts
Last Edited: 2010-01-18 04:33:48
January 18 2010 04:32 GMT
#12
I came to work today and my co worker left a virus/malware thing on the comp called internet security 2010. Which is a fake AV program that gives you shit loads of popups and ads and bubbles and shit telling you you have virus and when you try to run certain things it doesn't allow you and tells you instead via error messages that you have trojan/backdoor/worm/virus preventing you from doing it. (ctrl+alt+del mainly). They want you to buy their phony software for 50$ to get rid of the 'infections'. After running Hijackthis to remove the shit I knew for sure was bad to take the snail speed off the comp, I googled it and found a comprehensive removal guide on bleepingcomputer.com.
I spent all morning removing it though.

/rant
..and then I would, ya know, check em'. (Aka SpoR)
yesplz
Profile Blog Joined April 2009
United States295 Posts
January 18 2010 06:18 GMT
#13
Ugh I got that same one as you arrian. Except it didnt block any of the sites(i had one that did a while ago). I downloaded the free avast trial and it removed some stuff, scanned with the free kaspersky and symantec scanners and they couldn't find all the pieces. I found it easier to just reformat...stuck in the recovery CD and was up and running 45 min later.
Amnesia
Profile Blog Joined September 2009
United States3818 Posts
January 18 2010 06:28 GMT
#14
http://www.bleepingcomputer.com/virus-removal/remove-malware-defender-2009

I had the exact same problem and this helped me!
ssj114
Profile Blog Joined September 2008
Afghanistan461 Posts
January 18 2010 06:33 GMT
#15
Time for you people to use Limited User Accounts and Software Restriction Policies.

And for those running 32-bit systems, check this out:
http://www.sandboxie.com/
Sandboxie + SUA + DEP, Windows Firewall + NAT Router
Sunhay
Profile Blog Joined February 2009
Canada303 Posts
January 18 2010 06:57 GMT
#16
rename the install file for malware bytes to install it. when installed, go to the installation directory and change the main exe's name to something else. then run it. gl.
www.sunhay.net
Sadistx
Profile Blog Joined February 2009
Zimbabwe5568 Posts
January 18 2010 07:45 GMT
#17
99% of all infections are because people install garbage on their PCs and launch executables that are obviously malicious. I haven't had a firewall or an AV program since 2005 and I still use XP and for some reason never had a problem with malware or viruses.
MasterOfChaos
Profile Blog Joined April 2007
Germany2896 Posts
January 18 2010 10:56 GMT
#18
One malware my brother caught hid in the instance of explorer displaying the shell(the startmenu and taskbar). I think I killed explorer and deleted it.
LiquipediaOne eye to kill. Two eyes to live.
CharlieMurphy
Profile Blog Joined March 2006
United States22895 Posts
January 18 2010 11:48 GMT
#19
On January 18 2010 16:45 Sadistx wrote:
99% of all infections are because people install garbage on their PCs and launch executables that are obviously malicious. I haven't had a firewall or an AV program since 2005 and I still use XP and for some reason never had a problem with malware or viruses.

agree
..and then I would, ya know, check em'. (Aka SpoR)
Please log in or register to reply.
Live Events Refresh
WardiTV Invitational
11:00
Group B
WardiTV705
TKL 224
IndyStarCraft 188
LiquipediaDiscussion
RSL Revival
10:00
2025 S3: Korea Qualifier
Crank 819
CranKy Ducklings183
Gemini_1958
LiquipediaDiscussion
[ Submit Event ]
Live Streams
Refresh
StarCraft 2
Crank 819
Lowko398
TKL 224
IndyStarCraft 188
Rex 99
BRAT_OK 73
MindelVK 25
StarCraft: Brood War
Britney 56419
Sea 6157
GuemChi 1830
Leta 589
Stork 248
Last 238
Hyun 146
ggaemo 72
Sharp 58
Backho 56
[ Show more ]
JYJ42
Aegong 41
JulyZerg 32
Noble 19
scan(afreeca) 18
zelot 16
SilentControl 10
Dota 2
Gorgc4345
XcaliburYe513
KheZu448
ODPixel374
Fuzer 189
canceldota142
Super Smash Bros
Mew2King77
Heroes of the Storm
Khaldor230
Other Games
singsing2134
B2W.Neo382
Sick285
Happy171
Trikslyr23
Organizations
StarCraft 2
Blizzard YouTube
StarCraft: Brood War
BSLTrovo
sctven
[ Show 13 non-featured ]
StarCraft 2
• Adnapsc2 12
• AfreecaTV YouTube
• intothetv
• Kozan
• IndyKCrew
• LaughNgamezSOOP
• Migwel
• sooper7s
StarCraft: Brood War
• BSLYoutube
• STPLYoutube
• ZZZeroYoutube
Dota 2
• WagamamaTV554
• Ler49
Upcoming Events
OSC
2h 30m
SKillous vs goblin
Spirit vs GgMaChine
ByuN vs MaxPax
Afreeca Starleague
19h 30m
Snow vs Soma
Sparkling Tuna Cup
21h 30m
WardiTV Invitational
23h 30m
CrankTV Team League
1d
BASILISK vs Streamerzone
Team Liquid vs Shopify Rebellion
Team Vitality vs Team Falcon
BSL Team A[vengers]
1d 2h
Gypsy vs nOOB
JDConan vs Scan
RSL Revival
1d 4h
Wardi Open
1d 23h
CrankTV Team League
2 days
Replay Cast
2 days
[ Show More ]
WardiTV Invitational
2 days
CrankTV Team League
3 days
Replay Cast
3 days
CrankTV Team League
4 days
Replay Cast
4 days
The PondCast
4 days
CrankTV Team League
5 days
Replay Cast
5 days
WardiTV Invitational
5 days
CrankTV Team League
6 days
Replay Cast
6 days
Liquipedia Results

Completed

Acropolis #4 - TS2
WardiTV TLMC #15
HCC Europe

Ongoing

BSL 21 Points
ASL Season 20
CSL 2025 AUTUMN (S18)
C-Race Season 1
IPSL Winter 2025-26
KCM Race Survival 2025 Season 4
EC S1
Thunderpick World Champ.
CS Asia Championships 2025
ESL Pro League S22
StarSeries Fall 2025
FISSURE Playground #2
BLAST Open Fall 2025
BLAST Open Fall Qual
Esports World Cup 2025
BLAST Bounty Fall 2025

Upcoming

SC4ALL: Brood War
BSL Season 21
BSL 21 Team A
BSL 21 Non-Korean Championship
RSL Offline Finals
RSL Revival: Season 3
Stellar Fest
SC4ALL: StarCraft II
CranK Gathers Season 2: SC II Pro Teams
eXTREMESLAND 2025
ESL Impact League Season 8
SL Budapest Major 2025
BLAST Rivals Fall 2025
IEM Chengdu 2025
PGL Masters Bucharest 2025
TLPD

1. ByuN
2. TY
3. Dark
4. Solar
5. Stats
6. Nerchio
7. sOs
8. soO
9. INnoVation
10. Elazer
1. Rain
2. Flash
3. EffOrt
4. Last
5. Bisu
6. Soulkey
7. Mini
8. Sharp
Sidebar Settings...

Advertising | Privacy Policy | Terms Of Use | Contact Us

Original banner artwork: Jim Warren
The contents of this webpage are copyright © 2025 TLnet. All Rights Reserved.