Petri IT Knowledgebase Forums
 

Petri.co.il forums Home Forums Start Page Forums Frequently Asked Questions FAQ Member List Members List
Go Back   Petri IT Knowledgebase Forums > Client Operating Systems > Windows Vista
Petri.co.il is happy to award auglan the title of Most Valuable Member !!!
Register Calendar Calendar Search Petri IT Knowledgebase Forums Search Todays Posts Today's Posts Mark Forums Read

Notices

Help needed to remove win32/ransome on Win Vista guest account!

Help needed to remove win32/ransome on Win Vista guest account!

this thread has 1 replies and has been viewed 3128 times

Closed Thread
 
Thread Tools Search this Thread Display Modes
  #1  
Old 28th June 2012, 06:47
Jasmin Jasmin is offline
Casual
Casual
 
 Join Date: Jun 2012
  6 month star
 Location: Sweden
 Posts: 2
 Reputation: Jasmin is on a distinguished road (10)
Unhappy Help needed to remove win32/ransome on Win Vista guest account!

HI,
I use the guest account on our laptop and yesterday this virus or worm blocked the whole guest account, I believe the virus/worm is called win32/ransome. It shows a white page that says Your laptop as been blocked by the cyber crime police due to visiting a non permitted website, or a website containing child porn, or for storing pirated programs etc To unlock the laptop you have to pay a certain amount in ucash. I haven't visited any such sites nor stored pirated stuff. obviously its a scam (did a search on it).

To remove it the only solutions i've found so far are through admin account which i don't have access to nor do i have access to a cd burner so i cant burn any software and try to run them.

When I log onto the guest account the desktop icons disappears after few seconds. I've also tried to access in safe mode but it wont let me get into the guest account without admin password.
How can i remove this virus/worm without having to access the admin account or run any cd?
  #2  
Old 28th June 2012, 08:25
Ossian Ossian is online now
Administrator
 
 Join Date: Nov 2003
  6 month star 12 month star
 Location: Bonnie Scotland
 Posts: 15,132
  Send a message via Skype™ to Ossian
 Reputation: Ossian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud ofOssian has much to be proud of (1300)
Default Re: Help needed to remove win32/ransome on Win Vista guest account!

You will need safe mode and an admin account. If you don't have one, ask your network admin or (if you are confident) investigate password reset tools to get admin access

Once you have, download MalWareBytes and install / scan in safe mode

(Guest account, by design, does not have suitable permissions)
__________________
Tom Jones
MCT, MCSE (2000:Security & 2003), MCSA:Security & Messaging, MCDBA, MCDST, MCITP(EA, EMA, SA, EDA, ES, CS), MCTS, MCP, Sec+
PhD, MSc, FIAP, MIITT
IT Trainer / Consultant
Ossian Ltd
Scotland

** Remember to give credit where credit is due and leave reputation points where appropriate **
Closed Thread


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Generic host Process for Win32 Services encounted a Problem and needed to close shail212 Windows Server 2000 / 2003 3 16th November 2007 13:22
Password from guest account Easy-MDMA Forgot Administrator Password 1 26th May 2006 09:16
Guest Account bravored Misc 3 18th November 2005 01:57
Guest Account spepi Active Directory 1 31st October 2005 22:56
Admin/guest account dejavoodoo Windows 2000 Pro, XP Pro 4 23rd September 2004 02:37


All times are GMT +3. The time now is 16:16.

Steel Blue 3.5.4 vBulletin Style ©2006 vBEnhanced
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
 

Valid XHTML 1.0!   Valid CSS!

Copyright 2005 Daniel Petri