Author Topic: Observesecure.com  (Read 10529 times)

0 Members and 1 Guest are viewing this topic.

September 16, 2008, 05:38:52 pm
Read 10529 times

Rtiger

  • Newbie

  • Offline
  • *

  • 2
I keep getting a pop up telling me my system is infected with latest version of Spyware.Cyberlog-X
It then brings up a web page from secureobserve.com to upload anti-spyware scanner.
Can anyone please tell me how to get rid of this crap. ???

September 16, 2008, 05:55:53 pm
Reply #1

sowhat-x

  • Guest
Hi Rtiger

At first,download and run Microsoft's Malicious Removal tool:
http://www.microsoft.com/security/malwareremove/default.mspx
This will make sure no widely spread and well-known rootkits and bots are present there.

Then check this thread out for a list of possible forums,
where people can provide you with exact disinfection instructions:
http://www.malwaredomainlist.com/forums/index.php?topic=40.0

As a personal suggestion,I would recommend asking for assistance over at MalwareBytes' forum,
as they're specializing exactly in the removal of infections caused by rogue software etc.
http://www.malwarebytes.org/forums/

For a variety of reasons,we don't "officially" provide disinfection advises for pc end-users,
only for servers that got hacked etc...
But if nothing from the above solves the problem,then please,
do not hesitate to ask back here again for help:
someone will take over your case specifically and help you remove the nasties from there.

September 16, 2008, 05:57:09 pm
Reply #2

SysAdMini

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 3335
I can recommend MBAM from

http://www.malwarebytes.org/mbam.php

for removal of fake antivirus software. Today I've cleaned some machines using this tool.
In one case it was necessary to run additionaly Combofix

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

Ruining the bad guy's day

September 16, 2008, 06:24:33 pm
Reply #3

Rtiger

  • Newbie

  • Offline
  • *

  • 2
Thank you very much for the advise. I appreciate it.

September 16, 2008, 09:21:25 pm
Reply #4

MysteryFCM

  • Administrator
  • Hero Member

  • Offline
  • *****

  • 1693
  • Personal Text
    Phishing Phanatic
    • I.T. Mate
secureobserve.com doesn't seem to be resolving? A WhoIs query is also returning;

Quote
No match for "SECUREOBSERVE.COM".
>>> Last update of whois database: Tue, 16 Sep 2008 17:19:41 EDT <<<
Regards

Steven Burn
I.T. Mate / hpHosts
it-mate.co.uk / hosts-file.net