Britec Tech Support Forum
Windows Shell attack - Printable Version

+- Britec Tech Support Forum (https://briteccomputers.co.uk/forum)
+-- Forum: Computer Security (https://briteccomputers.co.uk/forum/forumdisplay.php?fid=50)
+--- Forum: Security, Viruses, Trojans & Malware Removal (https://briteccomputers.co.uk/forum/forumdisplay.php?fid=30)
+--- Thread: Windows Shell attack (/showthread.php?tid=459)



Windows Shell attack - sikochikn - 12-27-2014

Good day forum mates, I recently found out  i'm a victim of the Windows Shell vulnerability (CVE-2010-2568) it took me a while to figure out what it was. While figuring it out and trying to combat it in it's premature stages it has manifested itself tenfold. My antivirus caught some of it and got rid of a good number of junk files but it has taken over my administrator account, started adding new accounts, and moving system file contents to unknown areas. Is there any way to rid my system of this and start new with a good defense base?


RE: Windows Shell attack - GuiltySpark - 12-27-2014

Do a system restore to before you were hit.

Make sure all system security patches are in place.

If none of that works due to the system files being moved then you can only really reinstall unless you have a back up image. Too much damage may have been done to the system to correct it.


RE: Windows Shell attack - sikochikn - 12-27-2014

Thanks, I will try that.


RE: Windows Shell attack - sikochikn - 12-28-2014

Would a repair install do the trick?


RE: Windows Shell attack - GuiltySpark - 12-28-2014

(12-28-2014, 04:00 PM)sikochikn Wrote:  Would a repair install do the trick?
Not if you still have an infection.