Log in to post
|
Print Thread |
|
|
|
|
Off-Topic
|
Joined: May 2003
Posts: 8,021
Veteran
|
OP
Veteran
Joined: May 2003
Posts: 8,021 |
A friend of mine got the "Department of Justice" ransomware virus.I spent 6 hrs trying to get rid of it.Used all the tricks in the book. The final outcome was I used a Linux boot disc to save his personal files. That went fine.Then I booted into the WinXP disc with the idea to reformat and reinstall Windows. It went through all the gyrations with the final thing being "remove all discs and press enter to reboot. I did.When the computer came on I couldn't get past the MOBO splash screen. Can't get into the BIOS nothing.I'm so pissed off.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jul 2000
Posts: 26,960
Veteran
|
Veteran
Joined: Jul 2000
Posts: 26,960 |
That is bad news. I never encountered one so bad I couldn't still get to the BIOS.
BIAB 2025 Win Audiophile. Software: Studio One 7 Pro, Swam horns, Acoustica-7, Notion 6, Song Master Pro, Win 11 Home. Hardware: Intel i9, 32 Gb; Roland Integra-7, Presonus 192 & Faderport 8, Royer 121, Adam Sub8 & Neumann 120 monitors.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Mar 2004
Posts: 6,706
Veteran
|
Veteran
Joined: Mar 2004
Posts: 6,706 |
John,
I can feel you frustration man, I wish you guys the best with this one.
PS: Thanks for the heads up on this critter.
Later,
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Dec 2003
Posts: 23,066
Veteran
|
Veteran
Joined: Dec 2003
Posts: 23,066 |
John, I had the exact same problem last week with a friend’s computer. I had to pull the HD, put it in a SATA to USB adapter and format the drive. I placed the HD back into his computer and loaded his OS and drivers. What a PITA this virus is!
I just wonder why some people consider corrupting other people's computers as fun!
My momma didn't raise a fool. And if she did it, was one of my brothers.
64 bit Win 10 Pro, the latest BiaB/RB, Roland Octa-Capture audio interface, a ton of software/hardware
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2003
Posts: 8,021
Veteran
|
OP
Veteran
Joined: May 2003
Posts: 8,021 |
I'm headed back to the ill computer.I pulled the CMOS battery in HOPES the BIOS will reset itself.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jul 2000
Posts: 26,960
Veteran
|
Veteran
Joined: Jul 2000
Posts: 26,960 |
You have to leave the battery out for several minutes.
BIAB 2025 Win Audiophile. Software: Studio One 7 Pro, Swam horns, Acoustica-7, Notion 6, Song Master Pro, Win 11 Home. Hardware: Intel i9, 32 Gb; Roland Integra-7, Presonus 192 & Faderport 8, Royer 121, Adam Sub8 & Neumann 120 monitors.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Feb 2007
Posts: 1,815
Expert
|
Expert
Joined: Feb 2007
Posts: 1,815 |
One thing I always do is to leave the task manager running all the time. That way if a bizarre screen comes up, I can end that application/process and then run malwarebytes immediately.
I guess that won't work 100% of the time, but it hasn't failed yet (as I look down and notice that the task manager is not running at the moment!!).
I think those kinds of viruses still require you to click on the ransomware page to activate it (but I might be wrong).
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jul 2000
Posts: 26,960
Veteran
|
Veteran
Joined: Jul 2000
Posts: 26,960 |
John, any speculation on how your friend got this? Browsing? Sharing a file?
BIAB 2025 Win Audiophile. Software: Studio One 7 Pro, Swam horns, Acoustica-7, Notion 6, Song Master Pro, Win 11 Home. Hardware: Intel i9, 32 Gb; Roland Integra-7, Presonus 192 & Faderport 8, Royer 121, Adam Sub8 & Neumann 120 monitors.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Dec 2002
Posts: 12,195
Veteran
|
Veteran
Joined: Dec 2002
Posts: 12,195 |
John, I have battled this virus in the past. It can be removed without resorting to reformting the HD.
It ain't easy. Best to have a second computer on hand so you can google options and download files from web. I recall, HitmanPro was a big part of the solution. Good luck.
BIAB – 2025, Reaper (current), i7-12700F Processor, 32GB DDR4-3200MHz RAM, 1TB WD Black NVMe SSD, 2TB WDC Blue SSD, 1TB WD Blue, 2 TB SK NVMe, 6 TB External, Motu Audio Express 6x6
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 38,502
Veteran
|
Veteran
Joined: May 2000
Posts: 38,502 |
I'm headed back to the ill computer.I pulled the CMOS battery in HOPES the BIOS will reset itself. Now yer on the right track. I would have first measured the voltage drop in circuit, would be willing to bet the cmos battery is very low, couldn't get the thing to boot properly. Sometimes pulling it like that and letting it rest, it will get some sort of Surface Charge, but even if it does boot the machine afterwards, good idea to at least check the voltage level in-circuit, or just replace the cmos bat. The malware, which is on the hard drive, could not have kept it from going through boot or into bios, but the install may have put a bit of excess drain on the cmos battery, which is likely old and gettin' a little weak anyway. When the voltage crosses the threshold where it cannot power the chip, she daid. --Mac
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 38,502
Veteran
|
Veteran
Joined: May 2000
Posts: 38,502 |
If its any consolation, the Toshiba Satellite Win7 nightmare I'm working on tonight, whew.
Avast full scan reported and quarantined maybe 40 some instances.
Browser Adware attack, the ubiquitous "conduit" - rather easily removed by comparison with this "Internet Helper" piece of @#@$.
Malwarebytes scanning right now, has reported 134 Objects found in 47 minutes and still running...
And get this, the customer's complaint and reason to call was, "no sound".
Three browsers, IE, Chrome and FireFox, all of 'em hijacked, a boot time long enough to go to the kitchen and make Mom's slow cook potroast recipe and come back just in time to be almost booted up, and this guy waited until he couldn't make a Skype call anymore to get concerned?
Dunno if this one is going to survive yet...
--Mac
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jul 2000
Posts: 26,960
Veteran
|
Veteran
Joined: Jul 2000
Posts: 26,960 |
To add to your list of possibilities, Mac, I have owned several Toshiba laptops, including most recently a Toshiba Satellite running Win7. The hard drive failed. The good news is, I replaced it with an SSD and the performance is dramatically improved. Still, it's lots of effort to get everything loaded and working again.
BIAB 2025 Win Audiophile. Software: Studio One 7 Pro, Swam horns, Acoustica-7, Notion 6, Song Master Pro, Win 11 Home. Hardware: Intel i9, 32 Gb; Roland Integra-7, Presonus 192 & Faderport 8, Royer 121, Adam Sub8 & Neumann 120 monitors.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 38,502
Veteran
|
Veteran
Joined: May 2000
Posts: 38,502 |
Defraggler reports the hard drive is in good shape.
Today...
At this minute in time...
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jan 2013
Posts: 16
Enthusiast
|
Enthusiast
Joined: Jan 2013
Posts: 16 |
I had the "Dept of Justice" problem last month. Luckily a friend of mine had put me on to the image program called Macrium Reflect. It is a free download, and once you make an image of your HD --(I do this every so often) the Lennox rescue boot disk gets you back on track with no problem.
Unfortunately this won't do you any good without prior preparation.
Good luck.
Jim
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Nov 2010
Posts: 506
Journeyman
|
Journeyman
Joined: Nov 2010
Posts: 506 |
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Sep 2007
Posts: 3,926
Veteran
|
Veteran
Joined: Sep 2007
Posts: 3,926 |
Securitytango.com for most malware, though probably not this POS. I learned about it here--store for future reference.
Incidentally, I've been getting more notices of attack pages in Firefox lately. I always close the page immediately and go back to what I was doing in the first place. I do risky stuff with one of my PCs, but I run Avast and malware scans on a regular basis. It's been years since I've been bitten.
We now return you to your regular programming.
"My primary musical instrument is the personal computer."
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2003
Posts: 8,021
Veteran
|
OP
Veteran
Joined: May 2003
Posts: 8,021 |
Turned out to be a simultanious HD failure.The minute that I unplugged the HD It booted to the Windows disc.I totally reformatted and installed Windows.When it does it's first reboot to then continue I get a "Disc read error". I have a small 8g drive I'm going to install this am to further confirm. The machine is a little long in the tooth.I decided to wipe the drive because he had had this before and reinstalled windows BUT didn't reformat. The computer was a real mess even before this attack.If my drive fails I'll suspect the PSU.
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: May 2000
Posts: 38,502
Veteran
|
Veteran
Joined: May 2000
Posts: 38,502 |
Sounds like a plan, John.
After quarantining/removing over 600 objects, malwares, registry events, after hittin' the Uninstall Programs repeatedly, you name it, this little Toshiba is runnin' like a raped ape this morning, almost hate to have to hand it back to the guy so he can crap it up again...
--Mac
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Jun 2003
Posts: 1,106
Expert
|
Expert
Joined: Jun 2003
Posts: 1,106 |
Those department of justice viruses have been upgraded over time and have gone from being fairly easy to remove to rather hard. It used to be as simple as booting up in safe mode and doing a system restore to an earlier time. The latest versions of the virus are blocking safe mode and/or delivering a message that system restore did not work (even though it did).
The Cryptolocker malware that is out there now makes it insane to have an internet connection and not have your computer backed up. This is the scariest virus/ransom ware that I've ever seen. No one knows how to fix it once you have been infected with it. It just cannot be undone.
Keith 2025 Audiophile Windows 11 RYZEN THREADRIPPER 3960X 4.5GHZ 128 GB RAM 2 Nvidia RTX 3090s, Vegas,Acid,SoundForge,Izotope Production,Melodyne Studio,SONAR,2 Raven Mti
|
|
|
|
|
|
|
|
|
|
|
|
Off-Topic
|
Joined: Sep 2007
Posts: 3,926
Veteran
|
Veteran
Joined: Sep 2007
Posts: 3,926 |
This Wikipedia article on Cryptolocker should put the fear of God into anyone tempted to use an illicit P2P site. How about 10 Bitcoin* to get your files unencrypted--maybe? *Current Bitcoin value = $957.42
"My primary musical instrument is the personal computer."
|
|
|
|
|
|
|
|
|
|
|
|
Ask sales and support questions about Band-in-a-Box using natural language.
ChatPG's knowledge base includes the full Band-in-a-Box User Manual and sales information from the website.
|
|
|
|
|
|
|
|
|
|
|
Band-in-a-Box 2025 Italian Version is Here!
Cari amici
È stata aggerate la versione in Italiano del programma più amato dagli appassionati di musica, il nostro Band-in-a-Box.
Questo è il link alla nuova versione 2025.
Di seguito i link per scaricare il pacchetti di lingua italiana aggiornati per Band-in-a-Box e RealBand, anche per chi avesse già comprato la nuova versione in inglese.
Band-in-a-Box 2025 - Italiano
RealBand 2025 - Italiano
Band-in-a-Box 2025 French Version is Here!
Bonjour à tous,
Band-in-a-Box® 2025 pour Windows est disponible en Français.
Le téléchargement se fait à partir du site PG Music
Pour ceux qui auraient déjà acheté la version 2025 de Band-in-a-Box (et qui donc ont une version anglaise), il est possible de "franciser" cette version avec les patchs suivants:
BIAB 2025 - francisation
RealBand 2025 - francisation
Voilà, enjoy!
Band-in-a-Box 2025 German Version is Here!
Update Your Band-in-a-Box® 2025 to Build 1128 for Windows Today!
Already using Band-in-a-Box 2025 for Windows®? Download Build 1128 now from our Support Page to enjoy the latest enhancements and improvements from our team.
Stay up to date—get the latest update now!
Update to RealBand® 2025 Build 5 Windows Today!
Already using RealBand® 2025 for Windows®? Download Build 5 now from our Support Page to ensure you have the latest enhancements and improvements from our team.
Get the latest update today!
PowerTracks Pro Audio 2025 for Windows is Here!
PowerTracks Pro Audio 2025 is here! This new version introduces many features, including VST3 support, the ability to load or import a .FLAC file, a reset option for track height in the Tracks window, a taller Timeline on the Notation window toolbar, new freeze buttons in the Tracks window, three toolbar modes (two rows, single row, and none), the improved Select Patch dialog with text-based search and numeric patch display, a new button in the DirectX/VST window to copy an effects group, and more!
First-time packages start at only $49. Already a PowerTracks Pro Audio user? Upgrade for as little as $29!
www.pgmusic.com/powertracks.htm
Video: Summary of the New Band-in-a-Box® App for iOS®
Join Tobin as he takes you on a tour of the new Band-in-a-Box® app for iOS®! Designed for musicians, singer-songwriters, and educators, this powerful tool lets you create, play, and transfer songs effortlessly on your iPhone® or iPad®—anytime, anywhere.
Band-in-a-Box® for iOS® :Summary video.
Check out the forum post for more information.
|
|
|
|
|
|
|
|
|
|
|
Forums58
Topics84,145
Posts775,331
Members39,568
|
Most Online25,754 Jan 24th, 2025
|
|
|
|
|
|
|
|
|