answersLogoWhite

0


Best Answer

Download and run firefox to protect your computer from future spyware attacks and pop ups which are coming in through internet explorer (Trojan downloaders, win32 ).Browser attacks aren't easy to spot because they piggyback on legitimate traffic that doesn't exhibit many obvious warning signs

1. Run Deckard's System Scanner (DSS)

2. Run the vundo and combo fix

3. Run Malwarebytes Anti-Malware

4. Run the anti spyware removal programs spybot

5 Run Superantispyware

6. Run a complete scan with free curing utility Dr.Web CureIt!

Removing the siboCo VirusHere are recommendations from FAQ Farmers:
  • I had the same virus detected by AVG. It started as siboco.b.. I removed it and it than reappeared as siboco.b, but it could not be removed. I ran this software a2 and it seems to have removed this. The software can be downloaded from www.emsisoft.com.
  • Try the following programs-they will stop all unwanted stuff from getting on your PC. I went to www.webattack.com and found a way to remove it by doing the following: clicked on green link at the top of the page stating "FREEWARE", then clicked on virus tools/or you can search on that site for this program-"Avast home edition". It is the best freeware program that I have ever used and removed the virus in no time. The Funweb A is a Trojan horse virus and when Avast picked it up was under another name. I think that is why everybody has difficulty removing it and can't find anything under funwe A, because it is going under another name. Avast has also detected and removed 2 other virus infected files on my PC! It is important to do a live update of avast virus deff and to set program to run a full system scan. Do download the full free home adition and not just the computer cleaner. It's AMAZING.

You can remove this computer worm by following these steps .

1 Download and intall the Malwarebytes on your computer .

2 Update your Malwarebytes .

3 Scan your computer for all the malwares in your computer .

4 Remove all the malwares , found while scanning with the malwarebytes .

5 Restart your computer .

User Avatar

Wiki User

8y ago
This answer is:
User Avatar

Add your answer:

Earn +20 pts
Q: How do you remove a virus called siboCo B in C Documents and Settings?
Write your answer...
Submit
Still have questions?
magnify glass
imp
Related questions

How do you get rid of Trojan downloader siboco B virus when it cannot be quarantined or deleted because it is in the programs and settings file?

You need to run these 5 essential steps to remove all the spyware on your computer. 1. Run Deckard's System Scanner (DSS) 2. Run Malwarebytes Anti-Malware 3. Run the anti spyware removal programs spybot 4 Run Superantispyware 5. Run a complete scan with free curing utility Dr.Web CureIt! Install threat fire which will enhance your antivirus protection


How do you get rid of Trojan horse siboco A?

You need to run these 5 essential steps to remove all the spyware on your computer. 1. Run Deckard's System Scanner (DSS) 2. Run Malwarebytes Anti-Malware 3. Run the anti spyware removal programs spybot 4 Run Superantispyware 5. Run a complete scan with free curing utility Dr.Web CureIt! Install threat fire which will enhance your antivirus protection


How do you get rid of Trojan horse downloader SiboCo b?

I have just updated my free AVG 6 anti virus program today and it caught and healed the Trojan horse downloader.Siboco.B virus. so my suggestion to you is to update your AVG.7 or download the free one.


How do you delete Trojan horses Dropper SiboCo B and Downloader SiboCo B from C WINDOWS TEMP SETUP EXE if Windows says it needs the file to run?

Sounds like this setup.exe file is a third party software that is used to either run a game or whatever else, but not important to your system. It will be easier to delete it from SafeMode as Windows in safemode only uses the bare minimum of drivers to run your computer, therefore you will have no interference from and third party software telling you that it cannot be deleted. Once you've enter SafeMode use the Search/ For Files or Folders option and delete the file from there. I have tried everything within my limited knowledge to get rid of the downloader.simoboco.b virus to no avail. In safe mode I changed the expiration, altered letters, etc., but everytime I reboot the file C:Documents and settings\administrator\Local Settings\Temp\7582807275.tmp reappears unaltered. Obviously the file is generated new everytime you restart, from somewhere else. My solution? Damian, my friend who figures these things out and fixes them. When he finds a solution I will post the answer. In the meantime, I am blocking all unusual programs in ZoneAlarm to try to avoid the pop-ups that occur every 3 seconds, nearly crashing my computer, and see how that works.


How do you get rid of Trojan Horse Dropper SiboCo A?

at the moment you cannot rid your comp of this.run avg and it will find and clean but at same time the virus will replicate itself,it will also replicate itself everytime you start your comp,i have tried for 2 weeks to rid it eventually having to fdisk and format and reinstalling everything, cheers les You can get rid of this Trojan horse by following these steps . 1 Download and intall the Malwarebytes on your computer . 2 Update your Malwarebytes . 3 Scan your computer for all the malwares in your computer . 4 Remove all the malwares , found while scanning with the malwarebytes . 5 Restart your computer .


How do you remove the Trojan Horse Downloader SiboCo B in a temp file if it will not let you delete the file and AVG will not heal it - it just says it is still infected?

You need to run these 5 essential steps to remove all the spyware on your computer.1. Run Deckard's System Scanner (DSS)2. Run Malwarebytes Anti-Malware3. Run the anti spyware removal programs spybot4 Run Superantispyware5. Run a complete scan with free curing utility Dr.Web CureIt!Install threat fire which will enhance your antivirus protectionRemoving a Trojan HorseYou will have to delete the infected temp file in DOS mode. The TEMP file cannot be deleted while Windows in in operation, so you will need to reboot and go to DOS (do not use DOS-Shell through Windows), and remove it that way. Here are more opinions and answers from other FAQ Farmers:Siboco.B is a downloader Trojan related to some nasty spyware that has been going around. Most likely it cannot be deleted because it has been injected into Windows Explorer (think of it as running from within your operating system). In order to remove the file you will need to reboot your system into safe mode and then find the file in your temp folder and delete it. However, please note that in the crapware that I saw this siboco menace in (which came from Odysseus Marketing - scumbags). There were many other pieces lurking around that may in fact cause this to come back. ie. your windows media player could be corrupted and you may also find Trojan.small kicking about somewhere as well as a dozen or so other pieces laying here and there. (it is nasty stuff indeed). Download one of the respected anti spyware applications (ie. spybot and/or adaware) and run those on your system as well as perhaps look into visiting a security forum where you can get some more advanced and specialized assistance with your problem. Some great forums where you would get this help would be over at: computercops.biz, wilders.org and broadbandreports.com. These sites all have a great bunch of people willing to help those in need out.


How do you get rid of Downloader SiboCo B?

I've had this same virus for days. It's been in my Temp folder. Sometimes AVG or a Pandascan can heal it, but then the next time I check the file is infected again. A few times I've put my computer in safe mode and deleted it, but after taking it off safe mode the file is back again. It seems like there's some program that keeps reinstalling the virus and protects it from being deleted normally. If I knew what the program was then I could just turn my computer on safe mode and delete the program and the virus.


What is Trojan horse Downloader SiboCo B and how do you remove it?

You need to run these 5 essential steps to remove all the spyware on your computer.1. Run Deckard's System Scanner (DSS)2. Run Malwarebytes Anti-Malware3. Run the anti spyware removal programs spybot4 Run Superantispyware5. Run a complete scan with free curing utility Dr.Web CureIt!Install threat fire which will enhance your antivirus protectionAnswerI updated my AVG Free Virus program this morning. It found the Downloader.Siboco.B and healed it. AnswerI updated my Free AVG this morning. Siboco is found but the program cannot heal the infected file. Additionaly, AVG cannot move the infected file to the virus vault neither delete it. AnswerThe only way I can remove it is going into safe mode and deleting the file that it is in. I am getting this virus everyday. IT is always in my Temp Folder Not my temporary internet folder but just Temp folder. It is always in the folder named ~7168797242.tmp AnswerI've got the same problem, I duel boot xp and xp on my computer. One instance for just plain copying cds and DVDs and that sort of thing with no internet or portals setup. This is the one that is problem free. The other instance is the one with the problem. I have to restart my computer in safe mode to rid the bug and then it shows back up again after I reboot. This seems to me that there is another program somewhere that is reloading it into the temp file after reboot. Any one have a solution AVG just finds it and cant delete it and if it did it'd probably reappear anyway. Please help. AnswerI ended up having to completely reload windows, after messing with it so long I accidentally erased an important file. However, here is what I learned. The Trojan changes the registry keys. While you are OFFLINE, run Spybot Search and destroy to eliminate the bad registry keys, then restart, and go into safemode to eliminate the virus itself. If you don't get rid of the bad registry keys, as soon as you get back online the Trojan re-enstalls itself. If this helps someone please post. If anyone out there has better information than this please post also! Little Bit FarmAnswerDon't know what it is. But go here and use the free on line virus scan and it will take care of it. http://housecall.antivirus.com Answerhttp://housecall.antivirus.com Did the trick!AnswerI see it in (porn) pictures or movies people have downloaded via kazza or such; Disable System restore , Shutdown and restart in safe mode,Open, My Computer, C:\WINDOWS\TMP and delete the infected file. You may need to right-click, properties and uncheck read-only or archive.Exit and empty trash.Open Registry Editor. Click Start>Run, type REGEDIT, then press Enter. In the left panel, double-click the following: HKEY_CURRENT_USER>Software>Microsoft> Windows>CurrentVersion>Run In the right panel, locate and delete the entry: Msmc =\msmc.exe In the left panel, double-click the following: HKEY_LOCAL_MACHINE>Software>Microsoft> Windows>CurrentVersion>Run In the right panel, locate and delete the entry: Msmc =\msmc.exe (Note:is the Windows system folder, which is usually C:\Windows\System on Windows 95, 98 and ME, C:\WINNT\System32 on Windows NT and 2000, and C:\Windows\System32 on Windows XP.) Run a search from MyComputer while in reg-editor for msmc.exe and delete them. Close Registry Editor.Shutdown and rebootAnswermany thanks to Howard T tho' did not see the msmc.exe under HKEY LOCAL MACHINE in the secondary part of the regedit info. Their was an entry 'kianxmjwnafxc C/WINDOWS/SYSTEM/ dhisic.exe i left it their then using mcafee quickclean run orphaned registery files and deleted it from their... whether it was related dunno. against the HKEY LOCAL MACHINE was AVG antivirus info so perhaps that had erased the msmc.exe.... it was a nuisance closing it meant losing start bar and icons.