I would suspect anything to do with popups, and Norton. Just spent ages rooting it out of my brother’s laptop, ridled with malware to the extent that he’d been told his hard drive was screwed and needed replacing.
Your best action would be to read through the ‘Computer Questions’ sticky as the majority of virus/worm/trojan/spyware questions have arisen and been dealt with there.
there are some items relating to WinFix though, doesn’t look encouraging.
Norton has a program that removes the winfixer spyware that is seperate from their antivirus. You have to go to their website and look it up, sorry don’t remember the name and I deleted it after using it. It worked well and caused no other problems for me. good luck
I’ll add that I had WinFixer on my PC about a month ago, and it was a bear to get rid of. I just couldn’t find too much about it, and the fixes that were posted online were horribly complicated. I did eventually get rid of it, but I’m not sure how.
System restore rarely helps in virus removal. In fact the first step in most virus removals is to turn off system restore. Norton sucks, and its a shame that it is included on so many systems that you buy. What you may want to try is go into safe mode (restart your system, hit f8 until you see a screen with boot up options, choose safe mode with networking) Go to www.trendmicro.com, they have a free online scan for viruses, spyware and security holes. Hopefully that will get rid of your virus. If not, and you know the name, it will have detailed instructions on how to remove said virus. However you may need to be in regular mode to effectively do this, depending on your level of comfort with computers as safe mode can occasionally be a real pain to navigate in. Good luck.
The virus remover couldn’t remove the lil bastard, but could tell me its name during the scan, so I pulled up search, then un-installed it as if it was a utility.
WinFixer / Vundo is either a real pain to remove, or really easy, depending on the varient. Get the Symantec Vudo removal tool and see if that fixes it. If that doesn’t work, I recommend doing google searches for “vundo” and “winfixer” and follow the steps for running HijackThis to clean out what’s left.
It is nasty. The most recent variant seems to get itself very deep into the system, so even once you think it’s gone, it still loaded its DLLs and slows the system down. A good clue if it’s still there is to see how much memory you are using right after booting Windows. If it’s 100M higher than usual, it’s still there.
I really don’t think it ruined your hard drive, though. It may have contributed to the hard drive dying a natural death by making the system swap more heavily, and therefore use the hard drive more, but if that was the case your hard drive was about to die anyway.
I’ve tried to remove this from a coworker’s PC for quite a while and I’ve used several of the removal tools that others have mentioned above. The only thing that I have used which seemed to work is Webroot’s SpySweeper. You can download a 14-day trial version at their web site:
Give it a try and see what you think. (Note: I don’t have any affiliation with this company. I’m just very happy with the results that I got with SpySweeper.)