Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.When posting your problem, do not run and post a ComboFix logs. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.
To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.
![]() ![]() |
Feb 17 2009, 09:39 PM
Post
#1
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
I have a terrible virus on my computer. I've also been looking around the internet for the last two days for a solution to the problem, but nothing is helping. The virus is making my computer start very slow, making System Restore unusable, freezing randomly, saying that I cant use the Registry Editor because it's been locked by the admin (even I am the admin), disconnecting me from my network, and sometimes I can only get explorer.exe running through the Task Manager. Also when I start up the computer all these wierd messesges come up saying that windows has closed the DHCP Wizard, and other things of that nature. I really need some help here, I've done at least 10 system scans with BitDefender and it's not helping. Suggestions please! Compaq Presario F730US (Laptop) AMD Athlon 64 X2 Dual Core Processor 960 MB of RAM Windows XP Pro SP3 (downgraded from Vista) thankyou |
|
|
|
Feb 18 2009, 02:44 AM
Post
#2
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
bump
|
|
|
|
Feb 18 2009, 10:50 AM
Post
#3
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
Please download ATF Cleaner by Atribune & save it to your desktop.
Please download Malwarebytes Anti-Malware (v1.34) and save it to your desktop. alternate download link 1 alternate download link 2 If you have a previous version of MBAM, remove it via Add/Remove Programs and download a fresh copy.
http://www.bleepingcomputer.com/forums/topic114351.html -------------------- Chewy
|
|
|
|
Feb 19 2009, 12:25 AM
Post
#4
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
Thanks, but my computer won't let me open MBAM. After the install it says ""mbam.exe - Unable To Locate Component
This application has failed to start because MSVBVM60.DLL was not found. Re-installing the application may fix the problem." |
|
|
|
Feb 19 2009, 05:23 AM
Post
#5
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
http://www.microsoft.com/downloads/details...;displaylang=en
Your visual basic is damaged, if it was malware this might not help, please try to uninstall MBAM, run the VB installer and then try to reinstall MBAM -------------------- Chewy
|
|
|
|
Feb 19 2009, 02:29 PM
Post
#6
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
http://www.microsoft.com/downloads/details...;displaylang=en Your visual basic is damaged, if it was malware this might not help, please try to uninstall MBAM, run the VB installer and then try to reinstall MBAM I've ran the VB installer, and tried to reinstall MBAM, no error message now but the program won't start. |
|
|
|
Feb 19 2009, 04:52 PM
Post
#7
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
That's some progress, try renaming the executable in the MBAM program folder
C:\Program Files\Malwarebytes' Anti-Malware mbam.exe yo kell.com or kell.bat Show Hidden Folders/Files
This post has been edited by DaChew: Feb 19 2009, 04:53 PM -------------------- Chewy
|
|
|
|
Feb 20 2009, 01:58 PM
Post
#8
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
That's some progress, try renaming the executable in the MBAM program folder C:\Program Files\Malwarebytes' Anti-Malware mbam.exe yo kell.com or kell.bat Show Hidden Folders/Files
here's another problem, there is no "Folder Option" option on the view tab. Nor can I open it from the Microsoft Support Center, when I click "Open Folder Options", a message comes up saying: "This operation has been canceled due to the restrictions in effect on this computer. Please contact your system administrator." Though I am the system administrator. |
|
|
|
Feb 20 2009, 07:27 PM
Post
#9
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
Would you try Bitdefender in safe mode
Now reboot into Safe Mode. This can be done tapping the F8 key as soon as you start your computer You will be brought to a menu where you can choose to boot into safe mode. Make sure you choose the option without networking support. Please see here for additional details. -------------------- Chewy
|
|
|
|
Feb 21 2009, 02:59 PM
Post
#10
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
Would you try Bitdefender in safe mode Now reboot into Safe Mode. This can be done tapping the F8 key as soon as you start your computer You will be brought to a menu where you can choose to boot into safe mode. Make sure you choose the option without networking support. Please see here for additional details. did it, got rid of most of the viruses, though some are in quarantine. The problem still remains though, and I can't open Folder Options nor MBAM. |
|
|
|
Feb 21 2009, 05:13 PM
Post
#11
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
Before we start fixing anything you should print out these instructions or copy them to a NotePad file so they will be accessible. Some steps will require you to disconnect from the Internet or use Safe Mode and you will not have access to this page.
Please download DrWeb-CureIt and save it to your desktop. DO NOT perform a scan yet. Reboot your computer in "Safe Mode" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode". Scan with Dr.Web CureIt as follows:
-------------------- Chewy
|
|
|
|
Feb 21 2009, 08:44 PM
Post
#12
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
So I dont know if I shouldnt of done this, but I didnt let the scan finish because it was lasting about two hours, and it had only shown about a fourth of the way done, and I figured the scanner already covered the core computer files which I think would of had all the viruses on it. But if need be, I will run the scanner again in safe mode through the night until it is finished. LOG: CODE livesrv.exe;c:\program files\common files\bitdefender\bitdefender update service;Probably DLOADER.Trojan;Incurable.Moved.; svchost.exe:ext.exe;c:\windows\system32;Trojan.Spambot.4348;Deleted.; xgzdsa.dll;c:\windows\system32;BackDoor.JackBot.1;Deleted.; xgzdsa32.dll;c:\windows\system32;BackDoor.JackBot.1;Deleted.; pfkik.exe;C:\;Trojan.MulDrop.21321;Deleted.; ytprjxsv.exe;C:\;Trojan.Spambot.4117;Incurable.Moved.; thanks alot for helping me with my issue, I really REALLY appreciate it. Ive asked some other forums for help, and they don't even try! This post has been edited by kellan6: Feb 21 2009, 09:03 PM |
|
|
|
Feb 21 2009, 09:53 PM
Post
#13
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
Download a new copy of MBAM and update it and try to run it again
If it won't run please let cureit finish. -------------------- Chewy
|
|
|
|
Feb 22 2009, 01:57 AM
Post
#14
|
|
|
Member ![]() ![]() Group: Members Posts: 91 Joined: 17-February 09 Member No.: 297,232 |
when I start MBAM now, it still does not show up, although under the processes tab in the task manager, it says mbam.exe is running.
|
|
|
|
Feb 22 2009, 09:18 AM
Post
#15
|
|
![]() Visiting Alien ![]() ![]() ![]() ![]() ![]() ![]() Group: BC Advisor Posts: 9,354 Joined: 20-May 07 From: millenium falcon and rockytop Member No.: 131,963 |
Could you post those bitdefender logs that show what it found?
-------------------- Chewy
|
|
|
|
![]() ![]() |
| Lo-Fi Version | Time is now: 9th February 2010 - 12:04 PM |