Welcome Guest ( Log In | Click here to Register a free account now! )
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.When posting your problem, do not run and post a ComboFix logs. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.
To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.
![]() ![]() |
Jul 10 2009, 01:42 PM
Post
#1
|
|
|
New Member ![]() Group: Members Posts: 4 Joined: 29-May 09 Member No.: 336,920 |
Do I have a virus? How can I get rid of it? I have McAfee but I can't get into it now? Not to mention I have a free version of the malwarebytes scanner and I can't utilize that either. I'm at a complete lost. I don't know what to do. I have moderate computer savvy skills and I would need step by step instructions from anyone who knows how to correct this matter. Please help... Edit: Moved topic from XP to the more appropriate forum. ~ Animal |
|
|
|
Jul 10 2009, 01:49 PM
Post
#2
|
|
![]() Member ![]() ![]() Group: Members Posts: 137 Joined: 5-February 09 From: Everywhere, Nowhere Member No.: 292,007 |
Can you log into Safe Mode?
-------------------- HJT Sophomore Classman. Forum Skulker. Preventing Comp Nukes everywhere. :-)
|
|
|
|
Jul 10 2009, 05:52 PM
Post
#3
|
|
|
New Member ![]() Group: Members Posts: 4 Joined: 29-May 09 Member No.: 336,920 |
Can you log into Safe Mode? Yes, Raven I can. Thank, God I have another PC and looked up troubleshooting info. I went into SafeMode and ran a Malware Scan. All kinds of crap came up: Trojan: Artemis, Rootkit.Boot, Backdoor.Bot, Rogue.ErrorFix, Worm.KoobFace. Have no idea...how I could have gotten these things. I was in an approved news site? Everything was deleted or so I thought. When I rebooted again. I was still experiencing the same problem. Therefore I logged back in and ran another scan. This time it said I had only two problems. Trojans: Artemis and a FakeAlert-FF, they were quarantined. So now I'm getting ready to re-scan, then shut down, reboot and see if everything is cleared up. |
|
|
|
Jul 10 2009, 06:45 PM
Post
#4
|
|
![]() Member ![]() ![]() Group: Members Posts: 111 Joined: 9-July 09 From: Glasgow Member No.: 350,157 |
Dont know if this is jumping the gun here. but would a repair installation of windows do the trick? or am i barking up the wrong tree?
-------------------- Lucy
C2D E6600 @ 2.4, 8GB OCZ Reaper @ 1066, 500GB Barracuda, Powercolor HD4850, Asus P5Q Pro, Corsair TX650, NZXT Lexa Blackline, Windows 7 - Build 7100, Samsung 22" Monitor |
|
|
|
Jul 10 2009, 07:56 PM
Post
#5
|
|
|
New Member ![]() Group: Members Posts: 4 Joined: 29-May 09 Member No.: 336,920 |
I have no clue Andrew. I'm back to square one again, even after so calling deleting all of the malicious viruses/adware and such off my computer. After, I re-booted and being joyful that my problem was resolved...it went back to doing the same thing again. Whereas, I couldn't get past my desktop...and can't click onto any programs.
|
|
|
|
Jul 10 2009, 08:17 PM
Post
#6
|
|
![]() To INSANITY and BEYOND !! ![]() ![]() ![]() ![]() ![]() ![]() Group: Moderator Posts: 21,854 Joined: 10-September 04 From: NJ USA Member No.: 2,608 |
Hi, No a Repair install will NOT work.. A full wipe and reinstall will.
First a word about what you have already found/ One or more of the identified infections is a backdoor trojan. This allows hackers to remotely control your computer, steal critical system information and download and execute files. I would counsel you to disconnect this PC from the Internet immediately. If you do any banking or other financial transactions on the PC or if it should contain any other sensitive information, please get to a known clean computer and change all passwords where applicable, and it would be wise to contact those same financial institutions to apprise them of your situation. Though the trojan has been identified and can be killed, because of it's backdoor functionality, your PC is very likely compromised and there is no way to be sure your computer can ever again be trusted. Many experts in the security community believe that once infected with this type of trojan, the best course of action would be a reformat and reinstall of the OS. Please read these for more information: How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud? When Should I Format, How Should I Reinstall We can still clean this machine but I can't guarantee that it will be 100% secure afterwards. Let me know what you decide to do. if you decide to clean... Next run MBAM (MalwareBytes): NOTE: Before saving MBAM please rename it to zztoy.exe....now save it to your desktop. Please download Malwarebytes Anti-Malware and save it to your desktop. alternate download link 1 alternate download link 2 MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.
-------------------- Can you spare some PC cycles to help FIND A CURE .. BC FOLDING TEAM Click me /info..
ThoughtVent a goodplace to discuss.<<>>>Staying Updated Calendar of Updates. For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear.... Become a BleepingComputer fan: Facebook |
|
|
|
![]() ![]() |
| Lo-Fi Version | Time is now: 20th November 2009 - 11:04 PM |