Posted 15 December 2009 - 05:44 AM
I am really hoping that someone can help me with my problem, as now it has almost brought me to tears.
I should say beforehand that I am a total computer newbie, I know absolutely nothing of computers, only the bare minimum. I use my computer to surf the internet and for Word.
So, my problem:
I downloaded an episode of a tv show using Vuze (I know, bad behaviour and after this I will certainly never do it again!). The file must have been infected, cause when I opened it to play, my virusscanner (Avast) gave the following warning:
Malware name: Win32 Malware-gen
Malware type: Virus/Worm
I put the file in quarantine and that seemed it. I removed the infected episode.
Unfortunately, from that moment on, every 5 minutes the same Avast warning pops up. Everytime it gives the same virus in the same filename:
C:\\windows\temp\xxxx.tmp\svchost.exe The xxxx stand for a random 4 letter combination that keeps changing.
I did some research on the internet and found that this problem is caused by this virus: Backdoor.TDss.565.
I tried to run Dr. Web CureIt scanner, because it was said that that was the only virusscanner that could find and clean up this virus. I tried it 4 times, but every time the program shut itself down when it was trying to scan the file C:\windows\system32\drivers\atapi.sys
I concluded this atapi.sys file must be the one that is really infected. It somehow prevents Web CureIt from finding and cleaning it.
When I am offline Avast gives no virus pop ups anymore, but it keeps on creating the weird xxxx.tmp\svchost.exe files.
When I am online I get a viruswarning every 5 minutes.
So, to be conclusive: I definitely have this virus, although my computer still behaves normal (except for the 5 minute pop ups from Avast). I read somewhere that my computer still functions properly because Avast is holding back the virus, it keeps placing it in quarantine.
Online I read that Dr. Web CureIt would do the trick but it doesn't, it shuts down when scanning atapi.sys
At the moment I am abroad for 4 months, so I do not have any backups or system CDs or anything with me, they are all back home.
I really don't know what to do anymore. I read something about Combofix, but it scares the hell out of me. I cannot afford to crash my computer.
Please help me with this.
Thank you so much in advance!