Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

How can I indentify which malware I have?


  • Please log in to reply
8 replies to this topic

#1 thirdflr

thirdflr

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:19 AM

Posted 20 December 2009 - 07:06 PM

OK this web site has a wealth of info but first one must indentify which virus.malware one has before I can do a removal process.

Right now:

-I am getting misdirects in my searchs in IE
-I can not boot into Safe mode...goes to blue screen
-I can not go into Auto Recovery console
-Symantec and Malwarebytes picks up nothing in scans
-I notice two user accounts placed on my machine and put in my Administrators group called "google$" and "ty$" - I removed them pronto
-There is no hard disk in disk management...yet I clearly boot
-Fdisk is gone from the machine
-When I try to reinstall windows It tells me there is no hard drive
-There is nothing in the Startup, Run section in regedit
-at this point I have backed up my files, I want to blow the drive away but how can I? Windows setup says theres no drive to install it to!

This is nasty,,,,ugly, I am really scared now that I found the users in the Admin group of the local computer. have they gotten my passwords?

-tonight I have reset the password on my router-firewall.

I have done a Fport but have found no weird ports.....

HELP

BC AdBot (Login to Remove)

 


#2 MATTSPCHELP

MATTSPCHELP

  • Members
  • 196 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Leicester, United kingdom
  • Local time:05:19 PM

Posted 20 December 2009 - 07:52 PM

Can you install programs such as malwarebytes , Avast , Spybot Search and destroy ?
Microsoft Certified Desktop Support Technician

#3 thirdflr

thirdflr
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:19 AM

Posted 20 December 2009 - 08:18 PM

Yes...as I stated I have malwarebytes installed and the scans pick up nothing....the others (Avast, spybot) I have no knowledge of. I don't install anything unless it is known name. I am a MCSE as well. But I manage AD, not desktops.

#4 MATTSPCHELP

MATTSPCHELP

  • Members
  • 196 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Leicester, United kingdom
  • Local time:05:19 PM

Posted 20 December 2009 - 08:27 PM

Checked Hostsfile ?

Done a rookit Scan ?
Microsoft Certified Desktop Support Technician

#5 thirdflr

thirdflr
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:19 AM

Posted 21 December 2009 - 08:10 PM

Host file is not changed Rootscan picked up some stuff but problem exists. I have given up and tried to reformat the drve with partition magic and Windows install CD still says I have no hard drive....Has this thing screwed my boot record?

#6 MATTSPCHELP

MATTSPCHELP

  • Members
  • 196 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Leicester, United kingdom
  • Local time:05:19 PM

Posted 21 December 2009 - 08:13 PM

What Type of Hard drive are we dealing with SATA ?
Microsoft Certified Desktop Support Technician

#7 thirdflr

thirdflr
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:19 AM

Posted 21 December 2009 - 08:24 PM

no a IDE....this is on a IBM thinkpad t61p

#8 MATTSPCHELP

MATTSPCHELP

  • Members
  • 196 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Leicester, United kingdom
  • Local time:05:19 PM

Posted 21 December 2009 - 08:27 PM

Wud suggest Fixboot and Fixmbr
Microsoft Certified Desktop Support Technician

#9 thirdflr

thirdflr
  • Topic Starter

  • Members
  • 5 posts
  • OFFLINE
  •  
  • Local time:11:19 AM

Posted 22 December 2009 - 12:20 AM

Still the same.....

I have three Windows install CDs

XP
XP Sp2
Server 2003R2

NO matter what utility I run from Hiten (sp) boot CD on the MBR and partition it still comes back with Windows can not find a HDD to install on.

This drive is good. IBM/Hitachi Disk diag tool says it is fine. WTF virus has done this to my disk? Ever instinct says the BIOS is hosed but it sees the drive no problems.

So to clarify, before I gave up on the OS and decided to reformat, Dr web Cure it found a iastore.sys issue which I assume is a hdd driver of sorts.

Now after 10 times of wiping, updating, deleting the MBR and repartitioning and formating...all I get on boot up which is to be expected "operating system missing. BUt then when I try to boot to a Windows install disk to install it, Windows setup say there is no hard drive to install to

Help




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users