Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

SMART HDD


  • Please log in to reply
6 replies to this topic

#1 twl54

twl54

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:31 AM

Posted 17 April 2012 - 12:29 PM

I had SMART HDD pop up yesterday on my pc. (windows XP SP3) I tried to follow the instructions posted in the forum for it's removal and was able to start up in safe mode, switch to administrator and download RKILL. But when I clicked on the desktop icon, it would start and then say something to the effect that RKILL was stopped or forced to stop. I then downloaded Malwarebytes Anti-Malware free program and ran it. it showed 3 detections and I opted to remove them. Once rebooted I can to a blue screen and nothing but the Malware software accessible. I did run window defender and it showed nothing wrong, McAfee full scan and it was clean ( I had run it last night and found 6 trojan programs and had it delete them) and just now the Malewareprogram and it is clear. What do I need to run to get my desktop back? I am putting the desktop PC back into safe mode and using this laptop to send this.
TLW54

BC AdBot (Login to Remove)

 


#2 twl54

twl54
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:31 AM

Posted 17 April 2012 - 01:09 PM

Update, in safe mode and tried RKILL again and it starts to run then says: Processes terminated by Rkill or while it was running:
c:\windows\system32\userinit.exe

#3 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:31 AM

Posted 17 April 2012 - 01:49 PM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)


Please download GMER from here(doesnot work on 64 bit OS)

http://www2.gmer.net/download.php

Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.

GMER will open to the Rootkit/Malware tab and perform an automatic Full Scan when first run. (do not use the computer while the scan is in progress)

If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
Now click the Scan button. If you see a rootkit warning window, click OK.
When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
Click the Copy button and paste the results into your next reply.


Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

#4 twl54

twl54
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:31 AM

Posted 17 April 2012 - 05:43 PM

can't seem to post logs. Keeps asking me to shorten reply

#5 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:31 AM

Posted 17 April 2012 - 08:56 PM

Try to upload it to

www.mediafire.com and post the link here

good luck

#6 twl54

twl54
  • Topic Starter

  • Members
  • 15 posts
  • OFFLINE
  •  
  • Local time:12:31 AM

Posted 18 April 2012 - 08:57 AM

narenxp, I followed the smart hdd removal steps shown in this forum and then ran unhide and all seems to be good. I am on my laptop as I write this, on train to work and will try to post the logs when i get home. Thank you so much for your help!

#7 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:31 AM

Posted 18 April 2012 - 10:01 AM

:thumbup2:




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users