Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

FBI Virus


  • Please log in to reply
4 replies to this topic

#1 grambler

grambler

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:06:40 PM

Posted 21 November 2012 - 09:13 AM

After getting the fbi virus I got it to restore and did several malwarebytes scans and it detects nothing but yet I'm getting bombarded with *.tmp virus.w32 from my anti virus and my firewall is blocking all kinds of incoming. I can't find anything. Any suggestions?
Thanks

BC AdBot (Login to Remove)

 


#2 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:08:40 PM

Posted 21 November 2012 - 12:25 PM

Hi grambler,

Have you followed the instructions from the FBI removal guide? Are you able to boot into safemode as described?

bloopie

#3 grambler

grambler
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Local time:06:40 PM

Posted 21 November 2012 - 03:13 PM

Yes the Fbi virus is gone think it is something separate. I get virus warnings on my antivirus about libtidy.dll (virus.w32) has been blocked and then it goes to another .dll. I've ran Malwarebytes again no luck.

#4 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:08:40 PM

Posted 21 November 2012 - 06:23 PM

Hi again,

I'd like you to run these for me:

Step :step1:

Download the latest version of TDSSKiller from here and save it to your Desktop.


  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    Posted Image
  • Click the Start Scan button.

    Posted Image
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results and offer three (3) options.
  • Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

    Posted Image
  • Note*** If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste its contents in your next reply.

==========

Step :step2:

Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Delete.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.

==========

In your next reply, please include the following:

  • The TDSSKiller log
  • The adwCleaner log
How is your computer running now?

bloopie

#5 bloopie

bloopie

    Bleepin' Sith Turner


  • Malware Response Team
  • 7,927 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:New York
  • Local time:08:40 PM

Posted 24 November 2012 - 09:20 PM

Hi again,

Do you still wish to receive help with this problem? If so, please follow the instructions in my previous post, otherwise let me know! :)

bloopie




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users