Forum Home
Press F1
 
Thread ID: 126545 2012-09-03 22:37:00 File Recover Virus NZHawk (4093) Press F1
Post ID Timestamp Content User
1298748 2012-09-03 22:37:00 Got a laptop with the File Recovery virus
I have researched the repair on the net & tried 2 without any success
1] indicated to change the proxy settings in IE - except the virus has removed IE & access to the control panel
2] the other suggested renaming the virus .exe file - but that didn't work either - it remade itself


can anyone suggest a method of removing this virus
I am open to refomating if thats the only or best way.

OS: windows 7
NZHawk (4093)
1298749 2012-09-03 22:52:00 Have you Tried / Read This Here (malwaretips.com) wainuitech (129)
1298750 2012-09-03 22:53:00 Yes this is one that I tried that states to open IE - but IE isn't available NZHawk (4093)
1298751 2012-09-03 23:05:00 Try running Rkill first, as well as the other Removal Software While in Safe mode. Also try running IE from the program Files. wainuitech (129)
1298752 2012-09-03 23:07:00 got it will report back - thank you! NZHawk (4093)
1298753 2012-09-03 23:24:00 Ok ran Rkill & Unhide : icons are now visible & will run malwarebytes NZHawk (4093)
1298754 2012-09-04 00:00:00 I ran Malwarebytes reports no infection!
would this be because RKill removed it?
NZHawk (4093)
1298755 2012-09-04 00:18:00 I ran Malwarebytes reports no infection!
would this be because RKill removed it?
Malwarebytes only picks up certain types of infections. Try running a virus scan as well. What antivirus program do you have on the computer?
Nick G (16709)
1298756 2012-09-04 00:27:00 McAfee Internet Security
I updated & required reboot

and it's reinfected itself again

will start over with RKill
NZHawk (4093)
1298757 2012-09-04 00:28:00 McAfee Internet Security
Umm......McAfee isn't great.
If malwarebytes isn't picking it up I'd say run a virus scan, but if possible put something better than McAfee on. Something like the Nod32 trial version would be good to clean of an infection
Nick G (16709)
1 2 3