Forum Home
Press F1
 
Thread ID: 125203 2012-06-13 20:53:00 Huge virus, URGENT help needed please. Luppi (12974) Press F1
Post ID Timestamp Content User
1281487 2012-06-13 21:40:00 The pro's are here.I'll leave it to them. sk69ersnz (13476)
1281488 2012-06-13 22:16:00 Please report back and let us know the outcome. Bryan (147)
1281489 2012-06-13 22:38:00 Try panda cloud virus. Yes, I know it's a cloud based antivirus, but it works pretty well.

And go into CCleaner, tools, startup, and disable those two .exe files.
Nick G (16709)
1281490 2012-06-13 22:47:00 Am on my brothers P4 in the other room. Tricked it into safe mode by shutting down the process, causing a blue screen, so it automatically got me to select what i want to boot. The internet is connected as this PC uses wireless, but the virus even seems to have an effect in Safe Mode. It says i cannot get on the web because of a proxy error, regardless of what browser i use. Am currently scanning entire PC with MB and AVG and made a back-up of my most-important files (10 GB). I have a Windows x64 clean install DVD nearby if all else fails, i deleted every registry file and actual virus file i could find manually and killed the processes in Ccleaner. Will restart and see the outcome, fingers crossed.


Anybody have any idea as to WHAT this actually is? I find it extremely weird that it's so detailed in everything and nobody ran into the problem online. Isn't this virus known?
Luppi (12974)
1281491 2012-06-13 22:54:00 Have you stopped it opening from startup in CCleaner?

It sounds like an autorun virus, so look at this (www.ehow.com)
Nick G (16709)
1281492 2012-06-13 22:55:00 Go into whatever browser's options / preferences. And go to the proxy option. Change it to no proxy. Speedy Gonzales (78)
1281493 2012-06-13 23:13:00 Got that out of the way, changed the proxy to no proxy in Opera and works. Am in safe mode networking on the diseased PC now. Will look at the autorun, but already closed it from startup, not yet restarted, will report back. Speedy there is a PM for you. Luppi (12974)
1281494 2012-06-13 23:23:00 A few fixes here. www.google.co.nz
:)
Trev (427)
1281495 2012-06-13 23:42:00 Got into the PC with TV. Sent Trojan remover across. Updated it (after unticking the proxy option in IE). Since it uses that to update. Did a scan, it found some policy restrictions in place. Luppi is rebooting now((hopefully) in normal windows. To see if it crashes again

Ran tdsskiller, no rootkits found., Mbam found 2 malware, trojan agent, and something under run in the registry somewhere
Speedy Gonzales (78)
1281496 2012-06-13 23:47:00 Rebooted normally now. Processes are gone from CCleaner startup and from Task Manager. Folder is gone from AppData, PC still moves kind of slow but will clean it up in a jiffy. But still, my antivirus won't start on reboot and the firewall problem still exists.

How on earth do i fix that. Another PM for you Speedy coming soon.
Luppi (12974)
1 2 3 4 5 6