Infected plz help
-
- Legit User
- Posts: 5
- Joined: Fri Jul 27, 2007 3:35 am
Infected plz help
I was infected with either a virus or spyware earlier today. I was able to use system restore to get to where I am functioning again but I do not believe all is well. I ran adaware, Norton and spybot. Spybot had some artifacts that it could not remove. Norton found two entries. I have yet to reboot for fear that the malware will reappear. I need desperate help. Thanks in advance for any help.
Re: Infected plz help
Ok my message disappeared 
try #2
if spybot said it had to restart to finsh removing things, let it restart. It will run again before windows fully loads and find anything taht got re-activated also.
Check add/remove programs for rogue programs you did not install. If you dont know what they are, post here and someone will be able to tell you if it is safe to delete or not.
Mike
I never liked hijack this because it just isnt newbie friendly or even normal users friendly.

try #2
if spybot said it had to restart to finsh removing things, let it restart. It will run again before windows fully loads and find anything taht got re-activated also.
Check add/remove programs for rogue programs you did not install. If you dont know what they are, post here and someone will be able to tell you if it is safe to delete or not.
Mike
I never liked hijack this because it just isnt newbie friendly or even normal users friendly.
Remember, I am opinionated and nothing I say or do reflects on anyone or anything else but me 

Re: Infected plz help
Try Kaspersky and superantispyware if you're having trouble removing stuff, they're the most effective programs I've found to actually remove viruses and malware, respectively.
Re: Infected plz help
I have heard good things about NOD32 and i have Kaspersky myself, sometimes you can locate and manually delete the files using your Anti Virus. I remember having to do that myself with Norton, which is now not only bloat ware, but a pure resource hog.
AMD Athlon 64 x2 3800 @ 2.7Ghz
Asus A8N32-SLI Deluxe
eVGA 8800GTS 640MB SuperClocked
A-Data 2GB DDR400
Integrated Sound
Hiper Type-M 580W PSU
Asus A8N32-SLI Deluxe
eVGA 8800GTS 640MB SuperClocked
A-Data 2GB DDR400
Integrated Sound
Hiper Type-M 580W PSU
Re: Infected plz help
If you know what you are looking for, hijack this is very useful. Though if you've no idea what to look for you do need someone else to help, hence the asking for it to be posted ^_^
Dan
Dan
- dicecca112
- Site Admin
- Posts: 5014
- Joined: Mon Mar 01, 2004 10:40 am
- Contact:
Re: Infected plz help
And you will have to clear the system restore point or risk getting reinfected.
Phenom II 1075T,Phenom II 1090T,Intel i7 870
Gigabyte 890XA-UD3
Evga GTX460
8 GB Corsair
Agility2 120GB SSD
Dual 24" Samsungs LCD's
Gigabyte 890XA-UD3
Evga GTX460
8 GB Corsair
Agility2 120GB SSD
Dual 24" Samsungs LCD's
- dicecca112
- Site Admin
- Posts: 5014
- Joined: Mon Mar 01, 2004 10:40 am
- Contact:
Re: Infected plz help
Darkstar wrote:And you will have to clear the system restore point or risk getting reinfected.
Very very good point. Its an inherent problem with Windows, virus and Spyware latch on to files in the restore folders. So if your in normal mode, then windows doesn't allow you to move or delete the infected files, but in safe mode you can. oftentimes people are like WTF, I keep getting reinfected, and its usually do to enough of the infection being left there so that it can reinfect you.

- Tech_Greek
- Legit Extremist
- Posts: 265
- Joined: Tue Jan 02, 2007 2:35 pm
Re: Infected plz help
1) Download Spybot S&D and update it, copy the program files to a burnable CD.
2) Find copy of ERD Commander and burn it and boot from it.
3) Run SS&D and remove anything it finds.
4) Boot the computer into Safe Mode, run it again and remove anything.
5) Run HiJackthis off of trendmicro.com (bottom of page)
6) Remove things using hijackthis.de as a log analyzer
7) Restart and post hijackthis log afterwards and results.
2) Find copy of ERD Commander and burn it and boot from it.
3) Run SS&D and remove anything it finds.
4) Boot the computer into Safe Mode, run it again and remove anything.
5) Run HiJackthis off of trendmicro.com (bottom of page)
6) Remove things using hijackthis.de as a log analyzer
7) Restart and post hijackthis log afterwards and results.
Re: Infected plz help
Download any free anti-spyware program that can help you to remove the infection.
I recommend you to download the program called Spyware sweeper from http://www.spyware-sweeper.com This will manually remove the spyware, which is hijacking your browser. You would find detailed instructions at the site.
I recommend you to download the program called Spyware sweeper from http://www.spyware-sweeper.com This will manually remove the spyware, which is hijacking your browser. You would find detailed instructions at the site.
- stev
- Legit Extremist
- Posts: 1507
- Joined: Thu Feb 16, 2006 7:29 am
- Location: Nashville, TN suburbs
- Contact:
Re: Infected plz help
I would use caution since that last poster has only posted 1 time ever in these forums. The last thing you need is another worm or hack virus doing malware to your machine recommened by a user who only posted once ever.
There isn't any credibility behind the information unless a really good and known poster here can back it up.
My son is dealing with the AIM b.exe virus right now. It's a little nasty varmit, but it's been hard to get rid of. McAfee has a page dealing with it back in 2003, but since then, the links there are dead to navigate to the fix. Even the M$ page is a 404 (not found) page.
Hope that your infection on the machine gets cleared up soon. Keep us posted.

My son is dealing with the AIM b.exe virus right now. It's a little nasty varmit, but it's been hard to get rid of. McAfee has a page dealing with it back in 2003, but since then, the links there are dead to navigate to the fix. Even the M$ page is a 404 (not found) page.

Hope that your infection on the machine gets cleared up soon. Keep us posted.
AMD X2 TK-57 1.90Ghz | F700 Quanta | PC2-5300 DDR2 2Gb | GeForce 7000M | DVDRAM GSA-T40N | HP LaserJet 1018
My Stats http://folding.extremeoverclocking.com/ ... =&u=303718
http://www.eff.org - Electronic Frontier Foundation - working to protect your digital rights
My Stats http://folding.extremeoverclocking.com/ ... =&u=303718
http://www.eff.org - Electronic Frontier Foundation - working to protect your digital rights
- dicecca112
- Site Admin
- Posts: 5014
- Joined: Mon Mar 01, 2004 10:40 am
- Contact: