PDA

View Full Version : virus help.


devilmayroy
01-06-2009, 06:19 AM
http://i43.tinypic.com/rtq7v9.jpg

so its a keylogging/spyware type thing but its disguised as an anti-spyware program designed to get your credit card details. after about 5 hours of sifting through files i found the actual file and got rid of it.And the virus went away BUT today its back!and its either changed its name or its location on my computer. it knows what HJT is and can easily evade it and now its not showing up on any searches or scans but its still there.
has anyone had this before and how do i get rid of it permanently without going for professional help or getting a new pc,this one is reletevly new.. halp?

Strelok12
01-06-2009, 09:07 AM
You need Spyhunter or any other good anti-spyware program and you also need Revo Uninstaller,Spyhunter costs a shitload of money,but Revo Uninstaller is a freeware.

The reason why it came back is because that rogue anti-virus put a Trojan.Zlob so it will come back.

wut
01-06-2009, 05:04 PM
Do what I did.

Run a scan with your real anti-virus.

Next, do a system restore to a few days before the maleware showed up.

Finally, do another scan.

It should be gone.

arabftw123
01-06-2009, 05:42 PM
Do what I did.

Run a scan with your real anti-virus.

Next, do a system restore to a few days before the maleware showed up.

Finally, do another scan.

It should be gone.

Some forms of malware tend to infect your system restore points, or even disable the feature completely, which wipes the previous restore points.

Anyways, to remove the infection, download the following:


Malware Bytes' Anti-Malware (http://www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html)
SuperAntiSpyware (http://www.download.com/SUPERAntiSpyware-Free-Edition/3000-8022_4-10523889.html)

Both programs are freeware and are considered among the best at what they do - which is find and remove various forms of malware. They both work a bit differently, so it's best to download both.

Once you've downloaded and successfully installed both, reboot your computer into safe mode and run at least one scan using each. Needless to say remove whatever it is they find.

If you need help getting into safe mode, click here. (http://www.bleepingcomputer.com/tutorials/tutorial61.html)

HWV
01-06-2009, 06:26 PM
download spybot S&D here http://www.safer-networking.org/en/
run scans, follow directions, blah blah blah.
Then download HJT and run a scan. copy and paste the logfile here.

Eiliosdraye
01-06-2009, 06:36 PM
http://www.greatis.com/unhackme/


Download that if you MUST. It will instantly do a scan then show every file that even has a trace of malware in it, it will delete any files and replace any registry files, thus allowing you to delete all malware. It's the #1 root kit destroyer IMO.

HWV
01-06-2009, 06:39 PM
http://www.greatis.com/unhackme/


Download that if you MUST. It will instantly do a scan then show every file that even has a trace of malware in it, it will delete any files and replace any registry files, thus allowing you to delete all malware. It's the #1 root kit destroyer IMO.
that software has way too many false detects though.

to eilios: request me on XBL. i requested you, but i dont think you got it. :/

Eiliosdraye
01-06-2009, 06:43 PM
that software has way too many false detects though.

to eilios: request me on XBL. i requested you, but i dont think you got it. :/
It does, but it works so well.
To HWV: I'm going to as soon as I get on.
=D
D=

devilmayroy
01-07-2009, 03:17 PM
You need Spyhunter or any other good anti-spyware program and you also need Revo Uninstaller,Spyhunter costs a shitload of money,but Revo Uninstaller is a freeware.

The reason why it came back is because that rogue anti-virus put a Trojan.Zlob so it will come back.

manually removed it.trojan and actual virus files.hasnt come back! thanks anyway

Stick in your windows disk and do a fresh install.

Back up your important files on a flash drive/cd.

considered but nowhere to store important files so i manually removed the fiels rather then scanning again.

Do what I did.

Run a scan with your real anti-virus.

Next, do a system restore to a few days before the maleware showed up.

Finally, do another scan.

It should be gone.

i system restored TWICE and it was still there,it acts as if its a real program so most firewalls and spyware softwares dont notice it even though its as clear as day on your screen.

Some forms of malware tend to infect your system restore points, or even disable the feature completely, which wipes the previous restore points.

Anyways, to remove the infection, download the following:


Malware Bytes' Anti-Malware (http://www.download.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html)
SuperAntiSpyware (http://www.download.com/SUPERAntiSpyware-Free-Edition/3000-8022_4-10523889.html)

Both programs are freeware and are considered among the best at what they do - which is find and remove various forms of malware. They both work a bit differently, so it's best to download both.

Once you've downloaded and successfully installed both, reboot your computer into safe mode and run at least one scan using each. Needless to say remove whatever it is they find.

If you need help getting into safe mode, click here. (http://www.bleepingcomputer.com/tutorials/tutorial61.html)

bleeping computer or wahtever was a big help!

It does, but it works so well.
To HWV: I'm going to as soon as I get on.
=D
D=

my gamertag is devilmyroy.add me too!^^

i found the virus changing locations and accidentaly stumpled upon it and deleted it.trojan is gone.but 2 files still remain but dont seem to be causing me any harm!:Dthanks guys!