DOJ Arestocrat

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by bmarsh, May 11, 2013.

  1. bmarsh

    bmarsh Private E-2

    I guess I waited too long to post this but here goes.
    booted up my windows XP machine and got the Locked screen ARESTOCRAT.
    tried several different approachs to solve the issue but now can't even get in to SAFE Mode.
    Short of a complete reload of the operating system, is there any suggestions that may get me out of this problem?
    Some system info:
    SYSTEM:Win XP SP3 32bit
    Virus sfw: Microsoft security essentials(didn't catch it)
    System was running ADOBE Flash Player update when it happened
    I have a home network with 1 desktop, 1 laptop, printer, and a standalone desktop which is the infected one.
    Please Help....
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  3. bmarsh

    bmarsh Private E-2

    Tried suggestion. Now, my machine will not boot from cdrom. Bios states crdom as 1st boot device, Floppy as 2nd and HDD-0 as 3rd. Message says
    press any key to boot from CD. No response. Led on cd flashing. Sits there doing nothing. I think now the virus has spread. Looks really bad now. Don't know where to turn but thanks for your help. I may have to flash the bios to get it to work.
    If no reply from me within 2 days, you can delete this thread.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This would not be from the infection you named. The infection is not running until you boot up Windows.

    Make sure that you really made a bootable CD by trying it in another computer. The other option is make the bootable USB version instead of CD version. It is in the instructions. Click step 2 and then see step 2.2.

    http://support.kaspersky.com/8005?el=88446
     
  5. bmarsh

    bmarsh Private E-2

    Please close this thread and post. Went through hell but was finally able to resolve the issue. Many many thanks to all for their suggestions.
     
    Last edited: May 21, 2013
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome.
    We do not close threads. We just let them die off. No one can post in your thread but you and the admins/mods here.

    If would be great if you can post what solution you found as it could help someone else who runs into a similar problem in the future.
     
  7. bmarsh

    bmarsh Private E-2

    Here's the final correction senario.
    Took computer to a 'GEEK' repair shop. He said over the phone it would take about an hour to repair. After 2+hours, he said to leave it and He'll work on it.
    I said no and went home.
    Bought a used HDD. Flashed the BIOS sucessfully and reloaded the OS WINXP SP3 on the new drive. Installed the old drive as "D" to try and save most of my data files.
    Ran MS Essentials against the "D" drive and lo & behold the DOJ virus was found along with a suspected 'BOOT' virus. Deleted and cleaned both viruses, backed up all of my old data files, cleaned and re-formated the drive.
    Restored the data files to the new "C" drive. The system is now working better than ever.
    Probably should have done that in the beginning instead of wasting all that time.
    Anyway, HAPPY COMPUTING!!!!!
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Thanks for posting what you did.

    The Kaspersky tool would have removed the "DOJ" infection and possibly the other too if you could have gotten it to boot from CD or USB.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds