how to rescue my data?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by subzer0, Apr 4, 2012.

  1. subzer0

    subzer0 Private E-2

    HI ,
    yesterday I've noticed that my XP Sp2 PC
    got infected by the ramnit virus ,

    i did a scan with
    malwarwbytes i have over 1800 infected files
    eseet smart online 14200:confused .

    while mwb was trying to remove the virus i think it deleted important exe files
    i know that my PC is beyond salvaging now cause i keep on getting error messages from various programs; acrobat, office ,...and the virus is still there
    i am afraid that the system would crash on me now


    my question is how to get my data on a removable disk without infecting the removable and will my data still be infected?
    please help ? thanks in advance.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Ramnit infections have really become quit nasty and dangerous. We could attempt to remove it, and we have had some success in the past, but recently it has become even more trouble to remove. It is really safer to just bite the bullet and do a clean reinstall.

    The problem is that the damage caused by this infection really makes a PC unreliable/untrustworthy. PE file infectors like Ramnit, Virut,.... etc can infect all executable files (DLL, EXE, SCR....and many more and also HTML). These infections can open back doors that truly may compromise your computer and your security. These backdoors could allow a remote attacker to access and instruct the infected computer to download and execute more malicious files.

    In many cases the infected files (which could number in the thousands) cannot be disinfected properly by your anti-virus or by other scanning tools. Also when disinfection is attempted, the files often become corrupted and the system may become unstable or irrepairable. The longer Ramnit remains on a computer, the more files it may infect and/or corrupt so the degree of infection can vary.

    Ramnit is commonly spread via a flash drive (usb, pen, thumb, jump) infection where it copies the Ramnit worm using a random file name. The infection is often contracted by visiting remote, crack and keygen sites. These type of sites are a major source of system infection.

    So all the above being said, and please do take serious note of the warnings, I suggest the you just reformat, re-partition and re-install. You run too great a risk trying to save anything.
     
  3. subzer0

    subzer0 Private E-2

    thanks a lot for answering

    most likely I've got from a kegen ,
    i think i have ramnit h and ramnit a
    that what i gathered from eset smart online unfortunately i did not save the log

    i have some school work that include .doc , .pdf would those be at risk?
    do you think i shouldn't backup any.exe files?, some exe files is pretty important to me .
    what is the best backing up way in my case ?

    if i connect the external drive is it possible that it would get infected with ramnit and transport to the new system ?

    is there a way to protect the external?
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you have run eset numerous times and it is still showing the infection, then your only course of action is to reformat.
    I would be very hesitant to try to rescue or back up ANY files. All it takes is one infected file to reinfect your other media.
    Yes, you run a very great risk of infecting the external drive.
     
  5. subzer0

    subzer0 Private E-2

    thanks for answering and sorry for asking a lot of questions

    if i install the new system and put the infected removable and scan it with mwb and other devices before opening it is it possible to get infected?

    i have numerous files of my school work in zip and rar files format that i cant give away , what should i do now ?:confused

    is there a way to cure the backup or should i try to disinfect before backing up
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Best to scan the files with eset. Making sure that what you are backing up is clean.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds