I have lots of viruses and need LOTS of help

Discussion in 'Software' started by Destany, Apr 21, 2004.

  1. Destany

    Destany Private E-2

    Okay, here's the system info first:
    Emachine
    Windows ME
    Intel(r)Celeron(tm) Genuine... something or other
    62.45 MB

    I think that's alright, sorry if it's not enough, computer's real sick and won't let me do a whole lot. I bought this thing used and had no security whatsoever, not even a virus scan. I don't have a recovery disk and can't get one... So like a dumbass, I went and put DSL on it. I've only had it two weeks.
    A week ago it crashed and I pretty much figured it's a worm. So I did a system restore to a checkpoint back to Oct. 2003, which makes the computer run again. I reinstalled all software, customized all my settings and have it back the way it was (though it's acting up again), but this time with firewalls and a couple virus scans... etc...
    The first scan I did with AVG free edition and it came up with 14 viruses. NO CRAP! 14!!! So it got rid of 6 and couldn't do anything with the others. So I downloaded McAffee free trial and it found more viruses, killed a couple, but I'm left with still 8 bugs in 29 files...
    All the files are located in C:/_Restore/Temp/... The disk is write protected so I can't delete them.
    These are the bugs I still have:
    Trojan: Proxy-Agent (not a virus?)
    Trojan: Spy-Idwi.dll
    Trojan: Spy-Tofger.gen
    Trojan: StartPage-BT (not a virus?)
    Trojan: Downloader-HI (not a virus?)
    Trojan: Backdoor... something or other, Mcafffee wouldn't let me see
    AdClicker-AE
    W32/Bagle.dll.gen
    I thought about undoing the restore, but I'm worried that will only leave me with a crashed computer and no restore points to fall back on.
    I read the post by Mellytoast and tried, but I'm comp-illiterate...
    What command do I type in Start|Run|type command|OK (Dos?)
    I don't have the task manager on my taskbar but did a search for it and found task Wizard, but nothing in that about explorer.exe.
    Alt+Tab only brings up a window that shows what program is currently in use...
    I tried going into MsDos and typing the command:
    SCANPM/ADL/CLEAN/ALL (like it said on McAffee site) but got the response: Bad command and Dos went all crazy and I had to close it...
    I'm not usually one to need hand holding for this kinda stuff, but I'm up a serious creek. Please someone tell me I'm not screwed!!!

    Destany
     
  2. Troy

    Troy Private E-2

    Destany, please tell what you mean by "Write protected disk". Are you using a shared PC?

    Watch for the locations of the files after a checkup has been run. Go to the folders containing the files and delete the files manually.
     
  3. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    The areas that Destany's AV has alerted are in the System Restore folder and as that folder is a operating system protected one you don't have any access to deleting them ( you can have ascess by taking adding your self with security BUT your still not going to know which RP file the virii are in ) so by doing as Xflat pointed out above you will erase at boot the restore folder and by re-enabling SR gain a new set of Restore Points.




    Xflat..... naughty naughty @ your edit ;)
     
  4. Destany

    Destany Private E-2

    You guys are the best!

    Wow! You guys are cool:)
    Okay, I disabled the restore and started a virus scan, but had McAfee and AVG both and McAffee kept butting in and locking up my system, so I uninstalled (twice rebooted) and ran AVG. C:/_Restore/Temp is still there, but almost all of the files (including infected ones) are gone!!!
    AVG did find another virus though, .pif somewhere in program files and it healed it.

    So what now? Am I clean? So far, since rebooting the computer is running alot faster than it was, and no error reports. Do I reenable the restore? Tell me what to do next please:D

    Destany
     
  5. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    As for virii YES you should be.. if you are on broadband then also just to make sure run Trends Housecall ( an online AV scanner ) http://housecall.trendmicro.com/


    then I would advice you to have a read of this page http://www.majorgeeks.com/vb/showthread.php?t=25834 grab yourself Ad-Aware, update it and run also grab yourself this software SpywareBlaster as it help in preventing Spyware, dialers and browser hijack softwarefrom running in the first place http://www.majorgeeks.com/download.php?det=2859 again check for updates then enable all options.



    after that then YES re-enable System Restore as you should be free of all nastys ;)
     
  6. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    Hell no nothing to be sorry at partner..... we must be working on same page today ;) yep if you in the UK anytime the Black & Tans on me!
     
  7. Destany

    Destany Private E-2

    Okay, I downloaded, and ran the Ad-Ware, it found 59 objects, most are trackers set in cookies. But two are Windows Reg. I know the page y'all had me read says its best to just delete anything it finds, but I was just wondering if these are necessary for windows or something... Yeah, the guy I got this computer from is a real porn junkie, I'm surprised this thing worked when I got it! lol!
    I'm getting to run the SpyBlaster, then I'll check back:)


    Destany
     
  8. Destany

    Destany Private E-2

    You guys are such a big help! I'd be so lost right now:)

    Well, I thought I got the SpyBlaster, but got Registery Mechanic. It found 27 errors and fixed all but 14. It says I have to purchase it to get them all fixed, but I've got no way to purchase it.
    6 errors in Add/Remove Programs
    2 errors in Configuration files
    6 errors in Scan for Shortcuts
    Can I repair these manually?

    Destany
     
  9. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

    There are free registry cleaners that are excellent. I often still use JV16 registry cleaner. I frown on tools that do not show their removal capabilities. Its very safe, fast and creates backups. Others might want to suggest other registry cleaners as well, but most of us like this one:

    http://www.majorgeeks.com/download460.html
     
  10. Destany

    Destany Private E-2

    Good to go?

    Alrighty, I think I'm set so far as you've instructed me... I have Ad-Ware installed and ran it deleted all the stuff it found, Spyblaster up and running, and RegCleaner as suggested by Major Attitude. Thanks for that Major!
    Anything else you guys reccommend?
    Thanks Again!
    Destany
     
  11. wamai

    wamai Private E-2

    good job detany. hey xflat I seem to be having to same problem too!!! I have a startup page I cannot get rid of should I follow the same steps? what is avg and where do I find it?
     
  12. Destany

    Destany Private E-2

    Much obliged:)

    Thanks so much (again!), yeah, the computer is working better than I've ever seen it! But then, I've not had it that long. This is a really cool site, I bet it's a lifesaver for loads of folks!
    As for helping others who's computers broke, well, if it's bugs I should know what to do! hee hee!

    Destany
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds