my computer is being eaten by a bagel, help!

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by mokkori, Jul 27, 2008.

  1. mokkori

    mokkori Private E-2

    Computer turns off when running programs, cannot run virus scans or combofix, wont startup in safemode, etc. I think its a bagel virus as Xoftscan said so. Now health is failing in general and I need some help!

    I followed the run this first stuff to the t, but the scans wouldnt work at all. My computer isnt connected to the internet and thats not possible, so Im just transfering from a computer that is connected by usb drive, thus the virus perhaps.

    How should I proceed and what do I need to post or attach here?
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    You need to try all steps. Some of them will run especially MGtools.exe which the bagle trojan does not affect. Also you should be able to get SUPERAntiSpyware and Malwarebytes to install by renaming the installation file to some other name. Then to run the actual program. Rename the actual executable file that the Desktop shortcut points to and the scan will probably run. Examples:
    • Goto C:\Program Files\SUPERAntiSpyware and locate the SUPERAntiSpyware.exe file and rename it to anything else (like SAS.exe or sa.exe )
    • Goto C:\Program Files\Spybot - Search & Destroy and locate the SDMain.exe file and rename it to anything else (like SDM.exe or sb.exe )
    • Goto C:\Program Files\Malwarebytes' Anti-Malware and locate the mbam.exe file and rename it to anything else (like mb.exe or mam.exe )

    NOTE: We have been finding that in many cases, the tools will not properly remove these infections. The antispyware and antivirus companies do not seem to be able to figure out how to properly remove this infection. At least not in every case. It could be a matter of how far it has spread on the PC. Due to this, it may be that the only way to remove this is to boot to the Windows Recovery Console which requires having your Windows bootable CD. Do yo have your Windows CD?
     
  3. mokkori

    mokkori Private E-2

    Thank you! I did as told renaming the exe files, but the computer still rebooted as soon as the scan started. The MGtools did work though, found somethings, but same condition.

    I dont have my Windows CD.

    The computer seems so so as long as I dont run scans or such. Is there something I should do about my data for the time being like backing it up on a disc or transfering it?
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Which scan? Did you try both SUPERAntiSpyware and Malwarebytes? Also try running them in safe boot mode.

    You need to attach the requested log from MGtools. It is primarily just a scanning/reporting tool.

    Without it you may be in trouble. What did you get with your PC? Just Factory Restore/Recovery CDs that return it to the state it was shipped? Or do you have a recovery partition on your hard disk?

    If you have important data you need, you should try to get it backed up ASAP before your system potentionally become unusable.
     
  5. mokkori

    mokkori Private E-2

    No scans will run, they all reboot the computer right away.
    Safemode also reboots the computer, it wont start up in safemode.
    I ran mgtools sucessfully a couple days ago, but it wont run again, just reboots the computer. Im going to try to attach those logs, sorry if its not correct, Im trying.

    I dont have my windows cd as I bought this overseas. Im trying to get it now, or a replacement.
     
  6. mokkori

    mokkori Private E-2

    are these the required logs?
     

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No. That is not even the correct version of ComboFix. It is way out of date. You did not download what we asked you to download.

    You said you ran MGtools. Please attach the C:\MGlogs.zip file.

    Please try click Start, Run, and enter msconfig and click OK. If the System Configuration Utility comes up, try selection Diagnostic Startup and then click Apply, OK. And reboot. After reboot see if you can run any of the scans (some may work and some may not! Try them ALL including MGtools). You will have to return to normal startup mode later to come back here since in Diagnostic Startup mode you will not have any connectivity.

    It really is looking like you are going to need to reinstall. You said you do not have a Windows Boot CD. What came with your PC? Was it only System Recovery disks that return you to the state it was shipped to you.
     
    Last edited: Aug 7, 2008

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds