FBI Moneypak and can't reboot in safe mode.

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by rhammer, Oct 15, 2012.

  1. rhammer

    rhammer Private E-2

    I have picked up the FBI Moneypak viurus on my and I can't reboot in safe mode in order to run the cleaners. No matter which safe mode I select, Safe Mode, Safe Mode With Networking, Safe Mode With Command Prompt, it starts to boot up but then take me back to the boot menu. It will only bootup when I select Start Windows in Normal Mode. When I do that I can't run the cleaners because it goes to the FBI Moneypak screen.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    What OS are you using?
     
  3. rhammer

    rhammer Private E-2

    I am running XP.

    It took me so long to respond because I did a search of the forum and found that Kaspersky Rescue Disk 10 might be my solution. I put it on a USB and was able to boot up with it and follow the unlock windows procedure but when I then try to run Rescue Disk it doesn't start. I've tried rebooting several times and it won't run.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Try running this:
    [​IMG] For 32-bit (x86) systems download Farbar Recovery Scan Tool and save it to a flash drive.
    For 64-bit (x64) systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    Enter System Recovery Options.

    To enter System Recovery Options from the Advanced Boot Options:

    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Choose your language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account and click Next.


    To enter System Recovery Options by using Windows installation disc:


    • Insert the installation disc.
    • Restart your computer.
    • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
    • Click Repair your computer.
    • Choose your language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.

    On the System Recovery Options menu you will get the following options:
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
    • Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please attach this log to your next reply. (How to attach)
     
  5. rhammer

    rhammer Private E-2

    "Repair your computer" does not appear among my advance boot options.
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Can you open task manager in normal mode?
     
  7. rhammer

    rhammer Private E-2

    I couldn't before but I can now. I'm also not getting the Moneypak now. Could the Kaspersky have made a difference. I can run the Malware removal/cleaning procedure now.
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good. Run the tools and attach the logs when you are finished so we can check for any leftover traces.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds