MajorGeeks Support Forums

Go Back   MajorGeeks Support Forums > ----------= PC, Desktop and Laptop Support =---------- > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 07-06-09, 04:48
Asinine08 Asinine08 is offline
Private E-2
 
Join Date: Jul 2009
Posts: 1
Thanks: 0
Thanked 0 Times in 0 Posts
Default WIN32.Virut.56

So I downloaded FRAPS off of a website that I found on Goggle and within 2 seconds of instaling the program (freeware) I got a blue screen of death.


I shut off my pc and booted up, once everything started to load I was getting the fake WINDOWS security alerts and I could see that the program was trying to download something and complete the instal.

I immediatly pull the plug on my modem and grab a laptop to start my 8 hour resolve only to discover that my computer basically has AIDS and is destined for the depths of hell.

It is what it is and I knew I was in for a ride when my pc BOD on me but my question is do you guys think I may have a chance to beat this thing since it didnt finish downloading what it was trying to?

I ran a scan in safe mode and I thought it worked but it didnt and now I made a boot disc and Im in the middle of an 7 hour scan so far.. I really have no issues with a reformat which reagurdless of outcome I will do but a few questions are :

1. I have 200 Gigs of Music can they be saved?
2. Can this Virus spread to my slave even if I save no .exe's?
3. What is the complete list of file types that can carry this virus?
4. Is there an EFFECTIVE scaner that will INSURE the safty of salvaged files?


I am going to make the assumption that just like any program it takes time to infect a PC its not something that is done intsantly.... I had a slave drive with over 400 Gigs of programs but they were on physically separate drive not being used. Is there a way to scan it and know 100% that its safe?

Most of the stuff on the drive I can get back but there are some things that I must have... I just need suggestions and maybe directions on safely getting data that I need keeping me at minmal risk of re-infection of my new instal.

The Virus seems to instal on ALL .exe's that are in startup and in almost all drivers on the computer.....

SAFE mode without Networking is the only time the VIRUS seems not to be running. If I run it in safe mode with networking it trys to download files and I pull the plug and reboot in safe mode. Note:: When I pull the plug the status bar stops and the Virus hangs... To me this is a good thing it tells me that it needs something to complete its masterpiece on my pc.

Anyway... Lastly what Anti Virus program do the powers that be here at Major Geeks recommend to protect me from this virus in the future.. Can this be detected before infection, can it be stoped?


Thank you in advance.
Reply With Quote
Sponsored links
  #2  
Old 07-07-09, 00:26
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,122
Thanks: 61
Thanked 7,565 Times in 4,066 Posts
Default Re: WIN32.Virut.56

Quote:
Originally Posted by Asinine08 View Post
It is what it is and I knew I was in for a ride when my pc BOD on me but my question is do you guys think I may have a chance to beat this thing since it didnt finish downloading what it was trying to?
If you really have a Virut infection, your safest most reliable course of action is to delete partitions (all), format and reinstall.

Quote:
Originally Posted by Asinine08 View Post
1. I have 200 Gigs of Music can they be saved?
Unknown. MP3, WMV, ...etc can possibly carry the infection.

Quote:
Originally Posted by Asinine08 View Post
2. Can this Virus spread to my slave even if I save no .exe's?
3. What is the complete list of file types that can carry this virus?
Depends on what you are call an executable. And no there is not a complete list since their are many forms of these infections and things change over time. We have seen EXE, DLL, SCR, HTML, MHT, AVI, and more being infected.

Quote:
Originally Posted by Asinine08 View Post
4. Is there an EFFECTIVE scaner that will INSURE the safty of salvaged files?
No guarantees but you could try some various scans from AV companies. They all have tools for trying to work with Virut and similar infections. The problem is that they are not always reliable and many times the fix is to delete the file.

Quote:
Originally Posted by Asinine08 View Post
I had a slave drive with over 400 Gigs of programs but they were on physically separate drive not being used. Is there a way to scan it and know 100% that its safe?
You can scan it with a good antivirus program but if you scan it from the PC that is already infected then the scanner itself is most likely already infected and the act of scanning the slave drive will infect the files being scanned (if they are not already infected).

[QUOTE=Asinine08;1354600] I just need suggestions and maybe directions on safely getting data that I need keeping me at minmal risk of re-infection of my new instal.

Quote:
Originally Posted by Asinine08 View Post
SAFE mode without Networking is the only time the VIRUS seems not to be running.
If your system files are infected (which is typica) then the infection is still present and can still spread to other files. It just may not be able to access the internet to perform other activities.


Quote:
Originally Posted by Asinine08 View Post
Anyway... Lastly what Anti Virus program do the powers that be here at Major Geeks recommend to protect me from this virus in the future.. Can this be detected before infection, can it be stoped?
Since we have had many dozens of users come here with Virut type infections, it is clear that no AV programs provide 100% protection against this infection. What we can say is that you need layered protection:
  • hardware firewall in a router
  • software firewall
  • updated antivirus
  • updated antispyware with realtime protection
  • host file protection and bad download sites protection which you get can get from Spybot and Spyware Blaster
  • proper education of the users of the PC and proper surfing habits. Do not use torrents or P2P downloaders. Do not access porn sites.
You can check out tools like the below but you may find these to leave your PC in an unreliable/untrustworthy state:

http://www.avg.com/us.virus-removal.ndi-67762
http://onecare.live.com/site/en-us/default.htm
http://www.symantec.com/security_response/writeup.jsp?docid=2009-022016-4444-99

In additon the below scanners could be useful. A few of these are online scanners:

Using Dr.Web CureIt
Using BitDefender Online Scan
Using ESET's Online Scanner
Trend Micro Housecall
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter

Last edited by chaslang; 07-07-09 at 00:40..
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Win32/virut Young5 Malware Removal 1 06-23-09 02:49
Virus.Win32.Virut.ce/win32.vitro rulybatters Malware Removal 3 05-01-09 23:30
Win32/Virut.A Infection RChicken Malware Removal 3 03-21-08 20:15
Win32/virut.a J B00gie Malware Removal 1 09-22-07 22:28
Win32/virut.o BILLMCC66 Malware Removal 8 09-20-07 15:48


All times are GMT -5. The time now is 12:27.

MajorGeeks.Com Menu

MajorGeeks.Com \ All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ NEW! PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads

MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds


Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger