Win7 infected by Autorun Virus!

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Todd2007, Aug 28, 2011.

  1. Todd2007

    Todd2007 Private E-2

    my pc got slow few days ago, it consume 100% of CPU from the startup, n also got error on show/hide files & folders option.

    ps: i c't run the RootRepeal.exe

    here the log files:
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    The only thing I am seeing that needs removal is this:
    C:\emhyd.exe

    The scans seemed to have taken care of the remainder of the malware. What malware issues are you still having, if any?
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Tim,

    You need to see logs from normal boot mode first. ;)
     
  4. thisisu

    thisisu Malware Consultant

    Sality infection.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I knew I was forgetting something!! :-o

    I totally missed the Sality infection. Thanks thisisu!!


    Todd2007 ----

    Registry editing and also Task Manager will be constantly getting disabled which is due to the Sality infection you have. This can be seen by the below seen your system.ini file.

    [MCIDRV_VER]
    DEVICEMB=1186549455


    For additional info, see W32/Sality.ai also see the below. There are many forms of Sality:

    Virus:Win32/Sality.R

    Virus:Win32/Sality.AT

    These types of infections frequently require a reinstall to properly removal all traces and to fix the damage it causes.

    You can try the below tools but I have never seen them work properly:

    http://free.avg.com/us-en/win32-sality

    http://support.kaspersky.com/viruses/solutions?qid=208279889
     
    Last edited: Sep 1, 2011
  6. Todd2007

    Todd2007 Private E-2

    thanks for replying...
    i can access the Task Manager, the major problem is the CPU consumsion, 100% from the startup, that make my pc can't do anything.

    how to get ride of these virus??? or i need to reinstall the new win7???:cry
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Sadly, you will need to do a clean install. Backup any files or data that you can and then do a reformat and clean install.
     
  8. Todd2007

    Todd2007 Private E-2

    now i got big problem:confused, few days ago, i tried this tool:

    http://free.avg.com/us-en/win32-sality

    n it asks to run the scan on the startup mode, then i click ok.
    when restart, my pc runs: "AVG restore and virus removal", but it never complete its task, pc goes to sleep mode, then when wake it up nothing appear, black screen....see nothing! i need to shutdown, when power on it boot to AVG scan again.

    now i can't even go to my window to backup my files,c't even boot to safe mode.
    what to do now? how to get disable the startup scan???:confused
     
  9. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Is this a desktop or laptop comuter? In either event, you will probably have to remove the hard drive and slave it to another computer to remove your files and data. I suggest you post in the software forum for any assistance you might need with doing that.

    Make sure that any computer you attach this drive to is well protected and all the virus definitions are up to date.
     
  10. Todd2007

    Todd2007 Private E-2

    Thanks TimW
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are welcome. Do post in the software forum for additional assistance with slaving your drive and accessing your files. :major
     
  12. Todd2007

    Todd2007 Private E-2

    TimW i got it work! after i can login to my desktop & update MSE then full scan...,apply kaspersky .reg & kaspersky sality scan.... everything gone!!! :-D

    thanks TimW & all stuff on majorgeeks ;)
     
  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Great to know. Safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds