Adriss.exe - Help me please

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Skogen, Jan 21, 2007.

  1. Skogen

    Skogen Private E-2

    I had the virus adriss.exe, but i started trying to deal with it before i found this website. I used hijackthis.exe but didn't rename it, i'm wondering what exactly I should do. It seems the virus is pretty smart and somehow reverts to my old setting upon reboot. It also modify's my boot.ini so for some reason when i reboot there's 2 Microsoft Windows to choose from but 1 only works. My boot.ini for some reason is located in c:\ and not c:\windows. Seeing as i've already 1/2 messed around with this virus should i just use hijack to restore it and follow the steps? I use zonealarm also and I have 2.5k blocked intrusions since yesterday, so I'm not really sure what that's all about. I used spysweeper/zonealarm and both can't seem to find viruses, it seems the virus is able to make zonealarm and spysweeper inactive or just hide from them. Is a format maybe my best option? if so how exactly can i reformat on my own? And i was told to get a firewall after i fix this problem. Are there any good free firewalls out there? I have cable internet and it's usually always on, and i run it on a labtop if that makes any difference
     
  2. Skogen

    Skogen Private E-2

    What exactly is this? Malware?

    here's attached txt file, I'm wondering what it is, it's in a hidden folder in my c:\ drive.
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Re: What exactly is this? Malware?

    Please remain in one thread for your current problems and questions! I merged your two threads together!

    This is not malware. It is due to installing a Microsoft update. See: http://support.microsoft.com/kb/927978/en-us
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, renaming, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.

    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  5. Skogen

    Skogen Private E-2

    You can delete this thread if you'd like, i decided to say screw it and i reformated my computer. I'd also like to say f*** Synster, he's the *** who created the virus I had :). Where can i find the topic on what to do with a "new" computer? I have zonealarm setup and rdy to go but i'm wondering what else i should do. I also partitioned my drive.. 2.5 gigs went do c:\ for windows and 25 gigs went to d:\ for all my other programs. Will this help me prevent viruses?
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    See this: How to Protect yourself from malware!

    No! It only made things unnecessarily more complex.
     
  7. Skogen

    Skogen Private E-2

    Should i run Hijack this now that my computer is fresh just to see whats running? and also how will it make it more complicating having 2 parittions?
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Not without running the READ & RUN ME. Most people are under the very mistaken misconception that HijackThis is a scanning/removal tool. It is not! HijackThis is simply a tool that is used to identify browser hijackers and in some cases it will show entries for some malware that is for instance running at startup. All it does is list a few of the thousands of registry keys that exist, and it makes no inferences to whether anything being shown is good or bad. That decision is left a person with significant Windows and malware cleaning experience. HijackThis does not come close to showing all malware that could be hiding on a PC. Anyone who has an infected computer and is relying on HijackThis without the benefit of running other scans such as Spybot, Windows Defender, BitDefender & Panda, CCleaner, etc. are more than likely still infected. In most cases, where there is one virus/trojan there are more. The goal of this forum is to remove all malware, and this cannot be done properly by just seeing a HijackThis log.

    You have multiple partitions that must always be scanned now for malware. Many tools by default will not look at the second partition and will not know about it. For a couple good examples, if you come here complaining of malware and we have you give us GetRunKey and ShowNew logs. They will not know anything about the other drive and will not even look at them. They will only look at the Windows boot drive and certain folders setup in your path. These are only two examples. There are many more. I don't have the time to list all the specialty tools that will not work properly or just will not know about your other partition. If you install things onto the second partition your environment path may have to be more complex (longer) in order to find all the files. Also you now have a Recycle Bin and a System Restore folder for both partitions that also needs to be managed properly. The small size (2.5gb) allocated for your Windows boot drive may even slow your system down since you have limited space left over for temporary files and cache.

    If you run into malware problems, they may be more difficult to resolve. There was no advantage to making to partitions on such a small hard disk. Yes 25 or 30 Gig drive is small by todays standards when you can get a 700 Gb drive for about $225 on sale.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds