Annoying, or the end of my rig?

Discussion in 'Malware Help (A Specialist Will Reply)' started by banjosix, Apr 14, 2009.

  1. banjosix

    banjosix Private E-2

    Hello MajorGeeks comunity, time for me to ask for help.

    I don't want to add too much bellyaching, so I'm just going to cut to the case (Respectfully of course.) Earlyer to day, windows updated itself. Shortly after all hell broke loose.

    I'm running Vista.

    I cannot sucsessfully run an online scan, through panda or kiperyskie (Spelled that wrong, but google always fixes the spelling for me.) Both sites freeze my computer, before the scan ever fineshes, Panda gives an error about an hour into the scan. Also trying Hitman Pro, which pulls up a tracking cookie, and than freezes.

    Useing Norton on my computer pulls up the preforming scan window, but fails to move past "0 files scanned" I am then unable to exit the scanner. I get a message saying "Scan pauseing" and afterward it just hangs.

    Spybot, is unable to run. In the past I have changed this programs name, and have been able to make it run. (Fixing other computers, this is the first virus I have gotten on this perticular computer. First that I know of anyway) In this case all I can do is pull up a quick black window (The program exicution window?) before spy bot exits. Spybot also seems to be installed multipal times, in the same directory.

    Lastly, I can download easly from Cnet and other sites. But Majorgeeks, seems to freeze my computer about half the time when I try to download from here. Maybe it's somthing I did, maybe the site's reputation has started to precede it, I don't know.

    All I know is, I am unable to follow the sticky, and I doubt I could run Hijack this, even if I could get a download for it to work. All I'm asking for here is a little help, just a starting point, that I could even find out what is wrong with my computer. If there is a way I could find out what I'm infected with, I think I could take it from there.

    Also at the onset of this (Right after the system update) I had a bogus antivirus. MSantivrus or somthing of that sort. I was able to remove it with "Malwarebytes' Anti-Malware" but had to change its name for it to run. The fake antivirus was my first clue that I was infected, and was also the only thing that "Malwarebytes' Anti-Malware" could find. It seems to be gone.

    Sorry for the spelling, Spellcheck.net is another site I cannot get to work.
     
  2. banjosix

    banjosix Private E-2

    Okay, not bumping, just clairifying.

    It's not that I cannot follow the Vista sticky, it's just that every attempt is thawrted. Superantispy, keeps asking for .net framework 3.5 (I already have it installed) I re-installed it, changed Sas.exe's name, ran it and have been blue screened over and over. Each blue screen makeing referance to a critical error, rusulting in a re-start. I was able to get SAS installed, but it pulls up 9 tracking cookies, and than freezes. The program makes it through memory items, and registry items. But it has been forzen at 22220 items scanned, under file scan. It has been there for over an hour, and will not close. Under kill prosses tree or otherwise.

    I just need some help, getting to the point of being able to even follow the sticky. And yes UAC has been shut off, computer re-started. Hidden files now shown, and important file extenations now shown. Also my start-up items have been re-set to normal, through MS-Config.

    Thats all I have. Never seen anything this bad and I'm stuck at this point.
     
  3. banjosix

    banjosix Private E-2

    Still not, bumping just adding more in hope that someone feels like helping. I would just edit the darn post, but I cannot.

    Let me clear another thing up. The blue screen that SAS.exe keeps giveing me, comes up in the installation. Not while running the program, I got the program to install, but it took over and over. Anyway, I re-read through the steps and disabled the "Scan for tracking cookies" and two other things, that don't come readly to mind at the moment. When it was all over the scan was clear, nothing found. (Also enabled everything eles.)

    The anti malware program, suggested in the FAQ, also had no results after I remomved the tracking cookies (Cookies I shouldnt have scanned, I know) so that's a wash. Other than that, I have no realy news on this thing. Nothing I'm doing seems to be doing anything.

    Still no use of Norton, Spybot, Or online scans. Some online scan sites won't load at this point. Now my FTP program, and P2P program, start without pormpt or obvious reasion. They sometimes refuse to shut off. Most action I take agenst anything, results in my computer blue screening.

    Well, I can't seem to get any help or suggestions (The fact that I have posted more than once, or just my spelling?) So I have moved on to this website alternative scans. Avast! Virus Cleaner seems to be slightly on to somthing, if only for the fact I now have a slew of files that cannot be scanned. The message reads, "No virus body found" of course.

    Well if anyone would take a moment, to bother with my issue I could post the logs. I can't get hijack this to work for me. Or the porgram that seems to have it embedded. The one that ended, up in my windows root folder. C:"It's name"

    Well, any direction someone could point me in would be pure awsome. Not looking to have my hand held, but its hard to fight somthing, I don't understand.

    Thanks.
     
  4. banjosix

    banjosix Private E-2

    Well all that aside, I seem to have atleast sort of fixed the problem. Point is I'm breaking ground. Sad part is, this virus came from a crack/hack download or is a super form of Vundo. I sure hope it's not though. My computer should have never had cracks or hacks on it, but maybe Vundo. Thing is though, it could have killed my whole system.

    Turns out Combo fix, aint too hard to use. I didn't think I knew that much about this sort of thing, but turns out I do :) <---Super happy face. Not sure why this would have happend, after a Windows update, mybay just a cowinkeedink? Point is, if I'm even halfway right, im in hot water anyhow.

    Still, looks like everything is infected. Windows, and all the little .EXEs that go with it. Anyway, this website has been less than helpfull. I don't really care though, I was really just looking for some help with somthing I couldnt figure out. For better or for worse problem solved.

    Thing is, I forgot how to acess that seperate little piece of my hard drive that holds all the manifacture information. Not sure if it's a seperate partition, or not. What I do know is this, in order to really fix my computer in the event of a re-format, I need to know how to get to that part of my hard drive and re-format it.

    So, I won't bother anyone with questions anymore than this. Anyone know a link to a walkthrough, on how to target and re-format that little bit hard drive space? Any word would be helpfull

    -Thanks.
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Every additional post is a bump. Whether intentional or not the effect is that same as stated here: Don't Bump! It Only Hurts You!!!


    Read the below:


    and regarding blue screen crashes:


    So could you then attach the log from running it for me? :)


    You were successful with running combofix? Then please attach the log, retrievable at: C:\combofix.txt


    MGTools.exe -- what errors do you receive when trying to run it? Have you tried running it in safe mode? The logs it produces are a zipped file, found on your C drive called mglogs.zip.
     
    Last edited by a moderator: Apr 19, 2009

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds