Physicist out of water

Discussion in 'Malware Help (A Specialist Will Reply)' started by Gangrel in London, Apr 15, 2005.

  1. Gangrel in London

    Gangrel in London Private E-2

    Hello, and thank you for the 35407 thread.

    I'm hesitant to state this, but as I am new to the inner workings of computers, I hope you have the patience to help. I apologise, in advance, for taking up your time in something so trivial.

    While attempting to follow the 35407 thread instructions, Symantec Security Check came back with the messege that my ActiveX as well as Scripting were turned off.

    Bit of background:

    I'd purchased the computer new, and had a friend set me up (with shadetree advise on how to make it safe). I seem to have recieved viruses regardless.

    I have looked, for about an hour, for the proper combination of left and right clicks in order to turn these features back on to no avail. Without these features, Symantec will not scan my system.

    Again, I am sorry for taking your time for something that seems so trivial; but I mean to clean this system; I have two others, but this is my favourite.

    I appreciate your patience with a complete "noob".

    ~Gangrel

    Edit: Interesting that my starting rank is E-2, as that was my final rank during my post at Ft. Irwin, Ca. Just as an aside. ;)
     
  2. Gangrel in London

    Gangrel in London Private E-2

    Update,

    After a Google or two, I have enabled both ActiveX and Scripting.

    However, Symantec still refuses to scan, saying they are inactive: Under Tools in IE, I pressed the Internet Options, then the Security tab. I went to "Custom Level", then under "ActiveX Contols and Plug-ins", I pressed "Enable".

    Under the Scripting venue, it is "Active", "Paste operations via script" is enabled, as well as "scripting in Java applets".

    At some point I am missing a step, then. I run ZoneAlarm Pro 4, but it seems to make no difference as nothing happens even if it is shut down; I am still refused the scan by Symantec.

    I am trying to follow the letter with this most informative post; however, I fail to see where I have missed anything. Is it ok to proceed without the Symantec scan?

    Always,
    ~Gangrel
     
  3. Kodo

    Kodo SNATCHSQUATCH

    The easiest way to do this is to open IE, go to tools, internet options, security tab, select the INTERNET zone (first one on the left) and click the default level button on the bottom right of the dialogue box. I recommend setting activex to prompt again after you've finished with the scan.
     
  4. Gangrel in London

    Gangrel in London Private E-2

    I have done precisely what you've said, to no avail.

    Symantec still refuses to scan my system, although I am now running on "default" values. However, I have an idea to try the "Reset Web Settings" option under "Tools" in IE. Is this a good idea?

    Always, again,
    ~Gangrel
     
  5. Kodo

    Kodo SNATCHSQUATCH

    that's really not going help with ActiveX.

    In the INTERNET zone security settings, look for ACTIVEX CONTROLS AND PLUGINS. All of the settings below that branch should be set to prompt or enable (prompt being the preferred default if applicable). report back.
     
  6. Gangrel in London

    Gangrel in London Private E-2

    Again, no avail.

    A list of the known viruses currently running on my system:

    msrexe.exe
    MSlti16.exe
    sys32.exe

    I have data on this system that is irreplaceable, as the files are too large to back-up even to CD (thanks to the aforementioned viruses that seem to cut my total burns into 50MB chunks or so). As well, I have neither a 1.44 floppy drive, nor a ZIP drive.

    I have a secondary "slave" drive, but it is not accessible. Although it reads as "This unit is functioning properly" (and brand new, bought from a reliable commercial supplier), it does not show up in the computers' tree. But this is a seperate issue.

    ...and all of that was a rant, I'm sorry. It gets to be a bit much, I hope everyone understands.

    Yet again,
    ~Gangrel
     
  7. Kodo

    Kodo SNATCHSQUATCH

  8. Gangrel in London

    Gangrel in London Private E-2

    Antivirus....ummmm.

    McAfee, ZoneAlarm Pro, Intercheck Monitor (Sophos, pain in the bahogees, if you ask me )...I also run Ad-Aware as well as Stinger, but these have since been updated while following the instructions in 35407, and have yet to be run pursuant to that post.

    That is all I know about.

    ~Gangrel
     
  9. Kodo

    Kodo SNATCHSQUATCH

    I would prompty ditch McAfee and download this. Avast! Home Edition
    It's free and in my opinion, far superior to McAfee. Many of us geeks here use it on our own systems. I have it running right now on my work pc. Once installed, I would run a scan on system.

    Did you disable system restore by chance? if not, I recommend you do this now as some nasties like to hide in there.
     
  10. Gangrel in London

    Gangrel in London Private E-2

    As well as not being able to get online for this help while under "Safe" mode. My computer simply will not dial up under it.

    I am still on dial-up, by the way. It simply isn't available at my location. The service stops three houses to the northeast. On the plus side, I recieved a DirectTV system for free as a sort of consolation prize.

    As an aside, all of DTV east of the Mississippi has been bought out by Pegasus, Inc...making it more of an InDirectTV, I suppose.

    Just a thought.
    ~Gangrel

    Edit: Yes, it is disabled. Where can I download the replacement you mentioned?
     
  11. Kodo

    Kodo SNATCHSQUATCH

    click on this link
    Avast! Home Edition
    choose a download location from the middle selections numbered MAJORGEEKS 1-4
    the Georgia (GA-[location 2]) download location will probably be fastest for you. Once downloaded, run the exe to install the program. Make sure that McAfee is disabled before you do this and that it remains disabled until Avast is installed and a full scan completed. I'd had to uninstall it and have Avast not work ( as in errors popping up) and not have ANY antivirus on the machine that we can work with.
     
  12. Gangrel in London

    Gangrel in London Private E-2

    I hate to ask...mostly...

    How do I kill McAfee?

    "Avast ye scurvy blah blah and whatnot"

    Sorry, it was open...I had to use it. Old joke, I'm sure.

    ~Gangrel
     
  13. Kodo

    Kodo SNATCHSQUATCH

    there should be an icon in the sys tray by the clock on the bottom right. Right click on the icon and hopefully there will be some option there to disable real time scanning or disable it in general. Not sure what options it has for the context menu so do the best at making a best guess. If you can't disable it, then don't worry about it for now. I'm more concerned with having avast scan your system at this point.
     
  14. Gangrel in London

    Gangrel in London Private E-2

    McAffee has been disabled, but not deleted; it will start up when the system reboots.

    I am currently d/l'ing Avast, but at over 9MB, it will take a while on dial-up.

    Thank you, thusfar, for your patience.

    ~Gangrel
     
  15. Kodo

    Kodo SNATCHSQUATCH

    you're welcome. Post back when you've downloaded, installed and run a complete system scan using avast. :)
     
  16. Gangrel in London

    Gangrel in London Private E-2

    I hate to kick the horse (48% and counting), but I have to ask:

    The "Avast" link you've given me put me here:

    http://uk.trendmicro-europe.com/enterprise/products/housecall_launch.php

    I've done the TM Housecall scan, already. Have I been redirected, or should I repeat this after the download? Is it a seperate site (doubtful, as the holding company is the same)? My internet settings have been reset to "default": Does that change the initial scan?

    Many questions, most of which you've likely heard before. Again, I appoligise for my initial lack of knowledge; it isn't my field.

    ~Gangrel

    Edit: Allow me to clarify: It IS downloading, but my browser put me at that address.
     
  17. Kodo

    Kodo SNATCHSQUATCH

  18. Gangrel in London

    Gangrel in London Private E-2

    Noted and followed.

    90% and counting.

    I cannot thank you enough for your patience; my posts have been trivial, at best. If it helps, I have two complete books on this HD, as well as personal material from an irreplaceable friend soon to marry her hearts content. It all means more to me than I might measure...so it is no small task to save it all.

    Indebted,
    ~Gangrel
     
  19. Gangrel in London

    Gangrel in London Private E-2

    ...AND NOW....

    my computer will not boot at all. I ran the program, and if it is after an hour booting up, I will give up entirely.

    Fixes, please. I'm on a back-up computer as is.

    ~Gangrel

    Word of note: It gets to the Windows screen, then hangs. Nothing happens. The curser works in movement, but it won't click on anything. I get all the normal startup procedures, but then it sits there like a drunken monkey.
     
  20. Gangrel in London

    Gangrel in London Private E-2

    Well, that's an hour boot up. It would appear that a new computer is in order...

    As the recovery procedure was turned off initially (according to standard procedure), there is now no way to fix it without soft/hardware well beyond my pocketbook.

    I now have a $900 paperweight. One can only hope I might write a book some time in the future to justify the cost.

    ~W.S., aka Gangrel
     
  21. Kodo

    Kodo SNATCHSQUATCH

    Try booting into safe mode.
     
  22. AliWiseman

    AliWiseman Private First Class

    Just a note... booting into "safe mode with networking" should allow you to get onto the net. I saw u said you couldnt get onto the net in safe mode, but never saw any mention of "with networking" enabled.

    Many people i've spoken to, even ppl who are "well up" on pc's, have not been aware that this option enables access to the net. They've just booted ito safe n wondered why it doesnt work. Would rather ask n get called daft for suggesting u made an oversight, rather than not asking n then 4 weeks later finding u never knew this was what was needed.

    Hope this helps. :)

    Alistair
     
  23. Kodo

    Kodo SNATCHSQUATCH

    he's on dialup.. SMWN doesn't work with dialup.
     
  24. AliWiseman

    AliWiseman Private First Class

    Never knew that! Useful to know! Thanks. :)
     
  25. Kodo

    Kodo SNATCHSQUATCH

    Worst case scenario is you buy a new hard drive. Install Windows onto that hard drive and then put your old hard drive into the system as a secondary drive and copy all your info off of it, AFTER you scan it of course.

    For reference, your hard drive does not constitute your entire system. Many people think they are the same thing. The hard drive is the storage unit in the machine that is a separate component altogether. We can help you further with this should you decide you wish to go this route.
     
  26. Gangrel in London

    Gangrel in London Private E-2

    Well, in fact the computer I newly purchased was a planned purchase regardless, due to errors that were popping up in my primary system. I'm a bit dismayed that the primary failed so quickly, but the loss was minimal; I was able to boot up long enough to back up the basics I wanted (scanned by every possible means, I assure you).

    This computer, the secondary, isn't normally used for doing anything online. I've hooked it up for the purpose of letting you know I'm not running off in a huff. My replacement was ordered the day the primary failed, so it should be here by Wednesday. At that time, I will then come back to this forum, as it really is most helpful.

    It is a setback, but a minor one. I will be much better prepared starting with a clean system. I realise that the HD is the source, but it was having other problems (minor, mostly) and due to be replaced.

    I do have a new question, if you would be so kind: The crashed system uses the same memory card as the replacement. Might it be possible to use that memory in the new system without fear of re-infection?

    Thank you, again
    ~Gangrel
     
  27. Kodo

    Kodo SNATCHSQUATCH

    If by memory card, you mean Memor other than the hard drive, then you can use it in another system as the memory is volatile. This means that what ever is stored in the memory is erased when the power is shut off. However, you must make absolutely sure that the RAM module from your "dead" pc is truly compatible with your new PC. Otherwise you may run into other stability problems.
     
  28. Gangrel in London

    Gangrel in London Private E-2

    Yes, thank you. I was speaking of the RAM. It's a duplicate, so compatibility shouldn't be an issue.

    Well, here I am on my new system! Everything is running smoothy except for ZoneAlarm. For some reason, I recieve a page fault when I try to run it (probably a conflict with McAfee) and requiere a reboot/restore when it is started.

    I'm not sure if this is the proper thread to bring this up, however.

    ~Gangrel
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds