Save my computer from MalWarrior :(

Discussion in 'Malware Help (A Specialist Will Reply)' started by HamMach1, May 14, 2008.

  1. HamMach1

    HamMach1 Private E-2

    I'm pretty computer retarded so forgive me and my ignorance towards this stuff. Yesterday, I was hopping around the internet as usual when I somehow ended up getting supposidly a pretty serious malware called MalWarrior? Whatever it is caused my computer to go nuts!

    Somethings that are occurring...
    Everything starts up fine
    Desktop loads
    10 seconds later everything on my desktop (icons, taskbar, etc) disappear
    Sometimes it comes back on, but disappears shortly after.
    Ctrl + Alt + DEL doesn't work because it says the admin disabled it, when I AM the admin of my own computer.
    "WINDOWS" key doesn't do anything.
    Safe mode doesn't "work". I just get a black screen.

    I get this bar on top of my internet screen, in yellow, saying "Yada yada yada you may be infected, use this to clean up, yada yada yada."

    I used to get pop ups like McAfee would give to let you know you have a virus, etc etc.

    Please help :cry
     
  2. HamMach1

    HamMach1 Private E-2

    I just noticed the sticky up top on the steps to remove malware and such, but I don't have time to do it without everything vanishing! When I start up my computer, things work for only about 10 seconds and then everything disappears except the wallpaper. Though, if I were to click on internet explorer real quick while windows is loading, I'm still able to use it.

    Just thought I'd add that since it doesn't look like I can edit my posts.
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If you can use Internet Explorer...Go to Bitdefender agree to the license and then select Scan. DO NOT CHANGE THE OPTIONS TO SHOW ALL FILES SCANNED. That will make your logs huge and we don't need to see clean files. Once Bitdefender completes the scan:

    Click-on the Detected Problems tab. Then select Click here to export the scan report

    When the window comes up to save the report, change the Save as type: box to Text (Tab Delimited) (*.txt) and then in the File name box enter change to bdscan then click save. This will save a file named bdscan.txt in whatever folder you are currently in when you save the file (take notice of where you are at so you can find it later). This bdcan.txt file will actually contain HTML code that we can easily view later while reviewing your log. All we have to do is rename the file to bdscan.html.
     
  4. HamMach1

    HamMach1 Private E-2

    Alright... I did the scan, tried exporting as a text but it won't let me change it to a text file, only html. I tried the drop down menu tab thingy and still only html was listed. Sooo... now what? lol

    Also, I did some scanning last night with SUPERAntispyware, Spybot, McAfee, and Spyware Doctor and when gathered all together, I've found MalWarrior, Smitfraud, and something called Virtumonde or something like that.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Then it sounds like you can do the other steps and attach those logs...esp. MGLogs.zip.
     
  6. HamMach1

    HamMach1 Private E-2

    Alright... I'm trying to Malwarrior cleaning. I did the Virtumonde (sp?) scan thingy and it came up with nothing so hopefully that means I'm good.

    Here's the log (rapport) for this MalWarrior scan thing.

    Will do more as time allows, and for the couple of seconds that my desktop works, ugh. I've found some sly tricks to open things that are on my desktop, even though I can't see anyting.
     

    Attached Files:

  7. abri

    abri MajorGeek

    Hi HamMach1

    Clever to open things you can't see. :)

    What TimW needs are the logs from the scans in the READ & RUN ME FIRST. If you're still having the empty screen problem, see if you can get Combofix to download or transfer it to your computer via a flash drive or CD and try running it in safe mode. To get to safemode, click on the F8 key during bootup until the menu comes up with safe mode as an option. If you get that to run, then do all the other scans in the READ ME procedure.

    abri
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds