Sober virus causing other problems?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by ozambersand, Nov 30, 2004.

  1. ozambersand

    ozambersand Private E-2

    One of my computers which runs WindowsME was recently infected by the Sober.l virus (just a couple of days ago)

    It was in one of those Failed delivery messages. This email was inadvertantly opened by someone else!

    My first indication that something was wrong was when I clicked on my icon for my dial up connection and it didn't function. However I could dial up if I clicked on the Internet Explorer icon.

    In the next virus check, the virus was detected by Norton and I followed Symantec's instructions to get rid of it. The download file was not able to get rid of all of the files so I then tried to do it manually following their procedure.

    This got rid of all except the ones in the Restore folders.

    I did delete one of the lines from the "Run" section of the registry (the one that had the word "expoler" in it) but wasn't too sure of the line that had "service" in it as I wasn't sure if it was a proper one or not, so I left it.

    I tried to turn off System Restore so I could do the check again but I then got a warning message that the file rundll32.exe was missing. This prevented me from accessing the System section of the Control Panel, so I couldn't turn off System Restore.

    (Should WindowsMe have lots of files in the Windows\System32 folder or only in the Windows\System folder?)

    I managed to get a copy of rundll32.exe from the Microsoft site and put it into the Windows directory and was hence able to disable System Restore.

    I then booted up in Safe Mode and did a system scan. That didn't find any viruses (shouldn't it have found the three in the Restore folders?)

    It said the system was clean - but the the mouse suddenly stopped working.

    Have I stuffed things?

    Could it be that the new variant of the Sober virus has aspects that weren't fully known by Symantec - eg the removing of the rundll32.exe file/mouse problem?

    I note after searching the net that this problem is not unique as there are other reports of similar problems coming in.

    Hopefully the brains on this forum will be able to help me!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds