userinit.exe / virus

Discussion in 'Software' started by lolli, Feb 24, 2009.

  1. lolli

    lolli Private E-2

    realized this was under the wrong topic.. sorry guys :(
     
  2. Nedlamar

    Nedlamar MajorGeek

    Have you tried running AVG in safe mode?
    Vundo is a nightmare I know, I can't remember exactly how I got rid of mine, I think thats when I found "Super anti spyware cleaner"

    There's lots of info out there though

    http://www.google.ca/search?hl=en&q=vundo+removal&meta=

    If I remember right you need to know exactl which ones you are infected with.
     
  3. lolli

    lolli Private E-2

    OH definatly, i've ran avg in safe mode.. it appears that I have another virus as well.... here is what i deleted after I posted it in the wrong section lol.. mabey you can help me, as almost all the READ ME things i've tried in the spyware forum, just hang and freeze me and i have to reboot..

    "OK, it looks like I do have this nasty virus, the new one... All my problems started after I ran AVG, and of course, running anything like SuperAntiSpyware, it surely creats a stop error and that's enough of that... i cannot boot in Safe mode or Safe mode with networking, as I also get a stop error there as well..

    I've read that this virus is nasty, and also infects backup files as well, I have win xp, on my D:\ partition, will these files be completly corrupted, A reinstall isn't necessarily a great thing for me at the moment, as i'm a photographer, and have backed up most, but not all sessions from the recent couple of months.."

    Any help would be greatly appreciated ..

    Rhonda

    Oh, p.s.. I had vundo a while back and symantecs vundo fix cured it for me.. but this was a bunch.. like 4 vundo variants, among others.... i know from reading here there is a virus that was just released this febuarary, that affects this userinit.exe and logonui.exe.. but I really think I got a doosey this time..
     
    Last edited: Feb 24, 2009
  4. Nedlamar

    Nedlamar MajorGeek

    Whoa, you can't boot in safe mode?

    Damn I can't remember how I fixed this, I had a prog called Vundo fix but I have a horrible feeling I deleted it as I no longer required it. Let me look.
     
  5. Nedlamar

    Nedlamar MajorGeek

    Not 100% if this is what I used but.....

    http://vundofix.atribune.org/

    Worth a try, not gonna make it any worse lol

    I'll keep looking for my folder.
     
  6. Nedlamar

    Nedlamar MajorGeek

    http://forums.spybot.info/showthread.php?t=12425

    This may have been where I got the fix info, it looks pretty familiar, bare in mind it was a while ago. I can't find my folder with all the instrutions but I think I copied everything from the above link.
     
  7. lolli

    lolli Private E-2

    Awsome i will try it thank you.. maybe this is what i have after all.. it makes me wonder cause i'm having problems with the userinit.exe and the logonui.exe like this new virus.. but I scan userinit.exe and it says it finds nothing... so maybe this is good news lol.. i'm gonna give this a try brb lol... and thank you!
     
  8. Nedlamar

    Nedlamar MajorGeek

    Good luck man, I remember that nightmare.....have been trying to forget lol

    I think it came in from an advert on a website but I can't be sure.
     
  9. lolli

    lolli Private E-2

    LOL no problem, I hear ya, I was searching for instructions for my new camera, when I got this.. go figure lol.. wish me luck.... haha

    Rhonda
     
  10. Nedlamar

    Nedlamar MajorGeek

    lol sorry for calling you "man" force of habbit.

    Yeah you gotta be so so careful when searching nowadays, it pisses me off cos sites I used to use are now lethal.

    Good luck!
     
  11. lolli

    lolli Private E-2

    lol it's all good i'm not offended lol... I'm afraid I dont have any good news at all... no vundo anymore but I went to virustotal.com... and a scan of my userinit.exe file shows that i have W32/Virut.n.gen ... it's a new virus, that corrupts all your exe files beyond repair.. i have no idea what to do now.. yikes!!! what a day lol..


    Rhonda
     
  12. Nedlamar

    Nedlamar MajorGeek

    I was reading about that earlier, I think you'll find this thread helpful and the boys in malware will help you through it.

    http://forums.majorgeeks.com/showthread.php?t=182553

    btw, I just ran super anti and it found.......VUNDO ARGHHH!!!! goddammit :mad

    Although I'm on my kids pc so I'm not too worried, his bloody fault at least I can have him stand next to me while fixing it so I can shout at him LOL
     
  13. lolli

    lolli Private E-2

    LOL.. i do that with my kids too.. ahah wayyy too funny... and did we jinx you .. gulp lol... i'm gonna head over to that thread and see what I can do.. If i had to reformat, i'd be sort of happy cause i only have like 10 gig out of a 200 gig hard drive left lol.. but.. there only 4 programs I wanna save LOL.. if they arent' infected :|
     
  14. Nedlamar

    Nedlamar MajorGeek

    Well if you have 190gb of crap on you puter it's probably easier and quicker to just nuke the thing. I'm annoyed cos I built this puter for him for xmas, it's not even 3 months old ffs!
     
  15. lolli

    lolli Private E-2

    oh nooo...!! boy that would get my goat too... I thought about nuk'n it.. but.. world of warcraft,, photoshop, lightroom, paintshop pro, and all my photos, ( photographer ) would kill me if i lost it.. lol I started backing up my files a couple of months ago, but I didn't get them all as I only have DVDs to put them on.. I think this is gonna really get me :|
     
  16. Nedlamar

    Nedlamar MajorGeek

    Ok well if the other thread doesn't work you gonna have to buy another HDD to back stuff up, they're pretty cheap now, I got a 500gb external for $80 CAD

    Whack all your nice stuff on there and nuke the rest......go onnnn do itttt...you know you wanna LOL Just don't transfer the virus!

    BTW Super anti spy got the vundo first try. awesome *Ned goes searching his boys puter for porn and crap* Damn kids :mad
     
  17. lolli

    lolli Private E-2

    LOL, too funny, thank god it worked and got rid of the vundo, that crap was nasty lol.. I know, i'm gonna have to get a back up drive for sure, man I hate being broke at the moment.. looks like it's gonna be 2 weeks in safe mode for me LOL :cry
     
  18. Nedlamar

    Nedlamar MajorGeek

    Oh I know the feeling only too well, I'm trying my best to stop my internet,phone and electric being switch off. Thankfully I have enough HDD's to back my stuff up to whenever I need to. Maybe you know someone who would lend you a drive just so you can do whats needed?
     
  19. lolli

    lolli Private E-2

    I have a friend that will do that for me, but I think it might take some time.. i know the feeling i'm behind on my electric as we speak.. divorced mom of 5.. yep.. i'm strugglen lol..
     
  20. Nedlamar

    Nedlamar MajorGeek

    5? Fook that lol 1 is bad enough...I gotta teach him to drive too.....*Ned foresse's slappin's*...well I just transfered 480gb of stuff, it took a total of about 5 hours. the trick to transfering and backing up is to do chunks at a time (always copy, never cut) any progs you have on disc are already ok, exe's you have, if you can get them again then let them go if you can't then chuck them in a folder on thier own.
     
  21. lolli

    lolli Private E-2

    OK LOL.. ya 5 is gonna get me in the end LOL... I gotta remember that.. someone who has the back up drive was telling me it was gonna take a couple of days?? huh??? Im kind of looking forward to a clean install..maybe it will run like brand new again with out all this crap on it LOL...would it be wiser to back up the whole thing??

    Someone said this virus can affect external drives.. how can I find out what files have been infected adn what hasn't.. hijack this?

    P.S i only got a couple of years before the driving starts LOL... I'm check'n myself into the local nut house hahah!!
     
    Last edited: Feb 24, 2009
  22. Nedlamar

    Nedlamar MajorGeek

    lol Well as far as transfering the virus, it's tricky but I would back up your pics and videos, music etc to 1 folder and any apps you might wanna keep the exe.s to another.

    I don't honestly know how this bug latches onto stuff but it's usually the system files that get infected and not pics etc, I could be wrong though, like I said I don't know much about this bug.

    As for taking a couple of days to transfer......man they must have a slow puter, like I said I transfered all mine in a matter of hours, this was from my AMD 64 3400 w/1gb ram to a usb external.

    HTJ wont really show whats infected but you could run it and post it.
     
  23. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    A HJT log is useless for this. You will see if in a Combofix log and it will show numerous system files that are infected. There is no fix!!!!!

    You can only backup your personal data and files and reformat your computer!!!

    Trying to remove the obvious malware is a waste of time as the system file infection opens ports to download additional malware leaving your system totally unreliable.
     
  24. Nedlamar

    Nedlamar MajorGeek

    It's a nasty one then Tim? I bet I get it lol

    Any ideas where it's comming from? what kind of sources?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds