win32/heur and win32/cryptor help

Discussion in 'Malware Help (A Specialist Will Reply)' started by pasand, Aug 2, 2009.

  1. pasand

    pasand Private E-2

    Hi!

    I spent a lot of time in searching similar threads (on other sites too) for solution to infection with win32/heur and win32/cryptor. Unfortunately I didn't find any thread ending with a smile and thanx. With the online info, I could gather so far, the fortunes appear bleak.

    I have spent whole day in upgrading my antispywares (spybot S&D, Ad-aware, superantispyware, I had not used them for months together) and doing deep system scans; although I know they r not going to help me remove these nasties so easily. I will try to go thru the steps of malware removal as prescribed here, but these r too time-consuming for me, as I am preparing for an exam

    If I decide to surrender and format, what precautions should I take in my backups to avoid reinfection of the formatted drives? I am using "My Book" for backup, should I have to format that too? If I burn DVDs of the necessary folders, will the DVDs be clean or they too will carry the virus?

    What if I allow these viruses to be there in my system until November? (I was already planning to buy a new laptop in November.) What harm these viruses can make? Will my system be unstable by that time?

    Kindly bear with me in continuation of this thread, as I am doing it while busy in exam preparation. It may take a week for me to backup on DVDs (I will do that only if u say they will be clean of these viruses).

    Thank you for ur kind attention and help!
     
  2. pasand

    pasand Private E-2

    Hi, I am not seeing any help coming my way yet. I am finding new threats viruses trojans in my system. Can I get ur urgent attention please?
     
  3. pasand

    pasand Private E-2

    :confused Hi!

    Why nobody is helping me here? Help please! I see more threats flashing on my screen. My NERO is diabled by the virus, I can't take any backup. Having some problem in (inconsistently) logging in too. Sometimes log in smoothly, and sometimes see some error messages before login screen. I am in terrible situation, as I suspect my backup external hard-disks too might be infected.

    PLEASE help!
     
  4. pasand

    pasand Private E-2

    Hi!

    U must be very busy with helping million others! I hope, u won't keep

    me waiting for a long.

    I went thru the selfhelp several times while being busy in creating

    backups. I have downloaded all the required tools in the required

    places.

    Before I go ahead, I want to tell u that I had messages that spybot had

    blocked "reader_s.exe" from getting active and I had made it to keep

    the bug permanently blocked. I see 2 places where the folder is sitting

    in waiting to kill. If I have to disable the spybot teatimer for

    running the scans with ur tools, don't I run the risk of activating

    "reader_s.exe" on my laptop? I think that is the nastiest bug around,

    as I gathered info on the net. Would it be ever safe to disable spybot

    teatimer and spybot and reboot without its protection when threat is

    lurking in background there?

    As far as the way of getting infected, i had no trouble in last 3-4

    yrs, as I never indulged in unsafe surfing. Trouble started when I got

    interested in torrent downloads, and had downloaded a file "Paul

    Scheel- super memory charger". I thought it will be a program to train

    ur memory (as I needed such one, as I was was preparing for exam).

    Immediately after the file was extracted, threat screens started

    showing up.

    So far I have threat screens, showing virut32.../heur/cryptor/virut. Currently the threat screens for them r less frequent and log in is also smooth. But the biggest threat of "reader_s.exe" is lurking in the background. I am

    trying to take backups with sonic (thank god I had this alternative there), as my nero is blocked by the virus.

    I don't want to risk losing my data, so currently busy in backups, b4

    going thru the cleaning process. But I would like u to tell me whether

    I can disable spybot in such a situation?

    I hope my turn coming soon. It's already 3rd day of asking ur help.

    PLEASE help.
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You are your own cause for the delay. You have not read and followed the instructions in the sticky threads given in the forum. First you have not read this: Don't Bump! It Only Hurts You!!! Your constant posting kept bumping you to the bottom of our work queue not the top.

    And the other key sticky you should have read and followed is READ & RUN ME FIRST. Malware Removal Guide which is the first thing to do when having malware problems as the title indicates.

    However, if you are sure you have a Virut infection, you will be reinstalling since it cannot be reliably fixed. And you must be very careful on what you backed up. If you backed up any executable files which includes things you downloaded, they are most likely infected. If you reuse or reinstall from these backups after you reinstall Windows, you will reinfect your PC. If you are not sure whether you have Virut, run the above and we will know.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds