Results 1 to 10 of 27
-
6th Aug 2010, 10:29 PM #1OPMember
Destroying a virus...
I have some kind of virus i think it is a botnet.I fight with it almost 6 month and it is gettin only worse.I dont have anymore idea how to fight against this smart virus so i will need your help.
It slows my pc a little but that is not the big problem, the problem is that it use too much internet.1h=1-2 gb internet.And it slows down my net speed to 32-40 kb/s when i download.It is too much and i cant afford that with my very limited internet.I care only for 2 things on my pc and that is to have Fast pc and fast internet, i know how to make my pc fast but this virus makes a problem with the internet.I need to destroy it so i can get my internet speed back.Iam online user all i do is online,all my files are online all i do is made with online tools. Thanks to avira i found that i uses explorer.exe process to connect to the internet.I think that there are no other files who are infected since today i found 2 files called explorer in windows folder.I need to find a way how to destroy it forever coz everythink is infected my usb/s my mobile phone/s my cd/s everything.
I tryed a lot programs here are some of them: Kaspersky, avira 9, avira 10, Ashampoo Antimalware, Eset(all products), AVG, Avast, Panda(almost all products from cloud to internet security..), Malwarebytes and etc...
I scaned explorer.exe file with few online scaners and scaned my pc with online scaners also but they dont find anythink.I will format my pc in few hours and hope with your help i can destroy this smart piece of code and get my cyber life back to normal.
Thanks for your help.
Hyper FreakHyper Freak Reviewed by Hyper Freak on . Destroying a virus... I have some kind of virus i think it is a botnet.I fight with it almost 6 month and it is gettin only worse.I dont have anymore idea how to fight against this smart virus so i will need your help. It slows my pc a little but that is not the big problem, the problem is that it use too much internet.1h=1-2 gb internet.And it slows down my net speed to 32-40 kb/s when i download.It is too much and i cant afford that with my very limited internet.I care only for 2 things on my pc and that is to Rating: 5
-
6th Aug 2010, 10:31 PM #2MemberWebsite's:
onlinekeystore.com wrzbb.com 123-hosted.com premiumload.com ipbsource.com code-projects.comdownload hijack this, find the processes and also the name of this virus and kill it manually, anti viruses are kinda useless lol
-
6th Aug 2010, 10:37 PM #3Member
iam getting problem with WIN32 HOST GENERIC,DOES HIJACK ROMOVE VIRUS?
-
6th Aug 2010, 10:41 PM #4OPMember
Here is the log file:
Code:Logfile of Trend Micro HijackThis v2.0.3 (BETA) Scan saved at 12:34:49 AM, on 8/7/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\msiexec.exe C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user') O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O13 - Gopher Prefix: O17 - HKLM\System\CCS\Services\Tcpip\..\{4BE0A7AA-BEF8-4D49-82FD-5E37C36526E9}: NameServer = 62.162.32.6 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\..\{E79646B6-4248-410E-9EF1-34C3AFFCB875}: NameServer = 62.162.32.5,62.162.32.6 O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe -- End of file - 3143 bytes
I stoped the process and i think that....it works fine now..But my phone is infected.I dont think cleaning everytime after i connect somethink to my pc i good idea.Is there option to delete virus from my phone and usb too?
Thanks..
-
6th Aug 2010, 10:43 PM #5Pure Awesomeness!
-
6th Aug 2010, 10:45 PM #6Member
Do the following:
Please download and run this tool.
Download Malwarebytes' Anti-Malware from Here
Double Click mbam-setup.exe to install the application.
- Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
- If an update is found, it will download and install the latest version.
- Once the program has loaded, select "Perform Quick Scan", then click Scan.
- The scan may take some time to finish,so please be patient.
- When the scan is complete, click OK, then Show Results to view the results.
- Make sure that everything is checked, and click Remove Selected.
- When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Note)
- The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts.
Click OK to either and let MBAM proceed with the disinfection process.
If asked to restart the computer, please do so immediately.
Post the contents of the MBAM Log.
-
6th Aug 2010, 10:46 PM #7The King of KingsWebsite's:
rukidding.org thetechnews.orgUse Unlocker to unlock the file which is being infected i.e if you arent being able to delete the file
and go for a better protection like
Avira (It Detects Anything and everything ) + Comodo Firewall + Roboform (Password Manager) + Keyscrambler (Anti Keylogger)
These dont stop the infection just holds them up
If the file is 100% FUD
U will surely get infected but if u use a firewall u come to know which program u have downloaded and u are trying to install is trying to access the internet connection if it is a unreliable source so better not use it
-
6th Aug 2010, 10:51 PM #8Member
scan with malwarebytes. it's the best software for fighting this kind of things.
-
6th Aug 2010, 10:59 PM #9
Use Malware Bytes AntiMalware as other said.
It saved some friends computer many times.
Also if you use warez I advise u to test warez in a virtualbox and run keygens sandboxed.
Good luck.
Regards,
NewEraCracker.Trusted: Dom, l0calh0st, 0ccul7, robert420
Find all threads started by NewEraCracker
-
6th Aug 2010, 11:04 PM #10OPMember
Malware bytes=tryed dont works.For now virus removed.Looking for some way how to remove the virus from my phone and usb coz everytime i connect phone to pc i will be infected again.
@mindfreak dont use and i wont use any av.I download av for testing only.I have bad pc and it is little slow with av so i preffer to be without av.I can only use Ashampoo Antimalware since it is the only av program that doesnt slow my pcIf i suspect in a virus i download portable version of kaspersky or bit defender.
Sponsored Links
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Similar Threads
-
Is paypal destroying everyone
By spikespen in forum Affiliate Programs PromotionReplies: 12Last Post: 3rd Feb 2012, 07:11 PM -
VIRUS - Any idea about this virus ?
By pankaj in forum General DiscussionReplies: 6Last Post: 9th Mar 2011, 09:11 AM -
Have Fun Destroying a Website :)
By MasterDKR in forum Webmaster DiscussionReplies: 7Last Post: 1st Jan 2011, 01:01 PM -
AA Destroying The Social Lives
By upnorth in forum General DiscussionReplies: 0Last Post: 2nd Nov 2010, 12:16 PM -
Virus Help
By Danny1986 in forum Technical Help Desk SupportReplies: 5Last Post: 18th Feb 2010, 10:14 PM
themaCreator - create posts from...
Version 3.45 released. Open older version (or...