Help - Search - Members - Calendar
Full Version: Help! I've tried almost everything
Gladiator Security Forum > Malware Help Forum > HELP! Think you are Infected?
wonderwoman
I am so glad to have found this web site. A couple of weeks ago I kept getting a total security warning, ignored them, then I got this purple screen with a BIG WARNING... so I downloaded AVG, then everything on my desktop was gone only the wall paper is there. I have been working off my TASK MGR ever since. I have downloaded the following I hopes that something would take care of it: Uniblue, super anti spyware, spyware doctor, security task manager(?)( i don't remember this one but it shows up), malawarebytes' anti malware, fixo, advanced virus remover, ccleaner, cyberdefender, recuva & spybot.

I have read lots of sites with the same problems. I tried to right click on the desktop and nothing, just the wallpaper. I typed the REGEDITand made sure that the shell say"explorer.exe" but nothing. ON the task mngr processess I have 3 iexplorer.exe BUT NO explorer.exe. I did find a file in my documents named explorer.exe but it will not open.

I can't do a SYSTEM RESTORE, because this computer was given to me, but I do know that it was purchased as used from a vocational school. so when I try to do system restore it states that I need to contact administrator.

I just need this computer to las while I attend school. PLEASE HELP:0)
LoPhatPhuud
Please follow the instructions here: Guidelines for Posting in This Forum

Note that this link is posted in the Forum Rules at the top of this page.
wonderwoman
lophat, I did everything on the requirements to post page, when I ran the malware program it disappeared, as did all of them. I do not have a desktop with icons to work from, I am working off the task manager. I am not that computer literate....but I am very, very frustrated.
LoPhatPhuud
If you have another computer..

Download the latest version of Kaspersky Virus Removal Tool from here:
http://devbuilds.kaspersky-labs.com/devbuilds/AVPTool

- Reboot to Safe mode.
- Close all other applications and double-click and run the installer.
- When AVPTool starts, select all the scanable items except for CD-ROM drives and click the Scan button.
- If malware is detected, place a checkmark in the Apply to all box, and click the Delete button (or Disinfect if the button is active).
- After the scan finishes, if any threat remains in the Scan window (Red exclamation point), click the Neutralize all button
- In the window that opens, place a checkmark in the Apply to all box, and click the Delete button (or Disinfect if the button is active).
- If advised that a special disinfection procedure is required which demands system reboot: click the Ok button to close the window.
- In the Scan window click the Reports button and select Save to file.
- Name the report AVPT.txt, and save it to the Desktop.
- Close AVPTool.
- You will be prompted if you want to uninstall the program; click Yes.
- You will then be prompted that to complete the uninstallation, the computer must be restarted. Select Yes to restart the system.
- Copy and paste the first part of the report (Detected) that you saved in your next reply. Do not include the longer list marked Events.

wonderwoman
I do not have another computer. I turned this one on in safe mode. downloaded file and started the scan. while it was scanning, It disappeared. I tried it over and over again and nothing. I have also read of a f-nimba virus, could this be it?
LoPhatPhuud
It could be one of many do I won't even attempt to guess.

Lets try this..

The Kaspersky Rescue Disk is a bootable CD based version of Kaspersky Antivirus.
The download is in ISO format.
If you are not sure how to burn an image, please read How to write a CD/DVD image or ISO. If you need a FREE utility to burn the ISO image, download and use ImgBurn.

On a clean, uninfected system, download the Kaspersky Rescue Disk:
http://devbuilds.kaspersky-labs.com/devbuilds/RescueDisk/


- Burn the Kaspersky Rescue Disk ISO image to CD.
- Insert the Kaspersky Rescue Disk CD into the CD/DVD drive of the infected system and boot the computer (you may need to change the boot sequence in your system's BIOS to boot from the CD/DVD drive).
- Follow the instructions in the initial text screen to press Enter to start Kaspersky AntiVirus.
- Select your language (or wait a few seconds for the default English to load).
- Your screen may go blank for several minutes while the program loads.
- After the Kaspersky Rescue Disk loads, the database will be updated (if you have network connectivity)
--- Click the Update tab to view the update progress.
--- When the update has completed, click the Scan tab.
- Place a checkmark in all the available drives to scan the entire system.
- Click the "Security level" option, and select options.
--- Make sure "All Files" is selected
--- Under "Scan of compound files" ensure all options are selected and click the OK button.
- Click the "On threat detection" option
--- Select "Do not prompt", "Disinfect", and "Delete if disinfection fails".
- Click the "Start scan" button.
- When the scan has completed, click the Reports button.
--- Click the Save button, and select your System drive (normally your C: drive)
--- In the "File name" box, name the file krd-log and click the Save button.
--- Click Close to close the Reports window.
- Click the Exit button to close the Rescue Disk program and confirm.
In the lower left of the screen, left-click the red K button, select Logout, and confirm.
- The computer will shut down.
Restart the computer and reboot normally.
- Please post the log (krd-log.txt) in your next reply.
wonderwoman
I finally got a copy of the disk, but my computer will not open it. I read that i may have to change to BIOS to boot from the cd/dvd drive, but I do not know how to do that. Again I am only able to work off the task mgr. and right now I can only work in safe mode. help....and lots of thank you's
LoPhatPhuud
Rather the protract this any longer, its time to reformat and start over. Backup any pertinent data you may have, and go form there.
wonderwoman
I do not know how to do that. I mentioned before that I can't do a system restore, this computer was purchased from a surplus sale. When I tried to do the system restore it asks for the admin. info which I do not have.
LoPhatPhuud
System Restore is not the same as System Recovery. The computer may have a recovery partition that will allow you to return the computer to the factory install state. A used computer, such as yours, may or may not have this partition intact. Usually one of the higher Function keys will invoke the recovery program (often F11 or F12). Also, there mayh be shortcut a the recovery program.

Lacking a recovery partition, your only other option is to install Windows using a CD/DVD. THe computer should have an sticker on it indficate the copy of Windows is genuine and giving the serial number you need. The best CD/DVD to use is one made by the computer's manufacturer since that will also have the needed drivers for your computer. You may be able to purchase arecovery cd directly from the manufacturer for a nominal charge. Contact them to see.
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.