Jump to content

Need Help with Virus:Win64/Alureon.gen!A


Recommended Posts

  • Replies 71
  • Created
  • Last Reply

Top Posters In This Topic

I got an error message from Microsoft when it tried to install an update (Error 8004FF86) Security Essentials still says I have a virus, and for some reason sometimes I can't gain internet access through my router even though I can on other devices. I haven't had any more BSOD or blue screens but Windows has shut down twice unexpectedly. 

Link to post
Share on other sites

Scan with Malwarebytes Anti-Rootkit

Please download Malwarebytes Anti-Rootkit from here Malwarebytes : Malwarebytes Anti-Rootkit and save it to your desktop.

Be sure to print out and follow the instructions provided on that same page.

Caution: This is a beta version so please be sure to read the disclaimer and back up any important data before using.

  • Double click the mbar.zip file to open it, then 'Extract all files'.
  • Double click the mbar folder to open it, then double click mbar.exe to start the tool.


Check for Updates, then Scan your system for malware

If malware is found, do NOT press the Cleanup button yet. Click EXIT.

I'd like to see the log first so I can see what it sees. You'll find the log in that mbar folder as MBAR-log-[date and time]***.txt . Please attach that to your next reply.

Link to post
Share on other sites

  • Download ListParts to a USB flash drive. (for 64bit systems, download ListParts64 to a USB flash drive.)
  • Plug the USB drive into the infected machine.
  • Boot your computer into Recovery Environment

 

Restart the computer and press F8 repeatedly until the Advanced Options Menu appears.

  • Select Repair your computer.
  • Select Language and click Next
  • Enter password (if necessary) and click OK, you should now see the screen below ...
  • W7InstallDisk2.png

     

  • Select the Command Prompt option.
  • A command window will open.
  • Type notepad then hit Enter.
  • Notepad will open.
  • Click File > Open then select Computer.
  • Note down the drive letter for your USB Drive.
  • Close Notepad.
  • Back in the command window ....(depending on which version you´ve downloaded)
  • Type e:/listparts.exe and hit Enter (where e: is replaced by the drive letter for your USB drive)
  • Type e:/listparts64.exe and hit Enter (where e: is replaced by the drive letter for your USB drive)
  • listparts will start to run.
  • Place a checkmark next to "List BCD".
  • Press the Scan button.
  • When finished scanning it will make a log Result.txt on the flash drive.
  • Close the command window.
  • Boot back into normal mode and post me the Result.txt log please.
Link to post
Share on other sites

I couldn't locate my discs or get any, so I downloaded the .iso file from windows and have been trying to load windows again (I have everything backed up on an external hdd) since it appears like my whole C:Drive was wiped but it is somehow failing to create a new system partition and I don't know how to view the setup logs for my information as to why...

Link to post
Share on other sites

Ok so my computer is up and running now, well mostly. It seems the only problem I currently have is booting windows. It will say the Boot Manager is missing, so I let it restart, press Esc till a boot menu appears, I'll change the BIOS to let the drive with windows installed boot first, save anx exit, and everything will see great until I go to turn my laptop on the next time and I'll have to repeat everything again. Any ideas!?

Link to post
Share on other sites

Create/USe Boot-Repair-Disc

  1. DOWNLOAD BOOT-REPAIR-DISK
    Note: Select the right version depending on which windows is installed on your system.
  2. Then burn it on CD or put it on USB key via Unetbootin
  3. Insert the Boot-Repair-Disk and reboot the PC,
  4. Choose your language,
  5. Connect internet if possible
  6. Click "Recommended repair"
  7. When finished, you are provided a link to paste.ubuntu.com - write it down somewhere
  8. Reboot the pc --> solves the majority of bootsector/GRUB/MBR problems
  9. Post up the link you wrote down at step 6.

Link to post
Share on other sites

Scan with FRST (Recovery Environment)


To run FRST on Vista and Windows7:



Plug the flashdrive into the infected PC.

Enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:

  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Choose your language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.



To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Choose your language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.



On the System Recovery Options menu you will get the following options:

  • Startup Repair
  • System Restore
  • Windows Complete PC Restore
  • Windows Memory Diagnostic Tool
  • Command Prompt
  • Select Command Prompt



  • In the command window:
  • type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
  • Note: Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.


It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.

Link to post
Share on other sites

  • 2 weeks later...
  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.