Jump to content

antivirus xp 2009 problem (more serious one)


Recommended Posts

Hello,

My computer has currently been infected with a virus - normally what's known as antivirus xp 2009. Through this thread http://forums.whatthetech.com/BSOD_c000021...ror_t96574.html which was extremely helpful, I've fixed it whenever my computer was infected before.

But this time, it seems bit different. Well, I haven't gotten any BSOD yet but as soon as I login to my account, whilst loading, computer freezes up so I can't do anything about it (this is normal as it always happened). So I went to safe mode and did what was instructed in that website - running MBAM and ComboFix etc. only that MBAM doesn't run. As well as every single virus scan program that I have. I click on it and it does nothing. So I searched this solution and tried doing #5 from this FAQ http://www.malwarebytes.org/forums/index.php?showtopic=10138

I tried the procexp and changed the name from MBAM to winlogon and ran it. It was running. So I clicked quick scan and it seemed to be scanning for few seconds when all of sudden, the MBAM window is gone. And when I try to run it again, I get the message that (it's not word by word as I'm translating from another language) "it's file / roots are no accessable because I don't have the previleges / rights." This really shocked me... I looked at the task manager and it wasn't there so I tabbed to 'process' and it is there with memory of 350k ish and doesn't seem to be going up or down (meaning it's probably frozen somewhere)

I've also tried rootrepeal but that also disappeared when I tried to scan (it does run at the beginning!) But as soon as I scan, it scans a bit then all of sudden the screen is gone and I get the above message about how I can't access.

So I was wondering if there is ANYTHING I can do to fix this problem other than obviously to format. It seems like the virus is countering EVERYTHING I throw at it. I mean, if I can just scan and get rid of the virus, I think it's fixable as combofix does the job to replace the damaged system files.

Note - I don't know if this is important but when all these weird security pop-up came up, the window security menu also came up and I selected from no-firewall to firewall, then my computer froze... just putting it out there if this was the reason because I've never touched / changed anything when I previously got this virus. Anyway, I did change the firewall setting back to no-firewall through safemode...

Thanks in advance,

Please help as I've never ever seen a virus like this...

Link to post
Share on other sites

Just noticed, it seems that whenever that error occurs, the interface icon is gone, replaced by a default icon similar to ones you get when you uninstall a program and the shortcut in desktop remains with an icon of a 'window bar' (?)...

Link to post
Share on other sites

Please follow these instructions (skipping any steps you are unable to complete) for posting in our Malware Removal - HijackThis Logs forum. If you cannot follow any of those steps, then please create a new topic in that forum explaining what happened when you tried to run each of the tools in the instructions, and the expert who helps you will be able to suggest steps to take to get the tools working.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.