Hello and welcome to CertForums.co.uk, here we host free active certification forums with links to the best free resources for Microsoft's MCSA MCSE MCDBA Cisco's CCNA CCDA and CCNP, and CompTIA's A+ Network+ i-NET+ and Security+ certifications in the UK. If you wish to post or use other advanced features you will need to register first. Registration is absolutely free and takes only a few minutes to complete so sign up today!

If you have any problems with the registration process or your account login, please contact support

Go Back   CertForums > Computing Support Forums > Security & Viruses
Home Forums Register Search Today's Posts Mark Forums Read

Bio hazard

Post New ThreadReply
 
Thread Tools Display Modes
  #1  
Old 23-Feb-2008, 10:24 PM
soady soady is offline
New Member
Posts: 13
Points: 0 soady has no points
Power: 2
None
Join Date: 24 Oct 2007
Wink Bio hazard

Hello All.


i am back, but this time i have a problem, i am trying to fix a friends laptop for them and i am having real trouble locating the last of the bugs that are on it.

i will tell you what i have done so far so maybe that will help, i will also tell you what the problem(s) are.

the problem that i am having is two fold, first where the "C" drive is, there is a Big RED X like what is located at the top right on every window in a windows PC. the disc is only half full, and i have already done a defrag on it to make sure. i have also looked in folder options just to make sure that its not had its icon changed

i know through looking on the internet that its VirtuMonde, otherwise known as Vundo, that can be a cause for this red X. So i have Down Loaded the fix for it here: http://www.atribune.org/content/view/24/2/ i have run this program and it did find a few things and i managed to delete them, i have also run this in safe mode now and it finds nothing (in either safe mode or not).

i also manages to remove just over 4 grands worth of pos*.tmp files from the C drive, and my documents, and there is now none of these .tmp files left on it, i have done several searches on the pc and i cannot find them any more. i have removed all the registry entries for them as well using a combination of CCleaner and me going thought it looking for them. i have also done the same with all the other files that i have removed.


i have also installed AVG 7.5 on to the PC and it also found a few things, and so has Spybot search and destroy which also found a few things, one of the main problems that was on the pc was a virus from a program called "trusted antivirus" and "window pro 2006" i have completely removed these and all there associated files with them, again either by me going thought the registry and CCleaner, there are no longer any traces of either of these.

i said at the start the there problems where two fold well the second part of the problem is that whenever i try and Run an ad-aware sweep it crashes the pc when it gets to the folder C:\windows\system32\dllcache and any number of files that are in there, my first reaction was to remove the files that it was scanning last to see if that would fix the problem but all that happens is that it crashes on a different file. i have tried to run this in safe mode but it says there is an "exception EAccesses Violation in module Ad-aware.exe at 00ica094" and it goes on, so i am thinking that it cannot get to the memory location for the program but i am sure that u can run this program in safe mode.


thanks for any and all help.

and for those that know me from when i was thinking about getting a new pc, i have got it, and i am so happy that i waited untill after Xmas, and i saved over 200 pounds on it and i got the samsung pebble monitor 22 inch so i am very happy and this new pc is a beast!

soady

 
Reply With Quote
  #2  
Old 23-Feb-2008, 10:33 PM
Bluerinse's Avatar
Bluerinse Bluerinse is offline
Senior Moderator
Posts: 7,372
Points: 2479 Bluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 pointsBluerinse has over 2000 points
Power: 107
None
Join Date: 29 Jun 2003
Location: The Gold Coast, QLD Australia
Certifications: C&G Electronics - MCSA (W2K) MCSE (W2K)
WIP: None but considering SBS
If you have that much crap on there, you will never be sure that you have removed it all.

It's time to back up your data, format and re-install Windows.

Then, start using safe surfing techniques


"A child of five could understand this. Fetch me a child of five." <Groucho Marx>
 
Reply With Quote
  #3  
Old 23-Feb-2008, 10:56 PM
soady soady is offline
New Member
Posts: 13
Points: 0 soady has no points
Power: 2
None
Join Date: 24 Oct 2007
hi,

well there in lies the problem, as its a friend's pc and they need it for their university work i cannot do that other wise i would of, i have given them some good info on how to surf in safety, but re-formatting is not an option, and if i do back up and reformat then i run the risk of taking an infected file over to the back up and i will be back to square one again.

 
Reply With Quote
  #4  
Old 24-Feb-2008, 12:36 AM
BosonMichael's Avatar
BosonMichael BosonMichael is offline
Premium Member
Posts: 9,937
Points: 4640 BosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 pointsBosonMichael has over 4000 points
Power: 149
None
Join Date: 02 Nov 2006
Location: near Nashville, TN
Age: 38
Certifications: MCSE+I, MCSE: Securi.. huh? out of room?
WIP: Just about everything!
Quote:
Originally Posted by soady View Post
hi,

well there in lies the problem, as its a friend's pc and they need it for their university work i cannot do that other wise i would of, i have given them some good info on how to surf in safety, but re-formatting is not an option, and if i do back up and reformat then i run the risk of taking an infected file over to the back up and i will be back to square one again.
Well, then, if you're not willing to reformat and start from scratch... enjoy your viruses. I'm not sure what magic you expect to happen.

You won't likely take infected files over if you simply back up your data (data, not apps - your pics, your documents, your music - anything you cannot recreate or reinstall) and restore it after you've formatted and reinstalled Windows.


BosonMichael
MCSE+I, MCSE: Security, MCDST, MCDBA, OCP, CCNP, CCDP, CNE, SCSA, Security+, Linux+, Server+, Network+, A+
Served proudly, US Army, 98C Intelligence Analyst, '89-'92

Last edited by BosonMichael : 24-Feb-2008 at 12:37 AM.
 
Reply With Quote
  #5  
Old 24-Feb-2008, 01:45 AM
Mitzs's Avatar
Mitzs Mitzs is offline CertForums News Posting Member
Lifetime Member
Posts: 2,960
Points: 1995 Mitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 pointsMitzs has over 1500 points
Power: 54
None
Join Date: 11 Apr 2005
Location: Tenneesse USA
Certifications: Microcomputers and network specialist.
Soady you have to reformat that harddrive. It is crashing when you run something like a antivirus or antispyware. Most time it is because you are still majorly infected with something and it is fighting back and wining. To be honest it could kill the HDD eventurally, then where will your friend be? Spybot does not keep their database up as well as they use to and adware just suxs. If I was you I would download a 15 day trial of counter spy.

http://www.sunbelt-software.com/Home.../Anti-Spyware/

This is what I use and it works good.They are very good at keeping their databases updated! It is what I have my nontech friends use when they start running into prombles. I have found in the past that while it runs it will start kicking things up and avg will start finding more things too. When it is done running, reboot that bad boy and run it again. Then run your avg. Keep doing this till you have nothing found. Then do it aleast one more time. Rebooting after every search. If this does not work, the only thing left that I would know to do is reformatt it. It is a tough lesson for your friend to learn but there is only so much one can do.


Don't walk in front of me, I may not follow. Don't walk behind me, I may not lead. Walk beside me and just be my friend. (Old Irish Proverb)
 
Reply With Quote
Post New ThreadReply Spread this thread: Submit this thread to digg Submit this thread to del.icio.us


Go Back   CertForums > Computing Support Forums > Security & Viruses


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Windows admin 'feature' poses latest hazard SiFor News 4 14-May-2004 06:33 PM


All times are GMT. The time now is 01:49 AM.

Powered by vBulletin® Version 3.6.10
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
CertForums.co.uk (C) copyright 2003-2007 All Rights Reserved. Content published on CertForums.co.uk requires permission for reprint.
Hosted by Lunarpages