Koobface worm owns my Laptop

Dewey5718

New member
I have a new laptop infected with a worm and who knows what . Lenovo G575 laptop with Windows 7 SP1 64bit,OS Home Premium,dual 1000hrz processors 253mB HHD..just bought this in this month .:cry: .Shortly after hooking up to modem for DSL, I could tell the computer was not responding like it did out of the box. I did some research on the web. Found out there is malware that targets servers ,routers and modems .My virus protection did not show any kind of notice that a virus had been loaded on my unit .tried many different anti soyware and all scans showed clean. Chatting with anti virus support staff , I was told there was no malware of any kind on my computer.. Something had to be wrong the way it acted and I could not open , run ,turn on or off several systems . A few processes were weird looking and new . I am denied ability to access some processes.. winlogon.exe is one . cmd , is not the same . Ipconfig shows some stuff turned off . I don't have the knowledge to over come these problems. I was told there was a download that would help out with my problems . I do need hlep with this please ' I can not attach the file ,my worm chose an invalid file name,to the attach file spot . may T paste to another post? Dewey5718
 

My Computer

OS
Windows 7 Ultimate 64bit
Restoring the Computer to factory default settings as suggested would be best way out provided you did not create an image after you got the computer. If you did create an image then restoring it would be the best thing to do.
 

My Computer

Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Pro with SP1 32bit
Motherboard
Intel D845GVS1 X86-based PC
Memory
2 gigs of RAM
Graphics Card(s)
Intel(R) 82845G/GL/GE/PE/GV Graphics Controller
Sound Card
Realtek AC'97 Audio
Monitor(s) Displays
Samsung SyncMaster 931BF Black 19" LCD Monitor
Screen Resolution
1280X960
Hard Drives
1. SAMSUNG SP0822N ATA Device ~ 80 GigaBytes

2. Seagate FreeAgent Go USB Device ~ 500 GigaBytes
Keyboard
COMPAQ Standard PS/2 Keyboard
Mouse
iBall Laser Precise Speedster
Internet Speed
4 mb/sec
koobface worm owns my laptop

I have used the hidden partition reset installer twice. Waiting for me was koobface.
Iam no longer using DSL modem except for WIFI . No improvement as far as being controlled by the worm .
I Thank you both for the prompt replies .
I am going to attempt to attach a folder to this reply . On occasion it works .

The folder contains downloads that may help to resolve my problem . I may be in trouble I forgot I was already a member of the forum as Deweyduc .I am hoping this error on my part will not kick me off the forum .Old age is no excuse .Can you advise me please? I can't attach folder or files .may I copy and paste some smaller files ?

Thanks again Dewey
 

My Computer

OS
Windows 7 Ultimate 64bit

My Computer

Computer Manufacturer/Model Number
Hewlett packard/p6512uk
OS
Microsoft Windows 7 Home Premium 64-bit 7600
CPU
IIx4 amd athelon 635 processor
Motherboard
FOXCONN 2AA9
Memory
2x2gb
Graphics Card(s)
ati radeon HD 5450
Sound Card
(1) Realtek High Definition Audio (2) AMD High Definition
Monitor(s) Displays
samsung lcd tv 32"
Screen Resolution
1360x 768
Hard Drives
(1) WDC WD10 01FAES-60Z2A0 SATA Disk Device (2) Maxtor OneTouch USB Device (3) ST310003 33AS USB Device (4) WD My Book 1111 USB Device
PSU
?
Cooling
air!
Keyboard
wireless hp
Mouse
wireless Hp,optical
Internet Speed
1.10mb/s
Antivirus
MSE
Browser
Firefox
Hi there .Thanks for the lead. Retail source was no help.

Quick replies , good advice for us ,er newbies . :)

Dewey5718
 

My Computer

OS
Windows 7 Ultimate 64bit
Dewey -

You are in the Mountain time zone. Anywhere near Denver? If yes, I'll see what I can do to help.

Regards,
GEWB
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
(7 different computers booting up to 10 systems)
OS
Linux Mint / XP / Win7 Home, Pro, Ultimate / Win8.1 / Win10
Other Info
Four desktops, two laptops, one notebook and one tablet
Dewey -

You are in the Mountain time zone. Anywhere near Denver? If yes, I'll see what I can do to help.

Regards,
GEWB

Sorrry to take so long .My bug had me off the line for a while .I couldn't sign in to any forum . I like the offer ,but I am about 10 hrs from Denver . My problem is not solved as yet .But!, I had a Gson download a program from his MAC , to a flash drive . Booted from it and it ate the bug for lunch But!!, to use the wireless ,I had to plug into the modem .The ole' worm is on my HDD now . The file came from a google . Pendriveapps.?? provided the file .Good info if you need some thing like that. Thank you very much for the offer Dewey
 

My Computer

OS
Windows 7 Ultimate 64bit
That URL is; pendriveapps.com/. The site has free stuff, and a variety of same .

I hope this can help one of those having the same type worm I have? had!
 

My Computer

OS
Windows 7 Ultimate 64bit
Sorrry to take so long .My bug had me off the line for a while .I couldn't sign in to any forum . I like the offer ,but I am about 10 hrs from Denver . My problem is not solved as yet .But!, I had a Gson download a program from his MAC , to a flash drive . Booted from it and it ate the bug for lunch But!!, to use the wireless ,I had to plug into the modem .The ole' worm is on my HDD now . The file came from a google . Pendriveapps.?? provided the file .Good info if you need some thing like that. Thank you very much for the offer Dewey

Thanks for your reply! Good luck with your project.

Regards,
GEWB
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
(7 different computers booting up to 10 systems)
OS
Linux Mint / XP / Win7 Home, Pro, Ultimate / Win8.1 / Win10
Other Info
Four desktops, two laptops, one notebook and one tablet
sysinternals denied access to win7 NT

My good luck and work has been for naught. The worm has turned, on me .
Bug has regained the control of the computer . WIFI or ethernet. I think it was through the modem . Yesterday , the 8th ,running sysinternals process monitor a long time . Today , access was denied to NT. . Any help would be thankful for . Dewey5718
 

My Computer

OS
Windows 7 Ultimate 64bit
Please read about Koobface here:
Koobface - Wikipedia, the free encyclopedia

Download Combofix from any of the links below, and save it to your desktop.<--Important
Link 1
Link 2
Link 3

Click on this link Here to see a list of programs that should be disabled.
The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
If your anti-virus or firewall complains, please allow this script to run as it is not malicious.
Next: Disconnect from the internet. If you are on Cable or DSL, unplug your computer from the modem.
Next: Please disable all onboard security programs (all running with back ground protection) as it may hinder the scanner from working.
This includes Antivirus, Firewall, and any Spyware scanners that run in the background.
  • Double click combofix.exe and follow the prompts.
  • When finished, it will produce a log for you.
Note: Do not mouseclick combofix's window while its running. That may cause it to stall
Please be patient while the scan runs, at times it may appear to stall.
When finished and after reboot (in case it asks to reboot), it should open a log, combofix.txt.
Post this log in your next reply.
After rebooting ensure your Security applications have been re-enabled.

In your next reply post:
ComboFix.txt
***A guide and tutorial on "How to use Combofix" can be found here:
A guide and tutorial on using ComboFix

IF CF won't run:
During the download, rename Combofix.exe to sVchost.exe
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Back
Top