| Windows 7: Strange behavior - programs not starting/responding, etc |
15 Jan 2011
|
#1 | | |
Strange behavior - programs not starting/responding, etc Hi guys.
I have a Win 7 32-bit setup on my desktop PC. A student at school uploaded a school-related file to our common work forum, and I downloaded it to my PC and started working with it. Turns out the file was infected with ... I don't know, a lot of really bad stuff.
It ended up shutting down Windows Defender, installing a couple of programs (Whitesmoke Translator, etc) and crud. I had MBAM and Spybot working on it, and could not get Win Defender up again. I know that technically you don't NEED WinD if you have anti-v and anti-malware programs that you update and use regularly, but still. In trying to fix things, I got several blue screens, to the point where the computer refused to start, and then went to repair itself. Told me that a critical file (rapzzmso.sys) was corrupted... fixed it, rebooted, blue screen.
When I got back in, I tried using sys restore back to the previous day, before I downloaded the file. That worked... sort of. Spybot comes up clean. I cannot start MBAM now, though. I click on it, and it hangs whatever window it was in (start menu or the shortcut folder the shortcut is in) for an obnoxiously long time, then a window pops up saying "dependency cannot be started" or something like that. It worked fine before all this.
Also, Firefox, when clicked, usually won't start, though the process appears in the task manager. I have to force it off, then click again before FF will start. Also, it will periodically hang and crash on various sites - I think due to the plugin container. I need to find a new browser, I think.
Spybot now will not let me update. When I click on the update button to get new definitions, it hangs and then goes to Not Responding and must be forced shut. I can run a check, which comes up clean, but that's all.
Something got majorly screwed up, and I'm hoping someone has ideas -- otherwise I might have to reinstall, and I really don't want to have to do that. | My System Specs |
| |
15 Jan 2011
|
#2 | | Windows7 Pro 64bit SP-1; Windows XP Pro 32bit Grafton,IL |
Try to boot into safe mode with networking. Then see if you can get to the "here" in the below quote. This is online scanner so no download. Follow directions to remove with the Autoclean.
A good place to start.
Mike
How to get to Safe mode if you need it. Advanced Boot Options
Originally posted by Corrine. One of our security experts. Quote: Please go here and run an on-line scan with the F-Secure scanner . - Use IE (Internet Explorer), accept the license terms, and allow the Active-X controls to load.
- Click Full System Scan and allow the components to download and the scan to complete.
- If malware is found during the scan, check Submit samples to F-Secure and Automatic cleaning.
- When the scan has finished, click the Show Report button and copy and paste the entire report in your next reply.
| My System Specs | | System Manufacturer/Model Number Hopalong/ Godzilla OS Windows7 Pro 64bit SP-1; Windows XP Pro 32bit CPU Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core Motherboard ASUS P7P55D-E PRO Memory 8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB Graphics Card ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5 Sound Card VIA Onboard Monitor(s) Displays Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws Screen Resolution 1920x1080; 1440x900 Keyboard Logitech K-320 Mouse Kensington PSU COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular Case COOLER MASTER HAF 932 RC-932-KKN5-GP Black Cooling Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans) Hard Drives Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s Antivirus Avast Inernet Suite Browser IE 9 ; Chrome |
15 Jan 2011
|
#3 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |
Most malware/viruses now embed themselves in the last restore point. Try going back 2 or even 3 restore points past where the problems started if you can.
Or you can try going here, if the virus allows it, and run the online scan. It will d/l a AV scanner onto your system and run a full scan. Free Virus Scan - Free Antivirus Software | Norton Security Scan
You can also try this tool: http://security.symantec.com/nbrt/npe.asp?lcid=1033
Be aware that if this is a particularly nasty virus, you may have no choice but to do a reinstall, as remnants of it could cause possible problems down the road. | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. |
15 Jan 2011
|
#4 | | |
Ohkay. So I'm back at last. I tried to do the Fsecure thing -- twice-- but each time got a BSOD just as I was copy/pasting to here. So I'm not going to touch that again. I did end up using a sys restore point on 1/7 as someone suggested. Less problems here - firefox seems OK, stuff is not freezing at random. Spybot isn't finding anything. I'm going to try MBAM and Housecall and see if they find anything. I know that the second F-secure scan, after sys restore, had found 1 spyware and 2 malware -- but I don't know what they are or where they are because of the BSOD.
I am REALLY hoping not to have to reinstall, because I have some college programs installed that will be a real pain to reinstall (lots of hoops to jump through). | My System Specs | | |
15 Jan 2011
|
#5 | | Windows7 Pro 64bit SP-1; Windows XP Pro 32bit Grafton,IL |
Try the Mbam and delete what it finds.
Eset online scanner also if you want to run it. Never used it myself but most say it is a good one. http://www.eset.com/online-scanner | My System Specs | | System Manufacturer/Model Number Hopalong/ Godzilla OS Windows7 Pro 64bit SP-1; Windows XP Pro 32bit CPU Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core Motherboard ASUS P7P55D-E PRO Memory 8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB Graphics Card ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5 Sound Card VIA Onboard Monitor(s) Displays Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws Screen Resolution 1920x1080; 1440x900 Keyboard Logitech K-320 Mouse Kensington PSU COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular Case COOLER MASTER HAF 932 RC-932-KKN5-GP Black Cooling Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans) Hard Drives Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s Antivirus Avast Inernet Suite Browser IE 9 ; Chrome |
15 Jan 2011
|
#6 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |
In addition to MBam, it wouldn't hurt to run a full sys scan with MSE. | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. |
15 Jan 2011
|
#8 | | Windows 7 Ultimate 32bit SP1 |
You are going to have to change all passwords where applicable, and it would be wise to contact financial institutions (if you have done any online banking or used a credit card) to apprise them of your situation. - Go to this page and Download TDSSKiller.zip to your Desktop.
- Extract its contents to your desktop and drag TDSSKiller.exe on the desktop, not in the folder.
- Click Start > All Programs> Accessories> RIGHT-click on Command Prompt and Select Run As Administrator. Copy/paste the following bolded command and hit Enter.
"%userprofile%\Desktop\TDSSKiller.exe" -l C:\TDSSKiller.txt -v - If TDSSKiller alerts you that the system needs to reboot, please consent.
- When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.
| My System Specs | | System Manufacturer/Model Number Bruce ... somewhere in his 40's OS Windows 7 Ultimate 32bit SP1 CPU Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz Motherboard INTEL/D975XBX2 Memory 4 GB Graphics Card ATI Radeon HD 2600 Pro Monitor(s) Displays Samsung SyncMaster 914v Screen Resolution 1280 x 1024 Keyboard Standard PS/2 Keyboard Mouse Microsoft PS/2 Mouse PSU Rocketfish 700 W Case G.Skill Gigabyte Chassis Hard Drives 2/500GB each ... ST3500630AS ATA Device.
One is not connected Internet Speed DSL Antivirus Avira Internet Security Browser IE 9 Other Info ATI HDMI Audio Strange behavior - programs not starting/responding, etc problems? All times are GMT -5. The time now is 07:26 AM. | |