| Windows 7: RPC Virus Virus |
07 Apr 2011
|
#1 | | |
PC Tools Firewall Plus--Help! In my pc's device manager under "network Adapters" i see "PC Tools Driver #6"...ok I remember I installed PC Tools Firewall Plus months ago..and It might have been installed then....it also has a tiny yellow exclamation mark over...useless stuff...so i decide to uninstall it..
So, I click uninstall and the device manager page refreshes but OMG! it's still there 
I tried many times but that ugly thing is still there... 
Can anyone help? | My System Specs |
| System Manufacturer/Model Number Dell Inspiron 1525 OS Windows 7 Ultimate x32 CPU Core 2 Duo Motherboard T5800 @2GHz Memory 3 GB Screen Resolution 1280x800 |
07 Apr 2011
|
#2 | | |
RPC Virus Virus The action center keeps on saying "Remove the RPC Virus Virus"..
Anyone knows how to remove it??
I'm using MSE and Malwarebytes Anti Malware and both found nothing! | My System Specs | | System Manufacturer/Model Number Dell Inspiron 1525 OS Windows 7 Ultimate x32 CPU Core 2 Duo Motherboard T5800 @2GHz Memory 3 GB Screen Resolution 1280x800 |
07 Apr 2011
|
#3 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |
Quote: The RPC Virus (aka Remote Procedure Call Virus) is also known as MSBlast or the Blaster Virus, is a malicious worm that spreads by infecting vulnerable computers. If your computer has been infected, you may experience frequent system crashes or be completely unable to access any website. Remove the virus using an updated spyware removal tool immediately. Quote: What is RPC Virus – Fake Alert?
RPC Virus is a fake alert message coming from a rogue security program that will mislead its victim from buying the licensed version of the software. The fake alert messages will be shown as: Remove the RPC Virus virus
Windows has detected RPC Virus, a known computer virus on your computer. RPC Virus has caused your computer to stop working properly. Remove the RPC Virus virus from your computer
This problem was caused by RPC Virus, a known computer virus.
To prevent this problem from occurring again, install and run an up-to-date antivirus and antispyware program on your computer. RPC Virus or MSBlast Removal Instructions
Suggest you run these tools, do a full system scan after following the removal instructions. If you cannot do this in regular mode, then run in safe mode: http://www.microsoft.com/security/pc...e-removal.aspx http://security.symantec.com/nbrt/npe.asp?lcid=1033 | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. |
07 Apr 2011
|
#4 | | |
Actually neither the process nor the registry key was found in my PC...any gusses?? | My System Specs | | System Manufacturer/Model Number Dell Inspiron 1525 OS Windows 7 Ultimate x32 CPU Core 2 Duo Motherboard T5800 @2GHz Memory 3 GB Screen Resolution 1280x800 |
07 Apr 2011
|
#5 | | Windows 7 Ultimate 64 bit |
Malwarebytes' Anti-Malware should pick that baddie up. Try updating MBAM then do a Full Scan. Post the resulting log here, please. | My System Specs | | System Manufacturer/Model Number Dell Studio 15 OS Windows 7 Ultimate 64 bit |
07 Apr 2011
|
#6 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |

Quote: Originally Posted by akshaybz Actually neither the process nor the registry key was found in my PC...any gusses?? After you do the full malwarebytes scan as suggested by Carolyn, if nothing shows, run the Malicious software removal tool and then the Norton Power Eraser (full system scan) Quote: These RPC Virus files can be in the form of EXE, DLL, LSP, TOOLBAR, BROWSER HIJACK, and/or BROWSER PLUGIN. For example, RPC Virus might create a file like %PROGRAM_FILES%\RPC Virus\RPC Virus.exe. Locate and remove these files. You may wish to consider running the Malwarebytes & Malicious software removal tool while disconnected from the net.
The Power Eraser will need a net connection to function properly | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. |
07 Apr 2011
|
#7 | | |
MBAM cleaned this: Code: Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\TJHTHX1O7X (Trojan.FakeAlert) -> Quarantined and deleted successfully. Also here is screenshot of my task manager which are suspicious: | My System Specs | | System Manufacturer/Model Number Dell Inspiron 1525 OS Windows 7 Ultimate x32 CPU Core 2 Duo Motherboard T5800 @2GHz Memory 3 GB Screen Resolution 1280x800 |
07 Apr 2011
|
#8 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |
Good, glad it's apparently sorted.
Now it's a good idea to run a full system scan with MSE, Malwarebytes and the Malicious Software tool just to be sure it's out of the system & there are no leftovers. Run these scans disconnected from the net so that it can't "call for help".
That's just to be sure it's gone, I know this can take a little bit, but why take chances on it coming back? | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. |
07 Apr 2011
|
#9 | | Windows 7 Ultimate 64 bit |
Those are legit processes in the screenshot
for example, see HERE | My System Specs | | System Manufacturer/Model Number Dell Studio 15 OS Windows 7 Ultimate 64 bit |
07 Apr 2011
|
#10 | | Windows 7 Home Premium 32 bit In a house with a cat trying to kill me |
Yeah, don't delete anything that "looks suspicious", let the scanners decided that. If you remove the wrong thing, you could end up crippling your PC.
After Mbam cleaned the file out, did the warnings disappear? | My System Specs | | System Manufacturer/Model Number Dell Hell oh Well OS Windows 7 Home Premium 32 bit CPU Intel Core 2 Duo 2.93GHz Memory Not much with my ADHD Graphics Card ATI Radeon HD 4350 Monitor(s) Displays I have one...It's bright. A 19 inch CRT actually. Keyboard It's 10 years old and amazingly still works Mouse Same deal with the mouse, 10 yrs old, if it ain't broke... Case Don't get on my case...man :D Cooling I have an Air Conditioner & Diet Pepsi Hard Drives 250 GB Main Drive, 2 - 1 TB Externals, various FD's. RPC Virus Virus problems? All times are GMT -5. The time now is 12:26 AM. | |