Strange behavior - programs not starting/responding, etc

sevendaysky

New member
Hi guys.

I have a Win 7 32-bit setup on my desktop PC. A student at school uploaded a school-related file to our common work forum, and I downloaded it to my PC and started working with it. Turns out the file was infected with ... I don't know, a lot of really bad stuff.

It ended up shutting down Windows Defender, installing a couple of programs (Whitesmoke Translator, etc) and crud. I had MBAM and Spybot working on it, and could not get Win Defender up again. I know that technically you don't NEED WinD if you have anti-v and anti-malware programs that you update and use regularly, but still. In trying to fix things, I got several blue screens, to the point where the computer refused to start, and then went to repair itself. Told me that a critical file (rapzzmso.sys) was corrupted... fixed it, rebooted, blue screen.

When I got back in, I tried using sys restore back to the previous day, before I downloaded the file. That worked... sort of. Spybot comes up clean. I cannot start MBAM now, though. I click on it, and it hangs whatever window it was in (start menu or the shortcut folder the shortcut is in) for an obnoxiously long time, then a window pops up saying "dependency cannot be started" or something like that. It worked fine before all this.

Also, Firefox, when clicked, usually won't start, though the process appears in the task manager. I have to force it off, then click again before FF will start. Also, it will periodically hang and crash on various sites - I think due to the plugin container. I need to find a new browser, I think.

Spybot now will not let me update. When I click on the update button to get new definitions, it hangs and then goes to Not Responding and must be forced shut. I can run a check, which comes up clean, but that's all.

Something got majorly screwed up, and I'm hoping someone has ideas -- otherwise I might have to reinstall, and I really don't want to have to do that.
 

My Computer

OS
Win 7, 32 bit
Try to boot into safe mode with networking. Then see if you can get to the "here" in the below quote. This is online scanner so no download. Follow directions to remove with the Autoclean.
A good place to start.
Mike
How to get to Safe mode if you need it.
http://www.sevenforums.com/tutorials/666-advanced-boot-options.html

Originally posted by Corrine. One of our security experts.
Please go here and run an on-line scan with the F-Secure scanner .

  • Use IE (Internet Explorer), accept the license terms, and allow the Active-X controls to load.
  • Click Full System Scan and allow the components to download and the scan to complete.
  • If malware is found during the scan, check Submit samples to F-Secure and Automatic cleaning.
  • When the scan has finished, click the Show Report button and copy and paste the entire report in your next reply.
 

My Computer

Computer Manufacturer/Model Number
Hopalong/ Godzilla
OS
Windows7 Pro 64bit SP-1; Windows XP Pro 32bit
CPU
Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core
Motherboard
ASUS P7P55D-E PRO
Memory
8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB
Graphics Card(s)
ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5
Sound Card
VIA Onboard
Monitor(s) Displays
Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws
Screen Resolution
1920x1080; 1440x900
Hard Drives
Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s
PSU
COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular
Case
COOLER MASTER HAF 932 RC-932-KKN5-GP Black
Cooling
Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans)
Keyboard
Logitech K-320
Mouse
Kensington
Antivirus
Avast Inernet Suite
Browser
IE 9 ; Chrome
Most malware/viruses now embed themselves in the last restore point. Try going back 2 or even 3 restore points past where the problems started if you can.

Or you can try going here, if the virus allows it, and run the online scan. It will d/l a AV scanner onto your system and run a full scan.

Free Virus Scan - Free Antivirus Software | Norton Security Scan

You can also try this tool:

http://security.symantec.com/nbrt/npe.asp?lcid=1033

Be aware that if this is a particularly nasty virus, you may have no choice but to do a reinstall, as remnants of it could cause possible problems down the road.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Ohkay. So I'm back at last. I tried to do the Fsecure thing -- twice-- but each time got a BSOD just as I was copy/pasting to here. So I'm not going to touch that again. I did end up using a sys restore point on 1/7 as someone suggested. Less problems here - firefox seems OK, stuff is not freezing at random. Spybot isn't finding anything. I'm going to try MBAM and Housecall and see if they find anything. I know that the second F-secure scan, after sys restore, had found 1 spyware and 2 malware -- but I don't know what they are or where they are because of the BSOD.

I am REALLY hoping not to have to reinstall, because I have some college programs installed that will be a real pain to reinstall (lots of hoops to jump through).
 

My Computer

OS
Win 7, 32 bit
Try the Mbam and delete what it finds.

Eset online scanner also if you want to run it. Never used it myself but most say it is a good one. http://www.eset.com/online-scanner
 

My Computer

Computer Manufacturer/Model Number
Hopalong/ Godzilla
OS
Windows7 Pro 64bit SP-1; Windows XP Pro 32bit
CPU
Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core
Motherboard
ASUS P7P55D-E PRO
Memory
8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB
Graphics Card(s)
ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5
Sound Card
VIA Onboard
Monitor(s) Displays
Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws
Screen Resolution
1920x1080; 1440x900
Hard Drives
Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s
PSU
COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular
Case
COOLER MASTER HAF 932 RC-932-KKN5-GP Black
Cooling
Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans)
Keyboard
Logitech K-320
Mouse
Kensington
Antivirus
Avast Inernet Suite
Browser
IE 9 ; Chrome
In addition to MBam, it wouldn't hurt to run a full sys scan with MSE.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
You are going to have to change all passwords where applicable, and it would be wise to contact financial institutions (if you have done any online banking or used a credit card) to apprise them of your situation.

  • Go to this page and Download TDSSKiller.zip to your Desktop.
  • Extract its contents to your desktop and drag TDSSKiller.exe on the desktop, not in the folder.
  • Click Start > All Programs> Accessories> RIGHT-click on Command Prompt and Select Run As Administrator. Copy/paste the following bolded command and hit Enter.

    "%userprofile%\Desktop\TDSSKiller.exe" -l C:\TDSSKiller.txt -v
  • If TDSSKiller alerts you that the system needs to reboot, please consent.
  • When done, a log file should be created on your C: drive named "TDSSKiller.txt" please copy and paste the contents in your next reply.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Back
Top