super virus

DrBejar

New member
Member
VIP
Local time
8:48 PM
Messages
188
Location
Bass Town
Hi everyone!
My friend told me she has a bunch of virus on her computer and she has two account on the computer.One is the admin and other is the guest, she said that she can’t do anything on the admin account only on the guest. Also she didn’t tell me specifically what happens, but how do I remove it?
When I get more details about what happens I’ll edit my post.

How would I boot into safe mode, like when I start up it’s F8, but if that doesn’t work I have to change it in the msconfig. What if I can’t run the msconfig? I know I can do safe mode try that, but if that doesn’t work what other option is there? I also wanted to know that if I have to reinstall windows, can I give her a copy of windows that I have.I used it once with the license and then about 4 months later I went to windows 7.

oh, what if i install malwarebytes and see if that works to?
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
get a usb device and download a anti virus onto that. transfer it to her computer, and install. do a virus scan, and see if you can find any viruses. If so do as recommended. If you can't get anything to work, the only thing i could recommend is to wipe the HDD completely(possibly a DoD 7 lap over right). And then re-install windows.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Windows 8.1 Pro x64
CPU
Intel Core i5-4570 CPU @ 3.20GHz
Motherboard
Gigabyte Z87-D3HP-CF
Memory
8GB DDR3-1596 - Dual Channel
Graphics Card(s)
NVIDIA GeForce GTX 750 Ti SC
Sound Card
Onboard
Monitor(s) Displays
Samsung
Screen Resolution
1920x1080
Hard Drives
SSD - 120GB
Second - 1TB
Antivirus
MSE
Browser
Chrome
Hi everyone!
My friend told me she has a bunch of virus on her computer and she has two account on the computer.One is the admin and other is the guest, she said that she can’t do anything on the admin account only on the guest. Also she didn’t tell me specifically what happens, but how do I remove it?
When I get more details about what happens I’ll edit my post.

How would I boot into safe mode, like when I start up it’s F8, but if that doesn’t work I have to change it in the msconfig. What if I can’t run the msconfig? I know I can do safe mode try that, but if that doesn’t work what other option is there? I also wanted to know that if I have to reinstall windows, can I give her a copy of windows that I have.I used it once with the license and then about 4 months later I went to windows 7.

oh, what if i install malwarebytes and see if that works to?
Use Malwarebytes in safe mode with networking
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 10 Pro x64, Arch Linux
CPU
Intel Core 2 Quad Q8200 OC'd 3.08GHz
Motherboard
Asus Rampage formula LGA775
Memory
8GB DDR2 900Mhz
Graphics Card(s)
MSI GT730 2GB GDDR5 (Kepler)
Sound Card
Supreme FX2
Monitor(s) Displays
Samsung LS22F350 LED
Screen Resolution
1080P
Hard Drives
Kingston SSDNow UV400 120GB, 500GB Hitachi, 2TB Samsung, 500GB Seagate FreeAgent, 640GB Samsung, 160GB Toshiba (Arch)
PSU
AeroCool 500W Bronze
Cooling
Cooler Master V6 + 3X fans
Keyboard
Prolink keyboard
Mouse
Logitech M705
Internet Speed
1MiB/s
Browser
Chrome Beta
Hi everyone!
My friend told me she has a bunch of virus on her computer and she has two account on the computer.One is the admin and other is the guest, she said that she can’t do anything on the admin account only on the guest. Also she didn’t tell me specifically what happens, but how do I remove it?
When I get more details about what happens I’ll edit my post.

How would I boot into safe mode, like when I start up it’s F8, but if that doesn’t work I have to change it in the msconfig. What if I can’t run the msconfig? I know I can do safe mode try that, but if that doesn’t work what other option is there? I also wanted to know that if I have to reinstall windows, can I give her a copy of windows that I have.I used it once with the license and then about 4 months later I went to windows 7.

oh, what if i install malwarebytes and see if that works to?
Use Malwarebytes in safe mode with networking

Wouldn't this mainly be a virus to do this? Or could Mal-ware do this as well?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Windows 8.1 Pro x64
CPU
Intel Core i5-4570 CPU @ 3.20GHz
Motherboard
Gigabyte Z87-D3HP-CF
Memory
8GB DDR3-1596 - Dual Channel
Graphics Card(s)
NVIDIA GeForce GTX 750 Ti SC
Sound Card
Onboard
Monitor(s) Displays
Samsung
Screen Resolution
1920x1080
Hard Drives
SSD - 120GB
Second - 1TB
Antivirus
MSE
Browser
Chrome
get a usb device and download a anti virus onto that. transfer it to her computer, and install. do a virus scan, and see if you can find any viruses. If so do as recommended. If you can't get anything to work, the only thing i could recommend is to wipe the HDD completely(possibly a DoD 7 lap over right). And then re-install windows.


what type of anti virus can i get to help?
what's a DoD 7 lap? :shock:
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
i have Mal-ware download already, so i install it in safe mode?
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
what type of anti virus can i get to help?
what's a DoD 7 lap?

You could get Microsoft security Essentials(which I use, and most of the people here). Or i also recommend Avast! Free Anti-Virus.

And DoD wiper is a department of Defense hard drive wiper that writes zero's to the drive, and not missing anything. It goes over the HDD 7 times to make sure everything is zero'd.

i have Mal-ware download already, so i install it in safe mode?

Yes, but make sure you do the same with that as the anti-virus.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom
OS
Windows 8.1 Pro x64
CPU
Intel Core i5-4570 CPU @ 3.20GHz
Motherboard
Gigabyte Z87-D3HP-CF
Memory
8GB DDR3-1596 - Dual Channel
Graphics Card(s)
NVIDIA GeForce GTX 750 Ti SC
Sound Card
Onboard
Monitor(s) Displays
Samsung
Screen Resolution
1920x1080
Hard Drives
SSD - 120GB
Second - 1TB
Antivirus
MSE
Browser
Chrome
Hi DrBejar,

First thing is first : malware and viruses are exactly the same thing. Malware is a general term used to describe any malicious software, be it classic viruses, worms, trojans etc.

I very strongly recommend following yowanvistas advice : download, install, update and run a FULL scan using Malwarebytes in Safe Mode with Networking. Post the results here. Once we know what types of infections you have, we can tackle this further.

For your information, DoD7 refers to a secure wipe of hard disk using a Department of Defense algorithm that writes to the disk 7 times. Its a waste of time and effort : you can clean a disk of any malware just as easily by doing a secure wipe of the disk using the CLEAN ALL command of Windows DISKPART.

Let me know if you need more help or guidance.

Regards,
Golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
Hi DrBejar,

First thing is first : malware and viruses are exactly the same thing. Malware is a general term used to describe any malicious software, be it classic viruses, worms, trojans etc.

I very strongly recommend following yowanvistas advice : download, install, update and run a FULL scan using Malwarebytes in Safe Mode with Networking. Post the results here. Once we know what types of infections you have, we can tackle this further.

For your information, DoD7 refers to a secure wipe of hard disk using a Department of Defense algorithm that writes to the disk 7 times. Its a waste of time and effort : you can clean a disk of any malware just as easily by doing a secure wipe of the disk using the CLEAN ALL command of Windows DISKPART.

Let me know if you need more help or guidance.

Regards,
Golden


I see and when you say do it on a network, you mean have the computer like connected to the internet? sorry trying to know the right stuff :D
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
Thats correct.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
I will let you guys know if this works!
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
Ok, what if i can't get into safe mode?
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
Are you getting any error messages appear when trying to access safe mode? What sort of behaviour is it displaying when you try to access anything in safe mode?
 

My Computer

Computer Manufacturer/Model Number
Compaq Desktop
OS
Windows 7 Ultimate x64
CPU
AMD Sempron Dual Core
Memory
3GB
Graphics Card(s)
NVIDIA GeForce 6150SE nForce 430
Screen Resolution
1024x768
Hard Drives
150GB Sata
Also i suggest doing a boot up scan. This is because some viruses may not get detected after everything is loaded
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Acer M802
OS
Win 7 & 10 x64
CPU
Intel(R) Core(TM)2 Quad CPU Q8400 @ 2.66GHz (4 CPUs), ~2.7GH
Motherboard
MB.SCQ07.002 MB KIT G43 ICH10R HMII EUPLOT6 ECS R
Memory
8GB DDR2
Graphics Card(s)
HD 6970 2 GB
Sound Card
Realtek ALC 888s
Monitor(s) Displays
AOC
Screen Resolution
1920x1080 60hz
Hard Drives
WD Black 1 TB

WD My Book Essential 1 TB external HDD
PSU
Corsair TX650m
Case
CM 690 II Advanced mid tower
Cooling
fan
Hi DrBejar,

Before doing anything too invasive with the infected machine let's get an idea of what we're dealing with here. Since the malware is running we'll have to stop it running before we can do anything.

First:

Please download and run RKill.

Download mirror 1 - Download mirror 2 - Download mirror 3


  • Save it to your Desktop.
  • Double click the RKill desktop icon.
  • It will quickly run and launch a log. If it does not launch a log, try another download link until it does.
  • Please post its log in your next reply.
  • After it has run successfully, delete RKill.

Note: This tool only kills the active infection, the actual infection will not be gone. Once you reboot the infection will be active again! Please do not reboot until instructed further to do so.

====
Next, download OTL.exe by OldTimer to your Desktop.
  • Close all windows and double click OTL.exe.
  • Click Run Scan and let the program run uninterrupted.
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
  • You may need to use two posts to get it all.
 

My Computer

Computer Manufacturer/Model Number
Dell XPS 8300
OS
Windows 7 Ultimate x64
CPU
Intel Core i&-2600 3.40 Ghz
Motherboard
Dell 0Y2MRG
Memory
12GB DDR3
Graphics Card(s)
AMD Radeon HD 6600
Sound Card
Sound Blaster X-Fi Titanium
Monitor(s) Displays
24" Dell and 22" Dell
Screen Resolution
1920x1080
Hard Drives
2.0TB Seagate
Keyboard
Dell OEM
Mouse
Dell OEM
Are you getting any error messages appear when trying to access safe mode? What sort of behaviour is it displaying when you try to access anything in safe mode?

You know how you have to push F8, it wont boot into safe mode at all.
It's on a windows vista.
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
Also i suggest doing a boot up scan. This is because some viruses may not get detected after everything is loaded

How will i do a boot up scan?
 

My Computer

Computer Manufacturer/Model Number
ASUSTeK Computer INC
OS
Windows 7 Professional x64
CPU
AMD Athlon 64x2 Dual core Processor 5400+
Motherboard
ASUSTek Computer INC
Memory
5GB DDR2
Graphics Card(s)
ATi Radeon Hd 4650
Sound Card
Realtek High Definition Audio
Screen Resolution
1680x1024 AOC
Hard Drives
250GB
Internet Speed
28mbps
Back
Top