Windows 7 Updater does not work

win7userJ

New member
Local time
10:12 AM
Messages
2
I have a trojan (GXVXC). I am having trouble removing it. Every time I remove it from my registry and my SYSTEM32 folder, it comes back when I reboot.

It has caused my Windows 7 updater to stop working.

I have attached a screen shot of what it does to my updater.

Anyone got any ideas what I can do?
 

Attachments

  • image002.gif
    image002.gif
    52.7 KB · Views: 50

My Computer

OS
windows 7
win7userJ -

I've been seeing some traffic on this particular piece of malware, and it looks like a real nasty one.

The easy solution is to save your user data and do a clean install of Windows 7.

If that isn't do-able, and you have some time, you might want to start with a good on-line scanner/remover like Kapersky (Free Virus Scan - Kaspersky Lab) or TrendMicro (HouseCall - Trend Micro USA).

If that doesn't work, come back and we'll figure out the next steps. (It would help if you put some more info into your system specs also.)

The problem is going to be getting rid of all traces of this little bugger, and since it disables antivirus programs and puts auto run commands on the hard drives, among other things, that may prove difficult.

Let us know how it works out, and good luck.
 

My Computer

Computer Manufacturer/Model Number
Gateway, Toshiba Laptop, and Home Brew
OS
Windows 7 x64 HP, Windows 7 HP, Windows 7 Ult
CPU
Intel I3, Cerelon, Pentium 4 @ 3Ghz
Motherboard
Intel, Intel, Asus
Memory
8G, 3G, 3G
Graphics Card(s)
On-board Intel, On-board nVidia, nVIDIA card
Sound Card
on-board, on-board, SoundBlaster
Monitor(s) Displays
Hannspree HF237, Toshiba, SyncMaster 931B
Screen Resolution
default (all)
Hard Drives
1T internal, 320G internal, 160G internal, 1T networked
PSU
300w, unk, 650w
Case
black, black, grey
Cooling
air (all)
Keyboard
standard wired (all)
Mouse
standard wired (all)
Internet Speed
6M down, 768K up
Other Info
Home LAN through Linksys hub to 4 port and wireless switch/router. Networked HP 2600n. Wife's computer running Windows 7, and spare laptop running Ubuntu "Karmic Kola" (9.10).
For this particular varmint I would do a clean install .. by the time you chased down all the registry keys etc. you would be up and running... ;)

PS.. remember to image your drive/partition as soon as you finish!
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
This is a Backdoor Trojan including a Rootkit. You should be aware that any sensitive or personal information (credit card number/Banking account, passwords) on this machine can be or has been stolen.

A wipe and clean install of Windows would be most recommended!
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
I was hoping you wouldn't all say that!!!

I am running Window 7 RC build 7100
 

My Computer

OS
windows 7
Another thing you'll want to take a look at would be to perhaps use Darik's Boot And Nuke | Hard Drive Disk Wipe and Data Clearing to wipe that HD really really clean.

Also, don't plan on using another HD in that system / a partition on that drive to make your backup - make them physically off the compute, and back up only data - no executables if you can help it.
 

My Computers

System One System Two

  • Computer type
    PC/Desktop
    Computer Manufacturer/Model Number
    The Beast Model A (homebrew)
    OS
    Windows 11 21H2 Current build
    CPU
    AMD Ryzen 9 3950X
    Motherboard
    MSI MEG X570 GODLIKE
    Memory
    4 * 32 GB - Corsair Vengeance 3600 MHz
    Graphics Card(s)
    EVGA GeForce RTX 3080 Ti XC3 ULTRA GAMING (12G-P5-3955-KR)
    Sound Card
    Realtek® ALC1220 Codec
    Monitor(s) Displays
    2x Eve Spectrum ES07D03 4K Gaming Monitor (Matte) | Eve Spec
    Screen Resolution
    3x 3840 x 2160
    Hard Drives
    3x Samsung 980 Pro NVMe PCIe 4 M.2 2 TB SSD (MZ-V8P2T0B/AM) } 3x Sabrent Rocket NVMe 4.0 1 TB SSD
    PSU
    PC Power & Cooling’s Silencer Series 1050 Watt, 80 Plus Plat
    Case
    Fractal Design Define 7 XL Dark ATX Full Tower Case
    Cooling
    SteelSeries Apex Pro Wired Gaming Keyboard
    Keyboard
    SteelSeries Apex Pro
    Mouse
    Logitech MX Master 3S | MX Master 3 for business
    Internet Speed
    AT&T LightSpeed Gigabit Duplex Ftth
    Antivirus
    Windows Defender + MB 3
    Browser
    Nightly (default) + Firefox (stable),Chrome, Edge
  • Computer type
    PC/Desktop
    System Manufacturer/Model Number
    Dell Latitude E5470
    OS
    ChromeOS Flex Dev Channel (current)
    CPU
    Intel(R) Core(TM) i5-6300U CPU @ 2.40GHz, 2501 Mhz, 2 Core(s), 4 Logical Processor(s)
    Motherboard
    Dell
    Memory
    16 GB
    Graphics Card(s)
    Intel(R) HD Graphics 520
    Sound Card
    Intel(R) HD Graphics 520 + RealTek Audio
    Monitor(s) Displays
    Dell laptop display 15"
    Screen Resolution
    1920 * 1080
    Hard Drives
    Toshiba 128GB M.2 22300 drive
    INTEL Cherryville 520 Series SSDSC2CW180A 180 GB SATA III SSD
    PSU
    Dell
    Case
    Dell
    Cooling
    Dell
    Keyboard
    Dell
    Mouse
    Logitech MX Master 3S (shared w. Sys 1) | Dell TouchPad
    Internet Speed
    AT&T LightSpeed Gigabit Duplex Ftth
I was hoping you wouldn't all say that!!!
I am running Window 7 RC build 7100

A backdoor Trojan including a Rootkit is something you don't mess around with!

If you didn't get your RC Build 7100 from a reliable source, then don't even bother to use the .ISO or DVD again.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio

My Computer

Computer Manufacturer/Model Number
Samsung NP530U4B-S02IN
OS
Windows® 8 Pro (64-bit)
CPU
Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache)
Motherboard
Samsung Electronics
Memory
6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1)
Graphics Card(s)
AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
35.56cm (14.0) SuperBright 300nit HD LED Display
Screen Resolution
1366x768
Hard Drives
1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD
Internet Speed
sucks
Antivirus
Microsoft Security Essentials
Browser
Google Chrome (Sync enabled)
I have a trojan (GXVXC). I am having trouble removing it. Every time I remove it from my registry and my SYSTEM32 folder, it comes back when I reboot.

It has caused my Windows 7 updater to stop working.

I have attached a screen shot of what it does to my updater.

Anyone got any ideas what I can do?

what all things are you using to scan your computer?
Download Best Free Antivirus: ESET! Try free antivirus programs for 30 days.
and
Malwarebytes.org
and run a full system scan.


He's already done this Dinesh. He needs to format and reinstall ASAP. The longer he waits, the worse the situation is going to get. His entire system is compromised, and further delay is not an option.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
Nowhere he has mentioned that he has scanned his system. Anyways, if you say so, clean install is always recommended. ;)
 

My Computer

Computer Manufacturer/Model Number
Samsung NP530U4B-S02IN
OS
Windows® 8 Pro (64-bit)
CPU
Intel® Core™ i5 Processor 2467M (1.60GHz, 3MB L3 Cache)
Motherboard
Samsung Electronics
Memory
6GB DDR3 System Memory at 1,333MHz (on BD 4GB + 2GB x 1)
Graphics Card(s)
AMD Radeon™ HD7550M 1GB DDR3 (Ext. Graphic)
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
35.56cm (14.0) SuperBright 300nit HD LED Display
Screen Resolution
1366x768
Hard Drives
1TB S-ATA II Hard Drive (5400RPM) with ExpressCache 16GB SSD
Internet Speed
sucks
Antivirus
Microsoft Security Essentials
Browser
Google Chrome (Sync enabled)
Back
Top