Windows Command Processor Virus

Kopmeister

New member
Local time
11:21 AM
Messages
30
This virus has now hit my computer, I have run several scans using Malwarebytes, Windows Defender and SuperAntiSpyware.All have come up with doggy files and cookies. Still problems also found a registry key about it, deleted still it happens. So if anyone can help, you would be a lifesaver. Here I attach the logs from my most recent Malwarebytes scan.
EDIT
Couldn't find the right log so just tell me what to download and I will scan again. That log is the incorrect one
 

Attachments

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Download DDS from one of these links:
Mirror 1 Mirror 2 Mirror 3
  • Disable any script blocking protection
  • Double click the dds icon to run the tool.
  • When done, DDS will open two (2) logs:
    1. DDS.txt
    2. Attach.txt <--- will be minimized in the task tray
  • Save both reports to your desktop.
Include the contents of both logs in your next post.
The scan will instruct you to post Attach.txt as an attachment.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Hi,

Lets try something. Could you please run a pre-boot antivirus program such as Kaspersky Rescue Disk. This will run before windows loads so can remove virus's and malware more effectively. Instructions here: How to record Kaspersky Rescue Disk 10 to an USB device and boot my computer from it?. It is also possible to use a blank DVD to run the program if you have no USB drives. Instructions here: How to record Kaspersky Rescue Disk 10 to a CD/DVD and boot my computer from the disk?

Stephen

EDIT - This tool may be more effective. http://www.sevenforums.com/tutorials/166445-windows-defender-offline.html
 

My Computer

Computer Manufacturer/Model Number
Dell XPS 15 L502x
OS
Windows 7 Home Premium 64bit (O.E.M)
CPU
Intel Core i7 2630QM @2.00GHz
Memory
6GB DDR3
Graphics Card(s)
Intel Intergrated Graphics 3000, nVidia GT525M (1GB)
Screen Resolution
1366x768
Hard Drives
750GB Seagate 7200rpm
Keyboard
Backlit Dell XPS 15 L502x Keyboard
Mouse
Microsoft Wireless Mobile Mouse 4000
Internet Speed
2.5 Mb/s down, 0.36 up

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Inspiron 530
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core 2 Duo Processor E8300 @ 2.83GHz
Motherboard
Dell Inc. 0RY007 (Socket 775)
Memory
4.00 GB Dual-Channel DDR2 @ 332MHz (5-5-5-15)
Graphics Card(s)
Intel(R) G33/G31 Express Chipset Family
Sound Card
Integrated 7.1 Channel Audio
Monitor(s) Displays
Acer G245HQL 23.6" LED(1920x1080@60Hz)
Screen Resolution
1920 x 1080
Hard Drives
Disk 0 HITACHI 1TB OS Installed - Disk 1 HITACHI 1TB For Backups
Keyboard
Dell USB Keyboard
Mouse
Dell Optical USB Mouse
Internet Speed
DSL 10 meg
Antivirus
Symantec(SEP)
Browser
Pale Moon
I don't know why but it won't downlaod even though I have downlaoded Malwarebytes and SuperAntiSpyware
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Try in Safe mode with networking.
Using the F8 Method:

  1. Restart your computer.
  2. When the computer starts you will see your computer's hardware being listed. When you see this information start to gently tap the F8 key on your keyboard repeatedly until you are presented with the Windows 7 Advanced Boot Options screen.
How to start Windows in Safe Mode
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Inspiron 530
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core 2 Duo Processor E8300 @ 2.83GHz
Motherboard
Dell Inc. 0RY007 (Socket 775)
Memory
4.00 GB Dual-Channel DDR2 @ 332MHz (5-5-5-15)
Graphics Card(s)
Intel(R) G33/G31 Express Chipset Family
Sound Card
Integrated 7.1 Channel Audio
Monitor(s) Displays
Acer G245HQL 23.6" LED(1920x1080@60Hz)
Screen Resolution
1920 x 1080
Hard Drives
Disk 0 HITACHI 1TB OS Installed - Disk 1 HITACHI 1TB For Backups
Keyboard
Dell USB Keyboard
Mouse
Dell Optical USB Mouse
Internet Speed
DSL 10 meg
Antivirus
Symantec(SEP)
Browser
Pale Moon
Try in Safe mode with networking.
Using the F8 Method:

  1. Restart your computer.
  2. When the computer starts you will see your computer's hardware being listed. When you see this information start to gently tap the F8 key on your keyboard repeatedly until you are presented with the Windows 7 Advanced Boot Options screen.
How to start Windows in Safe Mode

That's what I've been in this whole time. Going to bed now. Quite late here in England. Goodnight and thanks for the help
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Okay, DDS (mirror 1) look at the bottom of your screen. Do you see this image?
Click to *save* to your desktop, then follow the directions above.
If your Anti-virus wants to block it, then click "allow". DDS (short for 'doesn't do squat') doesn't do anything to alter your computer, it just shows me what I need to know ;)
 

Attachments

  • DDS Bleeping.jpg
    DDS Bleeping.jpg
    6.2 KB · Views: 18

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Weird, just booted in to normal mode and no prompts what so ever. My dad did log on last night, maybe he approved the prompt, I don't know. No noticeable slowdowns yet, about to try some MW3 to see if there are any slowdowns and this is what I get when I click link 1
link 1.jpg

EDIT
MW3 works fine, so I'm a bit confused. What's going on?
 
Last edited:

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Let's flush the DNS cache and restore MS's Hosts file ....

Copy and paste these lines in Note pad.

@Echo on
pushd\windows\system32\drivers\etc
attrib -h -s -r hosts
echo 127.0.0.1 localhost>HOSTS
attrib +r +h +s hosts
popd
ipconfig /release
ipconfig /renew
ipconfig /flushdns
netsh winsock reset all
netsh int ip reset all
shutdown -r -t 1
del %0


Save as flush.bat to your desktop.
Double click on the flush.bat file to run it.Vista and Windows 7... right click the .bat file and choose to run as Administrator. Your computer will reboot itself.

Once rebooted, see if you can get the 1st mirror to download DDS now.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Still no, after that reboot still no Command Processor prompt. Maybe its gone :D
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
I'd like you to scan your machine with ESET OnlineScan
  1. Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  2. Click the
    esetOnline.png
    button.
  3. For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    1. Click on
      esetSmartInstall.png
      to download the ESET Smart Installer. Save it to your desktop.
    2. Double click on the
      esetSmartInstallDesktopIcon.png
      icon on your desktop.
  4. Check
    esetAcceptTerms.png
  5. Click the
    esetStart.png
    button.
  6. Accept any security warnings from your browser.
  7. Check
    esetScanArchives.png
  8. Push the Start button.
  9. ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  10. When the scan completes, push
    esetListThreats.png
  11. Push
    esetExport.png
    , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  12. Push the
    esetBack.png
    button.
  13. Push
    esetFinish.png
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Here it is

C:\ProgramData\TrackMania\Cache\875EB227E9D6EC1D37CBF3255707A767_Skins%5cAny%5cAdvertisement%5cBCSurlscroll.bik HTML/Iframe.B.Gen virus deleted - quarantined
C:\Users\Alex\AppData\Local\Temp\96oi03ww.tmp PDF/Exploit.Pidief.PDS.Gen trojan cleaned by deleting - quarantined
C:\Users\Alex\AppData\Local\Temp\i9lly4uy.tmp PDF/Exploit.Pidief.PDS.Gen trojan cleaned by deleting - quarantined
C:\Users\Alex\AppData\Local\Temp\jar_cache3149808510193519961.tmp a variant of Java/Exploit.CVE-2010-0842.L trojan deleted - quarantined
C:\Users\Alex\AppData\Local\Temp\kwfotzo2.tmp JS/Exploit.Pdfka.OWY trojan cleaned by deleting - quarantined
C:\Users\Alex\AppData\Local\Temp\ouf84e1t.tmp PDF/Exploit.Pidief.PDS.Gen trojan cleaned by deleting - quarantined
C:\Users\Alex\AppData\Local\Temp\tcvuwopq.tmp PDF/Exploit.Pidief.PDS.Gen trojan cleaned by deleting - quarantined
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Can you get DDS to run now?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Nope
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
I clicked Jacee's dds mirror 1 link and it worked for me.

Could you download it on a different computer put it on a flash drive and then run it?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
self build
OS
7 home premium 64 bit
CPU
AMD Phenom II X6 1055T
Motherboard
Asus M4A785TD-M EVO
Memory
DDR3 1333 6144 MBytes each modual 2048 mb
Graphics Card(s)
Power Color ATI R9 270x bluescreen edition
Sound Card
s/pdif part of my motherboard
Monitor(s) Displays
It is a 42" lcd tv :D
Screen Resolution
1920 X 1080
Hard Drives
Samsung 120gb SSD (EVO 840)
Hitachi 500gb 3gb\s sata hard drive, slow boring but gets the job done
PSU
Orion 585w psu Model# HP585D (updated to EVGA 600W)
Case
A shoebox
Cooling
Box fan....
Keyboard
I telepathically convay what I want said.
Mouse
Cat
Internet Speed
Loading...
Antivirus
A facial mask
Browser
Firefail, Internet Exploder
Other Info
I love my gaming rig, FreeCell and Solitaire never looked so good.
Get a download manager for iPod Touch. Save .exe, transfer over from by usin iFunbox. That should work
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Download DDS from one of these links:
Mirror 1 Mirror 2 Mirror 3
  • Disable any script blocking protection
  • Double click the dds icon to run the tool.
  • When done, DDS will open two (2) logs:
    1. DDS.txt
    2. Attach.txt <--- will be minimized in the task tray
  • Save both reports to your desktop.
Include the contents of both logs in your next post.
The scan will instruct you to post Attach.txt as an attachment.
If your using Internet Explorer, right click on Mirror 1 above, Save target as > save the dds.scr to your desktop.
Firefox or other browsers right click > Save link as
Get a download manager for iPod Touch. Save .exe, transfer over from by usin iFunbox. That should work
Don't understand.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Inspiron 530
OS
Windows 7 Professional SP1 64-bit
CPU
Intel Core 2 Duo Processor E8300 @ 2.83GHz
Motherboard
Dell Inc. 0RY007 (Socket 775)
Memory
4.00 GB Dual-Channel DDR2 @ 332MHz (5-5-5-15)
Graphics Card(s)
Intel(R) G33/G31 Express Chipset Family
Sound Card
Integrated 7.1 Channel Audio
Monitor(s) Displays
Acer G245HQL 23.6" LED(1920x1080@60Hz)
Screen Resolution
1920 x 1080
Hard Drives
Disk 0 HITACHI 1TB OS Installed - Disk 1 HITACHI 1TB For Backups
Keyboard
Dell USB Keyboard
Mouse
Dell Optical USB Mouse
Internet Speed
DSL 10 meg
Antivirus
Symantec(SEP)
Browser
Pale Moon
The scan completely froze my PC, is it meant to do that?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell
OS
Windows 7 Home Premium
CPU
Intel Dual Core 2.5GHz
Memory
4GB
Graphics Card(s)
EVGA GeForce GT430
Monitor(s) Displays
1
Screen Resolution
1366X768
Hard Drives
320GB, 500GB
PSU
300
Keyboard
Microsoft Sidewinder x4
Mouse
Logitech G500
Internet Speed
100mb/s
Antivirus
Norton 360
Browser
Google Chrome
Back
Top