WIN32/CRYPTOR
Page 1 of 1
- london1988Beginner
-
OS : XP
Posts : 1
Rubies : 3157
Likes : 0
I seemed to have unwittingly installed a virus/trojan identified by AVG 8.5 as a win32/cryptor virus.
I can't seem to get rid of it and now my AVG has informed me that I have 6 win32/cryptor files that cannot be quarantined and/or removed.
I'm new to geekpolice and it seems like a great site so I hope that I can get some help with this.
The main problem that I am facing with posting here is that when I run HijackThis the scan stops and I don't receive any log file, in fact, no NotePad file opens.
In light of this, can anyone help me either get HijackThis to work or, more importantly get rid of this malicious virus that is seriously getting me feeling low.
Many thanks!
I can't seem to get rid of it and now my AVG has informed me that I have 6 win32/cryptor files that cannot be quarantined and/or removed.
I'm new to geekpolice and it seems like a great site so I hope that I can get some help with this.
The main problem that I am facing with posting here is that when I run HijackThis the scan stops and I don't receive any log file, in fact, no NotePad file opens.
In light of this, can anyone help me either get HijackThis to work or, more importantly get rid of this malicious virus that is seriously getting me feeling low.
Many thanks!
- BelahzurSite Admin
-
OS : 7 Home Premium x64
Posts : 34948
Rubies : 218221
Likes : 18
Hello.
- Download combofix from here
Link 1
Link 2
1. If you are using Firefox, make sure that your download settings are as follows:
* Tools->Options->Main tab
* Set to "Always ask me where to Save the files".
2. During the download, rename Combofix to Combo-Fix as follows:
3. It is important you rename Combofix during the download, but not after.
4. Please do not rename Combofix to other names, but only to the one indicated.
5. Close any open browsers.
6. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix. - We need to disable your local AV (Anti-virus) before running Combofix.
- See HERE for how to disable your AV.
- Double click on ComboFix.exe.
- Follow the prompts. NOTE:
- ComboFix will check to see if the Microsoft Windows Recovery Console is installed.
***It's strongly recommended to have the Recovery Console installed before doing any malware removal.***
**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will automatically proceed with its scan. - The Recovery Console provides a recovery/repair mode should a problem occur during a Combofix run.
- Allow ComboFix to download the Recovery Console.
- Accept the End-User License Agreement.
- The Recovery Console will be installed.
- You will then get this next prompt that asks if you want to continue the malware scan, select yes
- Allow combofix to run
- Post C:\combofix.txt back here.
Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall.
Site Admin / Security Administrator
[Prework] - Please PM me if I fail to respond within 24hrs.


Similar topics
Create an account or log in to leave a reply
You need to be a member in order to leave a reply.
Page 1 of 1
Permissions in this forum:
You cannot reply to topics in this forum