Removing Virus Virut

View previous topic View next topic Go down

Removing Virus Virut

Post by CoreTUNA on Wed Dec 23, 2009 7:11 pm

Hey i tried downloading combofix to remove the infected files from my moms computer and im getting this error



Thats everytime im downloading it too..


Nod32 and Malwarebytes' Anti-Malware isn't completely doing the job..

*note i cant boot into safe mode it just restarts the computer.. im guessing its patched.

downloaded DDS heres a log if u need.

DDS (Ver_09-12-01.01)

Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 12/15/2009 2:00:55 PM
System Uptime: 12/23/2009 12:21:40 PM (1 hours ago)

Motherboard: ASUSTek Computer INC. | | Kamet2
Processor: AMD Athlon(tm) XP 2800+ | Socket A | 2075/166mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 69 GiB total, 6.245 GiB free.
D: is FIXED (FAT32) - 5 GiB total, 0.93 GiB free.
E: is CDROM ()
F: is CDROM ()

==== Disabled Device Manager Items =============

Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: 1394 Net Adapter
Device ID: V1394\NIC1394\56B34FE01800
Manufacturer: Microsoft
Name: 1394 Net Adapter
PNP Device ID: V1394\NIC1394\56B34FE01800
Service: NIC1394

==== System Restore Points ===================

RP1: 12/16/2009 1:58:04 PM - System Checkpoint
RP2: 12/16/2009 2:04:56 PM - Software Distribution Service 3.0
RP3: 12/16/2009 2:07:20 PM - Installed Windows XP KB898461.
RP4: 12/16/2009 2:08:07 PM - Installed Windows Installer KB893803v2.
RP5: 12/16/2009 2:18:27 PM - Software Distribution Service 3.0
RP6: 12/16/2009 2:18:46 PM - Installed Windows XP KB892130.
RP7: 12/16/2009 7:52:24 PM - Software Distribution Service 3.0
RP8: 12/16/2009 7:53:55 PM - Installed Windows XP KB912919.
RP9: 12/16/2009 8:03:45 PM - Software Distribution Service 3.0
RP10: 12/16/2009 8:26:24 PM - Software Distribution Service 3.0
RP11: 12/16/2009 8:32:29 PM - Installed Windows XP KB842773.
RP12: 12/17/2009 4:41:50 AM - Removed ESET Smart Security
RP13: 12/17/2009 5:17:44 AM - Installed ESET Smart Security
RP14: 12/17/2009 1:54:53 PM - Software Distribution Service 3.0
RP15: 12/17/2009 1:56:53 PM - Installed Windows XP KB890859.
RP16: 12/17/2009 1:58:41 PM - Installed Windows XP KB914389.
RP17: 12/17/2009 1:59:46 PM - Installed Windows XP KB920683.
RP18: 12/17/2009 2:00:40 PM - Installed Windows XP KB908519.
RP19: 12/17/2009 2:01:28 PM - Installed Windows XP KB835409.
RP20: 12/17/2009 2:13:33 PM - Installed Windows XP KB913580.
RP21: 12/17/2009 2:14:34 PM - Installed Windows XP KB905749.
RP22: 12/17/2009 2:21:21 PM - Installed Windows XP KB908531.
RP23: 12/17/2009 2:22:13 PM - Installed Windows XP KB911567.
RP24: 12/17/2009 2:22:41 PM - Installed Windows XP KB918899.
RP25: 12/17/2009 2:23:59 PM - Installed Windows XP KB900725.
RP26: 12/17/2009 2:25:17 PM - Installed Windows XP KB888302.
RP27: 12/17/2009 2:26:11 PM - Installed Windows XP KB917422.
RP28: 12/17/2009 2:27:06 PM - Installed Windows XP KB923191.
RP29: 12/17/2009 2:28:16 PM - Installed Windows XP KB901214.
RP30: 12/17/2009 2:29:18 PM - Installed Windows XP KB917953.
RP31: 12/17/2009 2:30:21 PM - Installed Windows XP KB905414.
RP32: 12/17/2009 2:31:11 PM - Installed Windows XP KB917344.
RP33: 12/17/2009 2:31:37 PM - Installed Windows XP KB904706.
RP34: 12/17/2009 2:32:45 PM - Installed Windows XP KB919007.
RP35: 12/17/2009 2:34:01 PM - Installed Windows XP KB890046.
RP36: 12/17/2009 2:35:07 PM - Installed Windows XP KB920670.
RP37: 12/17/2009 2:35:34 PM - Installed Windows Media Player KB911564.
RP38: 12/17/2009 2:36:43 PM - Installed Windows XP KB905495.
RP39: 12/17/2009 2:37:02 PM - Installed Step By Step Interactive Training KB898458.
RP40: 12/17/2009 2:38:11 PM - Installed Windows XP KB910437.
RP41: 12/17/2009 2:38:29 PM - Installed Windows XP KB918439.
RP42: 12/17/2009 2:39:41 PM - Installed Windows XP KB921398.
RP43: 12/17/2009 2:40:12 PM - Installed Windows XP KB925486.
RP44: 12/17/2009 2:54:13 PM - Installed Windows XP KB924496.
RP45: 12/17/2009 2:55:56 PM - Installed Windows XP KB914798.
RP46: 12/17/2009 2:57:52 PM - Installed Windows XP KB911562.
RP47: 12/17/2009 2:59:47 PM - Installed Windows XP KB911280.
RP48: 12/17/2009 3:01:40 PM - Installed Windows XP KB893756.
RP49: 12/17/2009 3:03:25 PM - Installed Windows XP KB896424.
RP50: 12/17/2009 3:05:12 PM - Installed Windows XP KB920685.
RP51: 12/17/2009 3:06:55 PM - Installed Windows XP KB899591.
RP52: 12/17/2009 3:08:35 PM - Installed Windows XP KB901017.
RP53: 12/17/2009 3:10:37 PM - Installed Windows XP KB922616.
RP54: 12/17/2009 3:12:26 PM - Installed Windows XP KB911927.
RP55: 12/17/2009 3:13:00 PM - Installed Windows Media Player 9 KB917734_WMP9.
RP56: 12/17/2009 3:14:44 PM - Installed Windows XP KB921883.
RP57: 12/17/2009 3:16:17 PM - Installed Windows XP KB923414.
RP58: 12/17/2009 3:20:16 PM - Installed Windows XP KB922819.
RP59: 12/17/2009 3:22:25 PM - Installed Windows XP KB924191.
RP60: 12/17/2009 3:29:10 PM - Installed Windows XP KB899587.
RP61: 12/17/2009 3:49:55 PM - Software Distribution Service 3.0
RP62: 12/17/2009 3:52:40 PM - Software Distribution Service 3.0
RP63: 12/17/2009 4:01:03 PM - Software Distribution Service 3.0
RP64: 12/17/2009 9:35:01 PM - Software Distribution Service 3.0
RP65: 12/17/2009 10:40:19 PM - Software Distribution Service 3.0
RP66: 12/18/2009 2:01:56 AM - Software Distribution Service 3.0
RP67: 12/18/2009 7:30:02 AM - Software Distribution Service 3.0
RP68: 12/18/2009 7:31:47 AM - Installed Windows XP KB873339.
RP69: 12/18/2009 8:22:18 PM - Configured easy Internet sign-up
RP70: 12/18/2009 9:08:50 PM - Software Distribution Service 3.0
RP71: 12/18/2009 9:10:36 PM - Installed Windows XP KB896423.
RP72: 12/18/2009 9:13:04 PM - Installed Windows XP KB885836.
RP73: 12/18/2009 11:31:57 PM - Software Distribution Service 3.0
RP74: 12/18/2009 11:38:52 PM - Software Distribution Service 3.0
RP75: 12/18/2009 11:54:15 PM - Software Distribution Service 3.0
RP76: 12/19/2009 2:03:13 AM - Blah
RP77: 12/19/2009 2:18:35 AM - Installed Windows XP Service Pack 2.
RP78: 12/19/2009 2:54:45 AM - Installed Windows XP KB873333.
RP79: 12/19/2009 3:09:20 AM - Installed Windows XP Service Pack 2.
RP80: 12/19/2009 3:37:24 AM - Installed Windows XP KB873333.
RP81: 12/19/2009 3:39:15 AM - Installed Windows XP KB873339.
RP82: 12/19/2009 3:41:01 AM - Installed Windows XP KB885250.
RP83: 12/20/2009 3:00:18 AM - Software Distribution Service 3.0
RP84: 12/21/2009 7:22:13 AM - System Checkpoint
RP85: 12/22/2009 9:48:37 AM - System Checkpoint
RP86: 12/22/2009 9:31:58 PM - Installed Windows Media Player 11
RP87: 12/22/2009 9:32:36 PM - Installed Windows XP Wudf01000.
RP88: 12/22/2009 9:36:28 PM - Installed Windows XP MSCompPackV1.
RP89: 12/22/2009 9:40:20 PM - Installed Windows XP KB926239.

==== Installed Programs ======================


AAC Decoder
AC3Filter (remove only)
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop Album Starter Edition
Adobe Reader 6.0
AiO_Scan
AIOMinimal
AiOSoftware
AutoUpdate
Big Fish Games Client
Blackhawk Striker from Compaq (remove only)
Blasterball 2 from Compaq (remove only)
Bounce Symphony from Compaq (remove only)
Cassandra's Journey 2: The Fifth Sun of Nostradamus
CCleaner
Compaq Connections
Compaq Instant Support
Compaq Organize
Copy
CreativeProjects
Director
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Plus Web Player
DivX Version Checker
DocProc
ESET Smart Security
Excavation from Compaq (remove only)
Fax
Five Card Frenzy from Compaq (remove only)
H.264 Decoder
Hotfix for Windows XP (KB926239)
HP Deskjet Preloaded Printer Drivers
HP Photo & Imaging 3.1
HP Photo and Imaging 2.0 - Photosmart Cameras
HP PSC & OfficeJet 3.0
HP Software Update
hpmdtab
HpSdpAppCoreApp
HPSystemDiagnostics
InstantShare
Intel(R) Extreme Graphics Driver
IntelliMover Data Transfer Demo
InterVideo WinDVD Player
Java 2 Runtime Environment, SE v1.4.2
KBD
LiveUpdate 1.90 (Symantec Corporation)
Malwarebytes' Anti-Malware
Memories Disc Creator 2.0
Microsoft .NET Framework 1.1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Learning and Research Plus Support Files
Microsoft Money 2004
Microsoft Money 2004 System Pack
Microsoft Office Standard Edition 2003
Microsoft Picture It! Express 7.0
Microsoft Plus! Digital Media Edition
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Works 7.0
MKV Splitter
Mozilla Firefox (3.5.6)
MSN Internet Software
MSN Messenger 5.0
MUSICMATCH® Jukebox
NVIDIA GART Driver
Orbital from Compaq (remove only)
Otto from Compaq (remove only)
Overball from Compaq (remove only)
PC-Doctor for Windows
PhotoGallery
Photosmart 140,240,7200,7600,7700,7900 Series
Polar Bowler from Compaq (remove only)
PrintScreen
PS2
PSShortcutsP
Python 2.2 combined Win32 extensions
Python 2.2.1
QFolder
Quicken 2004
QuickProjects
Readme
RealOne Player
RecordNow!
S3 S3Display
S3 S3Gamma2
S3 S3Info2
S3 S3Overlay
Scan
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913433)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924496)
Shockwave
SkinsHP1
SkinsHP2
Slyder from Compaq (remove only)
Sonic Update Manager
SpamSubtract
TrayApp
Unload
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
VC80CRTRedist - 8.0.50727.4053
VIA Rhine-Family Fast Ethernet Adapter
VIA/S3G Display Driver
Viewpoint Media Player (Remove Only)
WebFldrs XP
WebReg
Windows Genuine Advantage Validation Tool (KB892130)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Service Pack 2
WinRAR archiver
Yahoo! Messenger
Yahoo! Software Update
Zone Deluxe Games

==== Event Viewer Messages From Past Week ========

12/20/2009 10:01:44 PM, error: Service Control Manager [7034] - The Yahoo! Updater service terminated unexpectedly. It has done this 1 time(s).
12/19/2009 3:44:31 AM, error: Service Control Manager [7000] - The Application Layer Gateway Service service failed to start due to the following error: The system cannot find the file specified.
12/18/2009 8:58:03 PM, error: Service Control Manager [7000] - The WmiApSrv service failed to start due to the following error: The system cannot find the file specified.
12/18/2009 7:33:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706be: Security Update for Windows XP (KB873339).
12/18/2009 7:33:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows XP (KB896423).
12/18/2009 7:33:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows XP (KB885836).
12/18/2009 7:33:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Critical Update for Windows (KB833407).
12/18/2009 4:08:54 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference error message: The referenced assembly is not installed on your system. .
12/18/2009 4:08:54 PM, error: SideBySide [59] - Generate Activation Context failed for C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll. Reference error message: The operation completed successfully. .
12/18/2009 4:08:54 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\TurboTax\Deluxe 2007\32bit\MFC80.DLL. Reference error message: The operation completed successfully. .
12/18/2009 4:08:54 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last Error was The referenced assembly is not installed on your system.
12/18/2009 11:05:37 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFC. Reference error message: The referenced assembly is not installed on your system. .
12/18/2009 11:05:37 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFC could not be found and Last Error was The referenced assembly is not installed on your system.
12/17/2009 5:29:40 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: agp440 ehdrv fasttx2k nv_agp SISAGP
12/17/2009 5:29:40 AM, error: Service Control Manager [7000] - The eamon service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 5:24:31 AM, error: Service Control Manager [7034] - The Net_Login service terminated unexpectedly. It has done this 1 time(s).
12/17/2009 4:44:58 AM, error: Service Control Manager [7000] - The FastUserSwitchingCompatibility service failed to start due to the following error: %1 is not a valid Win32 application.
12/17/2009 4:41:40 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: ehdrv
12/17/2009 4:41:40 AM, error: Service Control Manager [7000] - The ESET Service service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 4:01:10 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Critical Update for Windows (KB833407).
12/17/2009 3:33:45 PM, error: Service Control Manager [7023] - The Network Security service terminated with the following error: The specified module could not be found.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The Spooler service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The NVSvc service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The nVidia WDM Video Capture (universal) service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The nVidia WDM A/V Crossbar service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The mrtRate service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 3:33:45 PM, error: Service Control Manager [7000] - The FastUserSwitchingCompatibility service failed to start due to the following error: The system cannot find the file specified.
12/17/2009 3:33:04 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.CRT. Reference error message: The referenced assembly is not installed on your system. .
12/17/2009 3:33:04 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Logitech\SetPoint\SetPoint.exe. Reference error message: The operation completed successfully. .
12/17/2009 3:33:04 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.CRT could not be found and Last Error was The referenced assembly is not installed on your system.
12/17/2009 1:54:50 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: agp440 fasttx2k nv_agp SISAGP
12/16/2009 9:04:27 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the FastUserSwitchingCompatibility service to connect.
12/16/2009 9:04:27 AM, error: Service Control Manager [7000] - The FastUserSwitchingCompatibility service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 7:26:03 PM, error: Service Control Manager [7000] - The ImapiService service failed to start due to the following error: The system cannot find the file specified.
12/16/2009 7:24:45 PM, error: DCOM [10005] - DCOM got error "%2" attempting to start the service ImapiService with arguments "-Service" in order to run the server: {520CCA63-51A5-11D3-9144-00104BA11C5E}
12/16/2009 12:15:27 AM, error: Service Control Manager [7001] - The NetDDE service depends on the NetDDEdsdm service which failed to start because of the following error: The system cannot find the file specified.
12/16/2009 12:15:27 AM, error: Service Control Manager [7000] - The NetDDEdsdm service failed to start due to the following error: The system cannot find the file specified.
12/16/2009 12:15:25 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the MSIServer service to connect.
12/16/2009 12:15:25 AM, error: Service Control Manager [7000] - The MSIServer service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:06:29 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the MSDTC service to connect.
12/16/2009 12:06:29 AM, error: Service Control Manager [7000] - The MSDTC service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:05:56 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the mnmsrvc service to connect.
12/16/2009 12:05:56 AM, error: Service Control Manager [7000] - The mnmsrvc service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:05:23 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Messenger service to connect.
12/16/2009 12:05:23 AM, error: Service Control Manager [7000] - The Messenger service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:04:50 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the lanmanworkstation service to connect.
12/16/2009 12:04:50 AM, error: Service Control Manager [7000] - The lanmanworkstation service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:04:16 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the lanmanserver service to connect.
12/16/2009 12:04:16 AM, error: Service Control Manager [7000] - The lanmanserver service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:03:43 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the ImapiService service to connect.
12/16/2009 12:03:43 AM, error: Service Control Manager [7000] - The ImapiService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:03:06 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the helpsvc service to connect.
12/16/2009 12:03:06 AM, error: Service Control Manager [7000] - The helpsvc service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:02:33 AM, error: Service Control Manager [7001] - The Fax service depends on the Spooler service which failed to start because of the following error: The system cannot find the file specified.
12/16/2009 12:01:19 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the ERSvc service to connect.
12/16/2009 12:00:48 AM, error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Type with the following error: Access is denied.
12/16/2009 12:00:45 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the dmserver service to connect.
12/16/2009 12:00:45 AM, error: Service Control Manager [7000] - The dmserver service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 12:00:12 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the dmadmin service to connect.
12/16/2009 12:00:12 AM, error: Service Control Manager [7000] - The dmadmin service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
12/16/2009 1:55:56 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706be: Update for Windows XP (KB898461).
12/16/2009 1:55:56 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Microsoft Windows Installer 3.1.

==== End Of File ===========================

CoreTUNA
Beginner
Beginner

Posts Posts : 2
Joined Joined : 2009-12-23
OS OS : Windows XP
Points Points : 25418
# Likes # Likes : 0

View user profile

Back to top Go down

Re: Removing Virus Virut

Post by Belahzur on Wed Dec 23, 2009 7:24 pm

I'm afraid I have bad news.

Your system is infected with a polymorphic file infector called Virut. Virut is capable of infecting all the machine's executable files (.exe) and screensaver files (.scr). However, the problem is that the virus has a number of bugs in its code, and as a result, it may misinfect a proportion of executable files and therefore, the files are corrupted beyond repair. As of now, security experts suggest that a format and clean install, or destructive recovery if you have an OEM recovery partition, is the best way to clean the infection and it is the best and safest way to return the machine to its normal working state.

Backup all your documents and important items (personal data, work documents, etc) only. DO NOT backup any executable files (softwares) and screensavers (*.scr). It attempts to infect any accessed .exe or .scr files by appending itself to the executable.

Also, avoid backing up compressed files (zip/cab/rar) files that have .exe or .scr files inside them. Virut can penetrate and infect .exe files inside compressed files too.

Recent variants also modify htm, html, asp and php files.

Do not back up to another machine, as it may become compromised. Burn to DVD/CD, or to an external drive which has nothing else on it, and which you can format should it happen to become infected from the backups.


For more information, please see [You must be registered and logged in to see this link.]

Instructions how to format and reinstall Windows can be found [You must be registered and logged in to see this link.]


[You must be registered and logged in to see this link.] - [You must be registered and logged in to see this link.] - Please PM me if I fail to respond within 24hrs.


Belahzur
Administrator
Administrator

Posts Posts : 34916
Joined Joined : 2008-08-03
Gender Gender : Male
OS OS : XP SP3 Media Centre
Points Points : 245069
# Likes # Likes : 1

View user profile

Back to top Go down

Re: Removing Virus Virut

Post by CoreTUNA on Wed Dec 23, 2009 10:21 pm

I figured i had to to that. i just wanted to see if there was anything i could do to stop it. but guess not lol alright well thanks man for the help.

CoreTUNA
Beginner
Beginner

Posts Posts : 2
Joined Joined : 2009-12-23
OS OS : Windows XP
Points Points : 25418
# Likes # Likes : 0

View user profile

Back to top Go down

View previous topic View next topic Back to top

- Similar topics

 
Permissions in this forum:
You cannot reply to topics in this forum