Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Help removing trojans please
New Posts  All Forums:Forum Nav:

Help removing trojans please - Page 4

post #31 of 54
Quote:
System restore disabled on what?
System Restore on all drives.
ASRock + 960t
(14 items)
 
   
CPUMotherboardGraphicsRAM
AMD Phenom II X4 960T ASRock 870 Extreme3 XFX 5770 2x4GB G Skill DDR3-1600 CL8 
Hard DriveCoolingOSMonitor
AMD 2+0 Stripe/RAID0 ST500DM002 N520 the best one 2x Samsung XL2270 
KeyboardPowerCaseMouse
Logitech K750 XFX PRO550W CM Storm Trooper Anywhere Mouse MX 
CPUGraphicsRAM
i7-2630QM HD6770m DDR3-1333 
  hide details  
Reply
ASRock + 960t
(14 items)
 
   
CPUMotherboardGraphicsRAM
AMD Phenom II X4 960T ASRock 870 Extreme3 XFX 5770 2x4GB G Skill DDR3-1600 CL8 
Hard DriveCoolingOSMonitor
AMD 2+0 Stripe/RAID0 ST500DM002 N520 the best one 2x Samsung XL2270 
KeyboardPowerCaseMouse
Logitech K750 XFX PRO550W CM Storm Trooper Anywhere Mouse MX 
CPUGraphicsRAM
i7-2630QM HD6770m DDR3-1333 
  hide details  
Reply
post #32 of 54
"Trojan Remover". Just search Google and the first link. It probably sounds sketchy, but I've had it work on two separate occasions with two separate problems. The one thing (I think) it does that I haven't been able to find elsewhere is registry values. Try running that followed by running a virus scan and/or malwarebytes.
Karnak
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II x2 550 @ 3.7Ghz Gigabyte MA-770T-UD3P Gigabyte 6850 1GB G.Skill 4GB DDR3 @ 1333 
Hard DriveOSMonitorPower
WDC 640GB Windows 7 Ultimate 64bit Acer X223Wbd Antec 650W 
CaseMouse
Antec 300 Logitech MX Revolution 
  hide details  
Reply
Karnak
(13 items)
 
  
CPUMotherboardGraphicsRAM
Phenom II x2 550 @ 3.7Ghz Gigabyte MA-770T-UD3P Gigabyte 6850 1GB G.Skill 4GB DDR3 @ 1333 
Hard DriveOSMonitorPower
WDC 640GB Windows 7 Ultimate 64bit Acer X223Wbd Antec 650W 
CaseMouse
Antec 300 Logitech MX Revolution 
  hide details  
Reply
post #33 of 54
Quote:
Originally Posted by itzhoovEr View Post
His sig rig runs 64bit not the computer that is infected.
I've been following the thread from the beginning, but I'm not sure why I missed the 32bit XP part. lol. Even the screenshot should have reminded me.
    
CPUMotherboardGraphicsRAM
I5-2500k 4.8Ghz @ 1.38v Z68X-UD4-B3 PNY 480 8GB Dominator 1600's 
Hard DriveOptical DriveOSMonitor
Intel 510 + 300GB Velociraptor LG DVD RW Server 2012 HP 25" + HP 20" 
KeyboardPowerCaseMouse
Deck Legend TX850W XClio Coolbox Mamba 
Mouse PadAudio
Dolica HD550's 
  hide details  
Reply
    
CPUMotherboardGraphicsRAM
I5-2500k 4.8Ghz @ 1.38v Z68X-UD4-B3 PNY 480 8GB Dominator 1600's 
Hard DriveOptical DriveOSMonitor
Intel 510 + 300GB Velociraptor LG DVD RW Server 2012 HP 25" + HP 20" 
KeyboardPowerCaseMouse
Deck Legend TX850W XClio Coolbox Mamba 
Mouse PadAudio
Dolica HD550's 
  hide details  
Reply
post #34 of 54
Thread Starter 
Quote:
Originally Posted by W4LNUT5 View Post
last I knew Combofix didn't run on 64 bit windows.

Sophos Anti-Rootkit is about the only one I know that does run on 64 bit besides TDSSKiller (and TDSSKiller only finds typical 32bit rootkits).
Quote:
Originally Posted by itzhoovEr View Post
His sig rig runs 64bit not the computer that is infected.
This man is a great reader

He is correct. The computer that is infected is running xp 32-bit. My sig rig that is not infected runs win 7 home premium 64-bit.
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
post #35 of 54
Thread Starter 
So comobofix has found a rootkit and had to reboot in order to get it off. Right now it's continuing to get the rootkit off. Combofix appears to be the fix. Let's see what happens with it
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
post #36 of 54
Don't forget to do a CCleaner after done. I always have.

Loving this thread for the fact that we didn't just re-install windows to fix the problem.
My gaming desk
(14 items)
 
Miner
(15 items)
 
 
CPUMotherboardGraphicsRAM
AMD FX-8350 ASUS Sabertooth 990FX Sapphire 290x Patriot Viper Extreme Division 4 
Hard DriveHard DriveCoolingCooling
OCZ Vertex 460 WD 1TB Blue Koolance 380A EK-FC R9-290X 
OSMonitorKeyboardPower
Windows 8.1 64-bit Monoprice 27" IPS-Glass Pro Panel DUCKY! Antec HCP 850W 
CaseMouse
Hand built wooden desk Logitech G700S 
CPUMotherboardGraphicsGraphics
AMD A10 7850K ASUS A88X-Pro Sapphire 280x Sapphire 280x 
RAMHard DriveHard DriveCooling
Patriot Viper Xtreme Div4 1866mhz 60GB Vertex2 WD Caviar 500AAKS XSPC Rasa 
OSPowerCase
Windows 7 64 bit EVGA 1000W G2 Thermaltake Level 10 GTS 
  hide details  
Reply
My gaming desk
(14 items)
 
Miner
(15 items)
 
 
CPUMotherboardGraphicsRAM
AMD FX-8350 ASUS Sabertooth 990FX Sapphire 290x Patriot Viper Extreme Division 4 
Hard DriveHard DriveCoolingCooling
OCZ Vertex 460 WD 1TB Blue Koolance 380A EK-FC R9-290X 
OSMonitorKeyboardPower
Windows 8.1 64-bit Monoprice 27" IPS-Glass Pro Panel DUCKY! Antec HCP 850W 
CaseMouse
Hand built wooden desk Logitech G700S 
CPUMotherboardGraphicsGraphics
AMD A10 7850K ASUS A88X-Pro Sapphire 280x Sapphire 280x 
RAMHard DriveHard DriveCooling
Patriot Viper Xtreme Div4 1866mhz 60GB Vertex2 WD Caviar 500AAKS XSPC Rasa 
OSPowerCase
Windows 7 64 bit EVGA 1000W G2 Thermaltake Level 10 GTS 
  hide details  
Reply
post #37 of 54
Thread Starter 
Hmm well i ran combofix again and it picked up another rootkit. I didn't run ccleaner though after the first time. I just run combofix again now and ran ccleaner.

Is their a way i can test to be sure all the trojans and viruses are removed?

It appears that whitemsoke translator is one of the big viruses. It keep's installing and telling me i need to register it.
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
Current Rig
(13 items)
 
  
CPUMotherboardGraphicsRAM
Skt 478 P4 2.8 1m cache Gigabyte GA-8IP900 XFX 6600gt AGP Corsair Value Ram 1 gig PC3200 
Hard DriveOptical DriveCoolingOS
Western Digital 40gb IDE LG 22x DVD burner Stock Windows XP Pro 
MonitorKeyboardPowerCase
ViewSonic VA1932wm Logitech G15 Rev 2 Raidmax 450w  Raidmax Tornado 
Mouse
Logitech MX518 
  hide details  
Reply
post #38 of 54
Quote:
Originally Posted by Josh154 View Post
Is their a way i can test to be sure all the trojans and viruses are removed?
You can read all the codes of all the files in the computer...

Otherwise best bet is to make sure all definitions are updated and all that and scan till they all say they don't find any.
My gaming desk
(14 items)
 
Miner
(15 items)
 
 
CPUMotherboardGraphicsRAM
AMD FX-8350 ASUS Sabertooth 990FX Sapphire 290x Patriot Viper Extreme Division 4 
Hard DriveHard DriveCoolingCooling
OCZ Vertex 460 WD 1TB Blue Koolance 380A EK-FC R9-290X 
OSMonitorKeyboardPower
Windows 8.1 64-bit Monoprice 27" IPS-Glass Pro Panel DUCKY! Antec HCP 850W 
CaseMouse
Hand built wooden desk Logitech G700S 
CPUMotherboardGraphicsGraphics
AMD A10 7850K ASUS A88X-Pro Sapphire 280x Sapphire 280x 
RAMHard DriveHard DriveCooling
Patriot Viper Xtreme Div4 1866mhz 60GB Vertex2 WD Caviar 500AAKS XSPC Rasa 
OSPowerCase
Windows 7 64 bit EVGA 1000W G2 Thermaltake Level 10 GTS 
  hide details  
Reply
My gaming desk
(14 items)
 
Miner
(15 items)
 
 
CPUMotherboardGraphicsRAM
AMD FX-8350 ASUS Sabertooth 990FX Sapphire 290x Patriot Viper Extreme Division 4 
Hard DriveHard DriveCoolingCooling
OCZ Vertex 460 WD 1TB Blue Koolance 380A EK-FC R9-290X 
OSMonitorKeyboardPower
Windows 8.1 64-bit Monoprice 27" IPS-Glass Pro Panel DUCKY! Antec HCP 850W 
CaseMouse
Hand built wooden desk Logitech G700S 
CPUMotherboardGraphicsGraphics
AMD A10 7850K ASUS A88X-Pro Sapphire 280x Sapphire 280x 
RAMHard DriveHard DriveCooling
Patriot Viper Xtreme Div4 1866mhz 60GB Vertex2 WD Caviar 500AAKS XSPC Rasa 
OSPowerCase
Windows 7 64 bit EVGA 1000W G2 Thermaltake Level 10 GTS 
  hide details  
Reply
post #39 of 54
lol if it keeps installing and telling you to register, that should kind of be a hint that its sketchy, at least in my opinion. but is things fixed or...?
   
Spare Rigs
(13 items)
 
CPUMotherboardGraphicsRAM
core 2 duo P8700@2.53GHz 2242CTO Intel X4500MHD 4gb 
Hard DriveOptical DriveOSMonitor
fujitsu 320gb dvd rom cd/rw Windows 7 Professional x64 15.4" 
PowerCaseMouse
Panasonic 6-cell + 65W AC adapter lenovo t500 Logitech MX518 
CPUMotherboardGraphicsRAM
Intel i5 760 evga p55 sli MSI gtx460 Hawk corsair dominator 
Hard DriveCoolingOSMonitor
kingston ssdnow hyper 212+ windows 7 professional sam syncmaster 
MonitorKeyboardPowerCase
Acer Razer Blackwidow ocz 650W coolermaster elite 335 
Mouse
Logitech MX518 
  hide details  
Reply
   
Spare Rigs
(13 items)
 
CPUMotherboardGraphicsRAM
core 2 duo P8700@2.53GHz 2242CTO Intel X4500MHD 4gb 
Hard DriveOptical DriveOSMonitor
fujitsu 320gb dvd rom cd/rw Windows 7 Professional x64 15.4" 
PowerCaseMouse
Panasonic 6-cell + 65W AC adapter lenovo t500 Logitech MX518 
CPUMotherboardGraphicsRAM
Intel i5 760 evga p55 sli MSI gtx460 Hawk corsair dominator 
Hard DriveCoolingOSMonitor
kingston ssdnow hyper 212+ windows 7 professional sam syncmaster 
MonitorKeyboardPowerCase
Acer Razer Blackwidow ocz 650W coolermaster elite 335 
Mouse
Logitech MX518 
  hide details  
Reply
post #40 of 54
Run these...

Spybot
ComboFix

If those don't do it, run HiJackThis. It manual, so you need to decide what to erase for yourself or have someone analyze it for you and tell you what to do.
My Desktop
(13 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 750 @ 3.8GHz 1.3v Gigabyte GA-P55A-UD3 PNY GTX465 4GB Corsair Dominator Kit 1600MHz 
Hard DriveOptical DriveOSMonitor
1x 1TB WD Black (Boot) + 2x 2TB WD Green (Storage) Samsung DVD-RW with Lightscribe Windows 7 HP Acer 22" 
KeyboardPowerCaseMouse
Saitek Eclipse Seasonic X650 ABS Canyon 595 Logitech G9x 
  hide details  
Reply
My Desktop
(13 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i5 750 @ 3.8GHz 1.3v Gigabyte GA-P55A-UD3 PNY GTX465 4GB Corsair Dominator Kit 1600MHz 
Hard DriveOptical DriveOSMonitor
1x 1TB WD Black (Boot) + 2x 2TB WD Green (Storage) Samsung DVD-RW with Lightscribe Windows 7 HP Acer 22" 
KeyboardPowerCaseMouse
Saitek Eclipse Seasonic X650 ABS Canyon 595 Logitech G9x 
  hide details  
Reply
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Windows
Overclock.net › Forums › Software, Programming and Coding › Operating Systems › Windows › Help removing trojans please