| | |
Suspect virus - Norton not working?
![]() |
•
•
Join Date: Mar 2008
Posts: 27
Reputation:
Solved Threads: 0
Hi,
I recently discovered a few small changes to my systen:
explorer: tools -> options was missing. re-enabled through a registry edit
taskmgr: file -> new task (run...) is still missing. Cannot find how to re enable.
ive donea bit of reading, and Trend Micro ( here: http://www.trendmicro.com/vinfo/viru...%2EAL&VSect=Sn) shows what i suspect to be a form of the virus ive got. however i can still run regedit through command line. *** also, run has dissapeared from start menun withought me touchign anything, so i suspect it may hav esomethign to do with the virus.
IVe full scanned with norton, latest virus definitions etc, and it doesnt find anything. Can anyoen recomend how I can figure out if it is this virus, and how i can get rid of it completely?
Thanks
I recently discovered a few small changes to my systen:
explorer: tools -> options was missing. re-enabled through a registry edit
taskmgr: file -> new task (run...) is still missing. Cannot find how to re enable.
ive donea bit of reading, and Trend Micro ( here: http://www.trendmicro.com/vinfo/viru...%2EAL&VSect=Sn) shows what i suspect to be a form of the virus ive got. however i can still run regedit through command line. *** also, run has dissapeared from start menun withought me touchign anything, so i suspect it may hav esomethign to do with the virus.
IVe full scanned with norton, latest virus definitions etc, and it doesnt find anything. Can anyoen recomend how I can figure out if it is this virus, and how i can get rid of it completely?
Thanks
Last edited by PC_Nerd; Jun 28th, 2008 at 9:04 pm.
•
•
Join Date: Feb 2008
Posts: 31
Reputation:
Solved Threads: 1
Try an Eset scan; http://www.eset.com/onlinescan/
Did you download Process Explorer as described in the page you linked to?
Unless it's a rootkit you'll see the process in the list.
Something else to try is an anti-spyware scan - this is pretty good; http://www.superantispyware.com/
Did you download Process Explorer as described in the page you linked to?
Unless it's a rootkit you'll see the process in the list.
Something else to try is an anti-spyware scan - this is pretty good; http://www.superantispyware.com/
•
•
Join Date: Mar 2008
Posts: 27
Reputation:
Solved Threads: 0
ok, couldnt get the online scan working - im not using a remotely recent version of IE ( and i hate teh damn thign as well all hail FF)
downloaded the spyware program, ran it, it scanned removed and thenrestarted my cmputer.. howevebr the issue is still there:
Does anyone know why the new task might be missing... and if not through a virus, can it be repared/restored through a registry entry?
Thanks
downloaded the spyware program, ran it, it scanned removed and thenrestarted my cmputer.. howevebr the issue is still there:
Does anyone know why the new task might be missing... and if not through a virus, can it be repared/restored through a registry entry?
Thanks
Norton is notoriously crappy in detection, You've ran superantispyware, (which I heard was good but I've never used it.. I've only used Lavasoft Ad-Aware + my AV) which detected and deleted but you still have the same problem.
Possibilities..
1. It might be a rootkit like brundle said.. I use Sophos anti-rootkit detector, it scans deep and find almost any hidden thing. http://www.sophos.com/products/free-...i-rootkit.html
2. Try running Combofix (I've seen it fix oodles of stuff on mine and others pc's)
3. You might have gotten rid of the baddie but its infected your system restore which means you could keep getting re-infected unless you flush your restore points. (if you run combofix.. I think it does this for you) where did superantispyware say it was deleting the virus from?
4. If your familiar with Hijack this.. run it and see if you notice anything odd. If your not familiar with it.. they have a forum here dedicated to spyware, run it and let them give it a good look.
There is usually more then 1 program needed to completely fix all issues.. I am NO expert but have seen dozens of infected computers that need several steps till they were clean and clear.. Hope this helps!
Possibilities..
1. It might be a rootkit like brundle said.. I use Sophos anti-rootkit detector, it scans deep and find almost any hidden thing. http://www.sophos.com/products/free-...i-rootkit.html
2. Try running Combofix (I've seen it fix oodles of stuff on mine and others pc's)
3. You might have gotten rid of the baddie but its infected your system restore which means you could keep getting re-infected unless you flush your restore points. (if you run combofix.. I think it does this for you) where did superantispyware say it was deleting the virus from?
4. If your familiar with Hijack this.. run it and see if you notice anything odd. If your not familiar with it.. they have a forum here dedicated to spyware, run it and let them give it a good look.
There is usually more then 1 program needed to completely fix all issues.. I am NO expert but have seen dozens of infected computers that need several steps till they were clean and clear.. Hope this helps!
Last edited by dyamond; Jun 30th, 2008 at 12:42 am.
Love all, trust few and do wrong to no one ~ Shakespeare
•
•
Join Date: May 2008
Posts: 541
Reputation:
Solved Threads: 1
Sometimes it takes more than 1 antivirus program to do the trick.
Find the ones you like (AVG, Avast, etc.) and give those a try as well.
Good luck!
Find the ones you like (AVG, Avast, etc.) and give those a try as well.
Good luck!
Self-Help Books - Guides to Improve Your Life
Online Travel Agent Program - Live the life of a Travel Agent
Tutoring - Tutoring Help
Term Papers - Term Paper Help
Online Travel Agent Program - Live the life of a Travel Agent
Tutoring - Tutoring Help
Term Papers - Term Paper Help
![]() |
Other Threads in the Windows NT / 2000 / XP Forum
- Previous Thread: Platte Media
- Next Thread: I keep getting kicked off Bearshare
Views: 716 | Replies: 7
| Thread Tools | Search this Thread |
Tag cloud for Windows NT / 2000 / XP
.net 3.5 3daccelertion 64bit 2007 2010 a.exe activedirectory address alaris android apache application arm auto automatically black blue boot bsod bulletin canonical chinese chkdsk codeplex collaboration combofix computerfreezes cursor deployments desktop desktops domain downloads drive eartlink error explorer fax firefox fonts format freeze gadgets home install intel internet killprocess laptop linux mac microsoft mobile monitor motionle1600 netbooks nvidia open opensource operatingsystems options osinstallationproblem palm partition patch port printer program proxy raid rds reformat remotedesktop remotedesktopconnection repair retrieve screen server. sharepoint sitetositevpn slowperformance sp1 studios ubuntu unreadable update upgrade virtual virus volume vpn vulnerability webos weecam windows windows7 windowsxp xp xpde





