| | |
windows police pro- giant problem
Thread Solved |
•
•
•
•
F2 - REG:system.ini: Shell=Explorer.exe rundll32.exe tapi.nfo beforeglav
F2 - REG:system.ini: UserInit=C:\WINDOWS.0\system32\userinit.exe,C:\WINDOWS.0\system32\sdra64.exe,
This thing is far worse than Windows Police Pro - If you do any sort of online banking, there is a good chance your info has been compromised. Definitely check your banks, credit cards, etc. and change any passwords.
In cases such as this, I generally recommend a re-format because, even if we are able to clean the machine, you'll never be able to trust it......
PP
Last edited by PhilliePhan; Aug 31st, 2009 at 10:55 pm.
In some sort of crude sense, which no vulgarity, no humor, no overstatement can quite extinguish, the physicists have known sin; and this is a knowledge which they cannot lose.
~ J. Robert Oppenheimer
ASAP
~ J. Robert Oppenheimer
ASAP
Happy to help
I may have been a bit premature in calling for you to format - I am finding that these infections tend to have all sorts of rootkit components.
If you like, we can try to clean it. But I still stand by my last post and the severity of the infection shown.
Be very careful putting things on another compy - I'm not sure that is a good idea, given the nature of this baddie.
Are you able to get combofix to run as per the linky below?
http://www.bleepingcomputer.com/comb...o-use-combofix
Try that and post a log, if possible.
PP

I may have been a bit premature in calling for you to format - I am finding that these infections tend to have all sorts of rootkit components.
If you like, we can try to clean it. But I still stand by my last post and the severity of the infection shown.
Be very careful putting things on another compy - I'm not sure that is a good idea, given the nature of this baddie.
Are you able to get combofix to run as per the linky below?
http://www.bleepingcomputer.com/comb...o-use-combofix
Try that and post a log, if possible.
PP
In some sort of crude sense, which no vulgarity, no humor, no overstatement can quite extinguish, the physicists have known sin; and this is a knowledge which they cannot lose.
~ J. Robert Oppenheimer
ASAP
~ J. Robert Oppenheimer
ASAP
•
•
Join Date: Aug 2009
Posts: 23
Reputation:
Solved Threads: 0
I already formatted(I pretty much needed to already, the computer was cluttered, blue screening very often, etc.) I backed up everything important, and this time I'm gonna keep everything secure. Right now, I'm just trying to set up my internet access(on my PC) since it seems to have been removed or something(I'm gonna go seek help on the appropriate board/forum)
All things considered, that is probably for the best because the rootkit on your machine is one of the nastier ones - I am not seeing it on the other machines with similar problems, so you very well may have picked that up some time ago.
Best Luck
PP
Best Luck

PP
In some sort of crude sense, which no vulgarity, no humor, no overstatement can quite extinguish, the physicists have known sin; and this is a knowledge which they cannot lose.
~ J. Robert Oppenheimer
ASAP
~ J. Robert Oppenheimer
ASAP
![]() |
Similar Threads
- Need Help - Windows Police Pro?? Totally Locked Up. (Viruses, Spyware and other Nasties)
- Problem with config.nt on Windows 2000 Pro (Windows NT / 2000 / XP)
Other Threads in the Viruses, Spyware and other Nasties Forum
- Previous Thread: Windows Police Pro! All programs LOCKED
- Next Thread: My Computer is killing me! full of spyware and viruses
| Thread Tools | Search this Thread |
adware anti-malware anti-virussitesaccessissue antivirus apple attack audio backtoschoolspeech bar blackhat botnet botnets china commercial commercials conficker connect control crosssitescripting cyber cybercrime cyberwarfare ddos domains e-mafia email europe exam facebook fake fancheckvirus gaming gtaiv gumblar halloween hijack internet iphone kaspersky legal logfiles mail malware mcafee mega-d messagelabs microsoft mobile msn nazi news obama onlinethreats paedophile panel parents phishing police policeprovirusmba-mblockedinternetaccess president privacy pro problem redirect redirecting reliability report research risk rogueantivirus samhain sans scareware school search security seopoisoning sites software spam spyware spywareexternalwindows7adminstratortrojans sqlinjection symantec system teen translate trojan unabletoaccessanti-virussites unwanted update usa virus viruses vista war warning windows worm zeroday





