| | |
Suspect virus - Norton not working?
![]() |
•
•
Join Date: Mar 2008
Posts: 27
Reputation:
Solved Threads: 0
Hi,
I recently discovered a few small changes to my systen:
explorer: tools -> options was missing. re-enabled through a registry edit
taskmgr: file -> new task (run...) is still missing. Cannot find how to re enable.
ive donea bit of reading, and Trend Micro ( here: http://www.trendmicro.com/vinfo/viru...%2EAL&VSect=Sn) shows what i suspect to be a form of the virus ive got. however i can still run regedit through command line. *** also, run has dissapeared from start menun withought me touchign anything, so i suspect it may hav esomethign to do with the virus.
IVe full scanned with norton, latest virus definitions etc, and it doesnt find anything. Can anyoen recomend how I can figure out if it is this virus, and how i can get rid of it completely?
Thanks
I recently discovered a few small changes to my systen:
explorer: tools -> options was missing. re-enabled through a registry edit
taskmgr: file -> new task (run...) is still missing. Cannot find how to re enable.
ive donea bit of reading, and Trend Micro ( here: http://www.trendmicro.com/vinfo/viru...%2EAL&VSect=Sn) shows what i suspect to be a form of the virus ive got. however i can still run regedit through command line. *** also, run has dissapeared from start menun withought me touchign anything, so i suspect it may hav esomethign to do with the virus.
IVe full scanned with norton, latest virus definitions etc, and it doesnt find anything. Can anyoen recomend how I can figure out if it is this virus, and how i can get rid of it completely?
Thanks
Last edited by PC_Nerd; Jun 28th, 2008 at 9:04 pm.
•
•
Join Date: Feb 2008
Posts: 31
Reputation:
Solved Threads: 0
Try an Eset scan; http://www.eset.com/onlinescan/
Did you download Process Explorer as described in the page you linked to?
Unless it's a rootkit you'll see the process in the list.
Something else to try is an anti-spyware scan - this is pretty good; http://www.superantispyware.com/
Did you download Process Explorer as described in the page you linked to?
Unless it's a rootkit you'll see the process in the list.
Something else to try is an anti-spyware scan - this is pretty good; http://www.superantispyware.com/
•
•
Join Date: Mar 2008
Posts: 27
Reputation:
Solved Threads: 0
ok, couldnt get the online scan working - im not using a remotely recent version of IE ( and i hate teh damn thign as well all hail FF)
downloaded the spyware program, ran it, it scanned removed and thenrestarted my cmputer.. howevebr the issue is still there:
Does anyone know why the new task might be missing... and if not through a virus, can it be repared/restored through a registry entry?
Thanks
downloaded the spyware program, ran it, it scanned removed and thenrestarted my cmputer.. howevebr the issue is still there:
Does anyone know why the new task might be missing... and if not through a virus, can it be repared/restored through a registry entry?
Thanks
Norton is notoriously crappy in detection, You've ran superantispyware, (which I heard was good but I've never used it.. I've only used Lavasoft Ad-Aware + my AV) which detected and deleted but you still have the same problem.
Possibilities..
1. It might be a rootkit like brundle said.. I use Sophos anti-rootkit detector, it scans deep and find almost any hidden thing. http://www.sophos.com/products/free-...i-rootkit.html
2. Try running Combofix (I've seen it fix oodles of stuff on mine and others pc's)
3. You might have gotten rid of the baddie but its infected your system restore which means you could keep getting re-infected unless you flush your restore points. (if you run combofix.. I think it does this for you) where did superantispyware say it was deleting the virus from?
4. If your familiar with Hijack this.. run it and see if you notice anything odd. If your not familiar with it.. they have a forum here dedicated to spyware, run it and let them give it a good look.
There is usually more then 1 program needed to completely fix all issues.. I am NO expert but have seen dozens of infected computers that need several steps till they were clean and clear.. Hope this helps!
Possibilities..
1. It might be a rootkit like brundle said.. I use Sophos anti-rootkit detector, it scans deep and find almost any hidden thing. http://www.sophos.com/products/free-...i-rootkit.html
2. Try running Combofix (I've seen it fix oodles of stuff on mine and others pc's)
3. You might have gotten rid of the baddie but its infected your system restore which means you could keep getting re-infected unless you flush your restore points. (if you run combofix.. I think it does this for you) where did superantispyware say it was deleting the virus from?
4. If your familiar with Hijack this.. run it and see if you notice anything odd. If your not familiar with it.. they have a forum here dedicated to spyware, run it and let them give it a good look.
There is usually more then 1 program needed to completely fix all issues.. I am NO expert but have seen dozens of infected computers that need several steps till they were clean and clear.. Hope this helps!
Last edited by dyamond; Jun 30th, 2008 at 12:42 am.
Love all, trust few and do wrong to no one ~ Shakespeare
•
•
Join Date: May 2008
Posts: 541
Reputation:
Solved Threads: 1
Sometimes it takes more than 1 antivirus program to do the trick.
Find the ones you like (AVG, Avast, etc.) and give those a try as well.
Good luck!
Find the ones you like (AVG, Avast, etc.) and give those a try as well.
Good luck!
Self-Help Books - Guides to Improve Your Life
Online Travel Agent Program - Live the life of a Travel Agent
Tutoring - Tutoring Help
Term Papers - Term Paper Help
Online Travel Agent Program - Live the life of a Travel Agent
Tutoring - Tutoring Help
Term Papers - Term Paper Help
![]() |
Other Threads in the Windows NT / 2000 / XP Forum
- Previous Thread: Platte Media
- Next Thread: I keep getting kicked off Bearshare
| Thread Tools | Search this Thread |
.net 3.5 3daccelertion 64bit 2010 a.exe activedirectory address alaris android application appstore audio black blue bsod bulletin canonical chinese chkdsk codeplex combofix cursor deployment deployments desktop domain drive dual eartlink error explorer fax fonts format framework freeze gadgets hardware home internet interoperability laptop laptops latitude lcd linux mac markshuttleworth memory microsoft minimalizes mobile monitor motionle1600 netbooks open opensource operatingsystems options oracle osinstallationproblem outlook palm partition printer program proxy raid rds reformat remotedesktop replacingraiddrive retail retrieve rootkit screen security server. sharepoint sitetositevpn slowperformance sp3 spyware studios technology ubuntu uninstall update upgrade videodrivers virtual virus vpn window windows windows7 windowsxp xp xpde





