943,737 Members | Top Members by Rank

Ad:
You are currently viewing page 5 of this multi-page discussion thread; Jump to the first page
Aug 31st, 2009
1

Re: windows police pro- giant problem

Click to Expand / Collapse  Quote originally posted by Atecks ...
F2 - REG:system.ini: Shell=Explorer.exe rundll32.exe tapi.nfo beforeglav
F2 - REG:system.ini: UserInit=C:\WINDOWS.0\system32\userinit.exe,C:\WINDOWS.0\system32\sdra64.exe,
So sorry to be the bearer of bad news, but you have a nasty backdoor trojan with rootkit components.
This thing is far worse than Windows Police Pro - If you do any sort of online banking, there is a good chance your info has been compromised. Definitely check your banks, credit cards, etc. and change any passwords.

In cases such as this, I generally recommend a re-format because, even if we are able to clean the machine, you'll never be able to trust it......

PP
Last edited by PhilliePhan; Aug 31st, 2009 at 10:55 pm.
Moderator
Reputation Points: 169
Solved Threads: 106
Central Scrutinizer
PhilliePhan is offline Offline
1,576 posts
since Dec 2006
Sep 1st, 2009
0

Re: windows police pro- giant problem

well, that blows; I have a bunch of sensitive info as well as a bunch of online transactions, however everything seems the same

I'm going to change everything on another computer, and then re-format this one whenever I find the disk

Thanks alot for your help, and everyone else that helped too
Reputation Points: 10
Solved Threads: 0
Newbie Poster
Atecks is offline Offline
23 posts
since Aug 2009
Sep 1st, 2009
0

Re: windows police pro- giant problem

Click to Expand / Collapse  Quote originally posted by Atecks ...
Thanks alot for your help, and everyone else that helped too
Happy to help

I may have been a bit premature in calling for you to format - I am finding that these infections tend to have all sorts of rootkit components.

If you like, we can try to clean it. But I still stand by my last post and the severity of the infection shown.

Be very careful putting things on another compy
- I'm not sure that is a good idea, given the nature of this baddie.


Are you able to get combofix to run as per the linky below?
http://www.bleepingcomputer.com/comb...o-use-combofix

Try that and post a log, if possible.

PP
Moderator
Reputation Points: 169
Solved Threads: 106
Central Scrutinizer
PhilliePhan is offline Offline
1,576 posts
since Dec 2006
Sep 1st, 2009
0

Re: windows police pro- giant problem

I already formatted(I pretty much needed to already, the computer was cluttered, blue screening very often, etc.) I backed up everything important, and this time I'm gonna keep everything secure. Right now, I'm just trying to set up my internet access(on my PC) since it seems to have been removed or something(I'm gonna go seek help on the appropriate board/forum)
Reputation Points: 10
Solved Threads: 0
Newbie Poster
Atecks is offline Offline
23 posts
since Aug 2009
Sep 1st, 2009
0

Re: windows police pro- giant problem

All things considered, that is probably for the best because the rootkit on your machine is one of the nastier ones - I am not seeing it on the other machines with similar problems, so you very well may have picked that up some time ago.

Best Luck
PP
Moderator
Reputation Points: 169
Solved Threads: 106
Central Scrutinizer
PhilliePhan is offline Offline
1,576 posts
since Dec 2006

This thread is solved

Either the thread starter or a moderator has marked this thread as solved. You can most likely trust the responses and answers given. There is most likely no reason for any further responses to be posted here. If you have a related question, please start a new thread in this forum instead.

This thread is more than three months old

No one has posted to this discussion for at least three months. Please let old threads die and do not reply to them unless you feel you have something new and valuable to contribute that absolutely must be added to make the discussion complete. Otherwise, please start a new thread in this forum instead.
Message:
Previous Thread in Viruses, Spyware and other Nasties Forum Timeline: Windows Police Pro! All programs LOCKED
Next Thread in Viruses, Spyware and other Nasties Forum Timeline: My Computer is killing me! full of spyware and viruses





About Us | Contact Us | Advertise | Acceptable Use Policy
Forum Index | Build Custom RSS Feed


Follow us on Twitter


© 2011 DaniWeb® LLC