954,229 Members — Technology Publication meets Social Media
Username:
Password:
Lost login information?
Have something to say? Contribute New Article Reply to this Article

windows police pro- giant problem

Long story short, i somehow managed to get the windows police pro virus, probably from visiting some website(I haven't downloaded anything recently)

Here is where it gets problematic: I can only run internet explorer, can't run command prompt, (I can run command.com out of the run menu though), I cant boot into safemode(of any kind, networking, command prompt, etc), I cant start msconfig, nor can i run MBAM or spyware doctor.

Also, After reading a similar thread, I can't find windowspolicepro.exe in my process list. I did however find svchasts.exe and ended it.

I can't find a solution and it seems I'm screwed at the moment, anyone know how I should proceed or can help?

I was reading another thread and someone suggested doing a bunch of commands for a task list

Here it is


Image Name PID Session Name Session# Mem Usage
========================= ====== ================ ======== ============
System Idle Process 0 0 16 K
System 4 0 780 K
csrss.exe 696 0 4,104 K
winlogon.exe 720 0 1,540 K
services.exe 764 0 4,676 K
lsass.exe 776 0 2,484 K
svchost.exe 964 0 9,180 K
svchost.exe 1052 0 4,752 K
svchost.exe 1160 0 19,024 K
svchost.exe 1200 0 4,172 K
svchost.exe 1340 0 3,924 K
spoolsv.exe 1528 0 5,128 K
explorer.exe 1804 0 12,596 K
ctfmon.exe 1824 0 5,300 K
svchost.exe 300 0 4,288 K
mbamservice.exe 396 0 3,520 K
svchost.exe 432 0 5,000 K
ZuneBusEnum.exe 948 0 5,080 K
svchost.exe 492 0 35,416 K
alg.exe 480 0 5,000 K
iexplore.exe 668 0 65,308 K
svchost.exe 2148 0 4,264 K
svchost.exe 2244 0 6,528 K
firefox.exe 2544 0 41,072 K
rundll32.exe 1396 0 4,036 K
ntvdm.exe 1012 0 4,684 K
cmd.exe 2468 0 4,148 K
tasklist.exe 2664 0 5,660 K
wmiprvse.exe 2620 0 7,228 K

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 

Hi, what is it we are dealing with here... Desktop or notebook!!

Quick_Silver69
Junior Poster in Training
60 posts since Aug 2009
Reputation Points: 19
Solved Threads: 2
 
Hi, what is it we are dealing with here... Desktop or notebook!!


Dell XPS 400 desktop PC running windows XP with some slight mods(another vid card and 2gb ram)

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 

Because after checking in all these stuff what i can suggest is.. you have to Restore the computer back to the factory default settings...

Quick_Silver69
Junior Poster in Training
60 posts since Aug 2009
Reputation Points: 19
Solved Threads: 2
 
Because after checking in all these stuff what i can suggest is.. you have to Restore the computer back to the factory default settings...


Is this like reformating where it deletes all the files, or is it a settings change, and how do I go about doing it?

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 
Is this like reformating where it deletes all the files, or is it a settings change, and how do I go about doing it?


That is the "Last Resort," and certainly not called for at this time.
You will lose any data that is not backed up......

-- Are you able to access System Restore?

PP :)

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

Sorry to say that but yes, it will reformate everything & the destop will be like a brand new one...

The process is:

Restart your computer. As its restarting hold down CTRL + F11 (before the XP screen). Your computer will make a lot of beeping sounds and a new screen will pop up. Just follow directions and youre computer will be as good as new (literally, with all the bloatware and stuff).

Quick_Silver69
Junior Poster in Training
60 posts since Aug 2009
Reputation Points: 19
Solved Threads: 2
 

As noted by PhilliePhan, a reformat is absolutely not required at this time. If , after cleaning up you still have a problem, then maybe.

crunchie
Most Valuable Poster
Moderator
20,095 posts since Feb 2004
Reputation Points: 1,142
Solved Threads: 985
 

That is the "Last Resort," and certainly not called for at this time.
You will lose any data that is not backed up......

-- Are you able to access System Restore?

PP :)



Nope, a command prompt window pops up and closes in under 2 seconds. Probably blocked by this stupid virus

I'm hoping I don't have to delete all my stuff, I have a truckload of music/games that I never backed up

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 

-- Open a command prompt with command.com

Type %systemroot%\system32\restore\rstrui.exe ENTER

What happens?

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

But i've seen these kind of issue before & there the system restore doesn't work... that's why gave the option for system reformate...

Quick_Silver69
Junior Poster in Training
60 posts since Aug 2009
Reputation Points: 19
Solved Threads: 2
 
But i've seen these kind of issue before & there the system restore doesn't work... that's why gave the option for system reformate...


Let us try a few options before resorting to this.

BTW - did you ask the poster if they have a copy of Windows or a recovery partition?

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

-- Open a command prompt with command.com

Type %systemroot%\system32\restore\rstrui.exe ENTER

What happens?



System Restore pops up. Should I restore my computer to an earlier time?

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 
System Restore pops up. Should I restore my computer to an earlier time?


YES - Preferably to a point long before your issues started.

Then, see if you can Update and Run MBA-M. Have it remove what it finds and post back here with the scanlog.

-- Let us know if you run into problems.

PP :)

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

YES - Preferably to a point long before your issues started.

Then, see if you can Update and Run MBA-M. Have it remove what it finds and post back here with the scanlog.

-- Let us know if you run into problems.

PP :)




No bolded days on the calendar, and no restore points available:(

I also have no windows CD on hand, one of my friends has it. Recovery partition as in another HD? Don't have it

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 

No bolded days on the calendar, and no restore points available:(

I also have no windows CD on hand, one of my friends has it. Recovery partition as in another HD? Don't have it



I was afraid of that....

You have MBA-M installed, right? Do you know how to run it via command prompt?

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

I was afraid of that....

You have MBA-M installed, right? Do you know how to run it via command prompt?



malware bytes anti malware? Yes, and no I don't know how to run it in command prompt

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 

So what happened!! Did the system restore worked!!

Quick_Silver69
Junior Poster in Training
60 posts since Aug 2009
Reputation Points: 19
Solved Threads: 2
 
So what happened!! Did the system restore worked!!



Sadly, no, I'm looking around on how to run MB using the command.com prompt

Atecks
Newbie Poster
23 posts since Aug 2009
Reputation Points: 10
Solved Threads: 0
 
malware bytes anti malware? Yes, and no I don't know how to run it in command prompt


Is it installed in Program Files (it should be)?

Is your system driveC:\ or different?

PhilliePhan
Central Scrutinizer
Moderator
1,942 posts since Dec 2006
Reputation Points: 184
Solved Threads: 110
 

This question has already been solved

Post: Markdown Syntax: Formatting Help
You