Page 1 of 2 12 LastLast
Results 1 to 10 of 12
Like Tree1Likes

Thread: Need help with virus causing bsod.

  1. #1
    Newbie
    Overall activity: 0%

    Join Date
    Jun 2011
    Location
    Erlanger, KY
    Posts
    3
    Liked
    0 times
    Points
    669

    Angry Need help with virus causing bsod.

    So, I was downloading something from a torrent sight and it came with a keygen. Well the file was legit but the keygen was not. When my antivirus software, (AVG at the time) Stopped and said not to let it access my hard drive, I ignored it and allowed it to anyway. Now I keep getting the blue screen. I have tried using several AV programs to find it but during the scan my computer crashes. I have booted in safe mode with the same problem. I have tried aviara (I think that's what its called) That is a linux program that does not use windows and it found a trojan and renamed it because it was not able to delete it. But when I run my AV software it still crashes. I have even done a system restore to before I got the virus. Still nothing. Anyhelp?

  2. #2
    Experienced User
    Overall activity: 0%

    Join Date
    Sep 2010
    Posts
    848
    Liked
    201 times
    Points
    21,839
    Robrien, try this way..

    Try this first ...

    * Start in SAFE mode and click Start and type in the search bar

    cmd

    Right click the 'command' icon in the upper left of the search menu and click 'Run as Administrator'

    Type the following in the command box ...

    sfc / scannow

    (note the space the between sfc and / scannow)

    and hit Enter / Return.
    When the scan finishes, re-start.

    * Note: On start up (before Windows loads) keep tapping either F5 or F8 (be aware That some manufacturers use F8 for system recovery!) Then use arrow keys to highlight 'Safe Mode' and hit Enter / Return, click on a user account, enter the password (if you do not know it, Probably there is not one so leave it blank) and hit enter / return.
    or
    Backup your Important data to the flash / disk / external drive then ...

    1. Power on the machine.
    2. At the white ACER BIOS screen, hold the "Alt" key and press the "F10" key simultaneously to start Acer eRecovery. The window of opportunity is very small, so this may take A Few attempts.
    3. Once eRecovery has loaded, click "Restore to Factory Default Settings"
    4. Click "OK" to continue.
    5. From here, the eRecovery process Will update all the data on the C: drive and restore a fully functional factory image (approximately 10 minutes).
    6. Once eRecovery has run, press "OK" to reboot the unit.

    *** This Will erase all your unsaved data! ***
    or
    1. Reboot, and press F8.
    2. Select Repair.
    3. Select Reinstall Windows and follow prompts.

    *** This Will erase all your unsaved data! ***

  3. #3
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755
    @ robrien
    welcome
    first, keygens are never legit.
    second: what O.S do you use? (XP/Vista/Windows 7)
    Third.
    Download
    TDSS Killer by Kaspersky from here
    Run it in safe mode.
    Now download MalwareBytes' AntiMalware free from here

    Install it, update it and run a full scan (if you are not able to install it, rename the installer as explorer.exe or taskeng.exe)
    Post the results in your reply. I'll take a look into
    Thanks
    Roger and out

  4. #4
    Newbie
    Overall activity: 0%

    Join Date
    Jun 2011
    Location
    Erlanger, KY
    Posts
    3
    Liked
    0 times
    Points
    669
    Hey thanks leofelix. I am using a HP notebook and it has Windows 7 Ultimate installed on it. Intel Celeron. I am going to do what you said and try it again. I will reply back as soon as I reboot.[COLOR="Silver"]

  5. #5
    The Specialist *
    Overall activity: 76.0%

    Join Date
    May 2010
    Location
    KOLKATA
    Posts
    5,162
    Liked
    731 times
    Points
    47,580
    Follow what leo said above. After that if prob still persist download Hitman pro (Activate if virus found) and attach a HijackThis log here. Do not try to fix any thing !!!!.
    I don't need to know everything, I just need to know where to find it, when I need it.

  6. #6
    Newbie
    Overall activity: 0%

    Join Date
    Jun 2011
    Location
    Erlanger, KY
    Posts
    3
    Liked
    0 times
    Points
    669

    Big Grin

    Quote Originally Posted by solin View Post
    Robrien, try this way..


    or

    or
    Hey thanks solin. I have tried that with the command prompt. It did not work. Also I'm not using an acer

    ---------- Post added 06-20-2011 at 01:26 AM ---------- Previous post was 06-19-2011 at 11:57 PM ----------

    Ok, I did exactaly what you said and after running TDSS Killer. I was for once able to run MalwareBytes for some reason. Thanks again to you Indranil. The results from MalwareBytes are as follows

    Malwarebytes' Anti-Malware 1.51.0.1200
    www.malwarebytes.org

    Database version: 6899

    Windows 6.1.7600
    Internet Explorer 8.0.7600.16385

    6/20/2011 1:08:08 AM
    mbam-log-2011-06-20 (01-08-08).txt

    Scan type: Full scan (C:\|)
    Objects scanned: 270742
    Time elapsed: 50 minute(s), 32 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 1
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 6

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VLC Player (Trojan.FakeVLC) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    c:\program files\VlcPlus\uninstall.exe (Trojan.FakeVLC) -> Quarantined and deleted successfully.
    c:\program files\VlcPlus\Extras\setup.exe (PUP.Zugo) -> Not selected for removal.
    c:\Users\Owner\AppData\Local\Google\Chrome\user data\Default\Cache\f_000039 (Trojan.FakeVLC) -> Quarantined and deleted successfully.
    c:\Users\Owner\AppData\Local\Temp\wzb974\adobe photoshop cs4 keygen [ kentuckykiid ].exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
    c:\Users\Owner\Desktop\adobe photoshop cs4 keygen [ kentuckykiid ].exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
    c:\Users\Owner\downloads\setup.exe (Trojan.FakeVLC) -> Quarantined and deleted successfully.

    Is that all I do or is there extra steps I need to take

  7. #7
    Neo
    Neo is offline
    Experienced User
    Overall activity: 3.0%

    Join Date
    Jun 2010
    Posts
    1,494
    Liked
    90 times
    Points
    8,697
    the log shows that all threats have been neutralized
    Love me , Hate me but you just can't Ignore me

  8. #8
    Verified Member
    Overall activity: 0%

    Join Date
    Aug 2009
    Posts
    265
    Liked
    1 times
    Points
    4,976
    i thnk trojan has been removed but just do one scan with eset online scanner http://www.eset.com/us/online-scanner

  9. #9
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755
    @ robrien
    are you able to boot in normal mode now?
    You could run MBAM because your system was infected by a TDSS/Alureon rootkit that TDSS Killer neutralized apparently.
    You also downloaded FREEWARE programs from P2P /file sharing hosts such as VLC media Player, for sure infected.
    Always download software from legit sources.

    Now download Superantispyware portable (free)to your desktop from here

    http://www.superantispyware.com/portablescanner.html?tag=SAS_HOMEPAGE

    before scanning your system clean your browser cache with CCleaner portable freeware
    http://www.piriform.com/ccleaner/builds

    post the log in your reply
    Thanks

  10. #10
    Experienced User
    Overall activity: 0%

    Join Date
    Oct 2009
    Location
    Sri Lanka
    Posts
    331
    Liked
    41 times
    Points
    36,121
    Thank you for this information. Very helpful

 

 
Page 1 of 2 12 LastLast

Similar Threads

  1. McAfee upgrade causing blue screen
    By leofelix in forum Spyware/Viruses
    Replies: 12
    Last Post: 09-10-2010, 05:18 AM
  2. OS causing bad sectors in hdd?
    By voltron in forum Hardware
    Replies: 7
    Last Post: 07-29-2010, 09:54 AM
  3. New MS patch Causing BSoD due to rootkit
    By jelson in forum Spyware/Viruses
    Replies: 12
    Last Post: 02-16-2010, 09:35 PM
  4. Replies: 18
    Last Post: 04-20-2009, 08:12 AM
  5. Hard-Disk causing me a Blue Screen
    By joaca in forum Hardware
    Replies: 5
    Last Post: 07-19-2008, 08:32 PM

Tags for this Thread

All times are GMT +8. The time now is 09:48 AM.