What happened to the Messenger Plus! forums on msghelp.net?
Shoutbox » MsgHelp Archive » Skype & Technology » Tech Talk » Help with virus.spyware

Help with virus.spyware
Author: Message:
user35870
Disabled Account


Posts: 858
Joined: Aug 2004
Status: Away
O.P. Help with virus.spyware
help i haven't been able to removed a virus that keeps on adding its self to the process menu

what it does is:
it closes microsoft anispware and mcafee scirty centre
won't let me open the control+alt+delte menu
and if i type anivirus in on google it closes the brower
and it won't let me open regedit but lets me open msconfig

some of the process names are : msmbw.exe, formatsys .exe

please help






03-09-2005 04:10 PM
Profile PM Find Quote Report
Mike
Elite Member
*****

Avatar
Meet the Spam Family!

Posts: 2795
Reputation: 48
31 / Male / Flag
Joined: Mar 2003
Status: Online
RE: Help with virus.spyware
Try booting in Safe Mode and then run anti-virus and anti-spyware programs.

To do this:

1) Restart your computer.
2) Before the screen with the windows logo and a progress bar appears, press F8.
3) Choose "Safe Mode" and press enter
YouTube closed-captions ripper (also allows you to download videos!)
03-09-2005 04:14 PM
Profile E-Mail PM Web Find Quote Report
user27089
Disabled Account


Posts: 6321
Joined: Nov 2003
Status: Away
RE: Help with virus.spyware
sounds like w32.pinfi to me, clear your hosts file of everything apart from the help information and local host (and the ip), and you should be able to access the sites that you want, this worked for me. Then download avg antivirus, and run that, deleting all instances pretty much, then re-download all of the drivers that you need, its a lot of hastle, but theres no way of healing it, it drives itself into the *.exe's and you can't do anything about it other than delete it...

:'(
03-09-2005 04:41 PM
Profile PM Find Quote Report
user13774
Disabled Account


Posts: 1119
Joined: Apr 2003
Status: Away
RE: Help with virus.spyware
It's much easier. You got the new Serflog.A (a.k.a. W32/Crog.worm) virus (formatsys.exe and msmbw.exe are part of it).

Download the removal tool by Symantec:
http://securityresponse.symantec.com/avcenter/FixSflog.exe
MIRROR (if the virus disabled that site): http://www.virushelp.nl/download/fixsflog.exe

Edit:
I'm reading the symantec site about the virus and it's pretty nasty :O. It does exactly the things you said: It terminates all sorts of anti virus and anti spyware programs and processes and it adds serveral file to your hosts file :O. More info

This post was edited on 03-09-2005 at 05:01 PM by user13774.
03-09-2005 04:54 PM
Profile PM Find Quote Report
absorbation
Elite Member
*****

Avatar

Posts: 3636
Reputation: 81
– / Male / Flag
Joined: Feb 2005
RE: Help with virus.spyware
Remember to rename the removal tool because the virus may stop it working.
03-09-2005 05:41 PM
Profile PM Find Quote Report
user13774
Disabled Account


Posts: 1119
Joined: Apr 2003
Status: Away
RE: Help with virus.spyware
No Absorbation :P.

Don't worry about that. How can the virus maker know how symantec is gonna call the removaltool BEFORE it is even released... :wink:
03-10-2005 07:27 AM
Profile PM Find Quote Report
absorbation
Elite Member
*****

Avatar

Posts: 3636
Reputation: 81
– / Male / Flag
Joined: Feb 2005
RE: Help with virus.spyware
It does seem silly but some buropia varients have stopped the tool from working proberly. I read it on another post. Anywayz this anit bropia so ur probably right. :D
03-10-2005 07:51 PM
Profile PM Find Quote Report
user35870
Disabled Account


Posts: 858
Joined: Aug 2004
Status: Away
O.P. RE: Help with virus.spyware
thanks everyone one for the help but i just reformatted every thing was messed up :@ but i had some problems with the restore disks but all working good now
03-12-2005 07:18 PM
Profile PM Find Quote Report
« Next Oldest Return to Top Next Newest »


Threaded Mode | Linear Mode
View a Printable Version
Send this Thread to a Friend
Subscribe | Add to Favorites
Rate This Thread:

Forum Jump:

Forum Rules:
You cannot post new threads
You cannot post replies
You cannot post attachments
You can edit your posts
HTML is Off
myCode is On
Smilies are On
[img] Code is On