Powered by Invision Power Board

 
    Reply to this topicStart new topicStart Poll

> **** **** ****, SERIOUS ****, TROJAN IN OTHER COMPUTER
France
Ice_Hedgehog22
Posted: May 22 2006, 10:44 PM
Quote Post


Standard Member
[*][*][*][*][*]
[*][*][*][*][*]


Group Icon
Group: Banned
Posts: 23481
Member No.: 23
Joined: 13-October 03

Status: (71582624m) [XX]


Okay, basically, my brother downloaded something, ran it, and it installed several programs. Yazzle Sudoku, some fake spyware protection program, and that's it. I managed to quickly get a scan of it, and it is running several files off an exe that I can't delete due to it already being ran, and it's unable to close no matter how much I try to close it. I was lucky enough to know that he got it as soon as it happened, and I quickly unplugged the internet. I have no clue how I can end the process and delete the trojan and get the computer to run normally again.
PMEmail Poster
Top
Unspecified
Draco Icebane
Posted: May 22 2006, 10:47 PM
Quote Post


Standard Member
[*][*][*][*][*]


Group Icon
Group: Banned
Posts: 52997
Member No.: 10
Joined: 13-October 03

Status: (71582612m) [XX]


EDIT: sry wrong topic

This post has been edited by Draco Icebane on May 22 2006, 10:47 PM
PM
Top
United States
Xgoff
Posted: May 22 2006, 10:55 PM
Quote Post


<):|
[*][*][*][*][*]
[*][*]

Group Icon
Group: Members
Posts: 52341
Member No.: 24
Joined: 13-October 03

Status: (0d) [--]


there might be a way to remove it while in safe mode


--------------------

This post may contain original research or unverified claims.
Please disregard the above information and contact an administrator.

DISCLAIMER: by sending me (xgoff) a private message, you agree to the directives and their terms specified henceforth:
DIRECTIVE 1 (APPLE): i may or may not reply promptly or at all; and there are no guarantees to the usefulness of the reply. i may not acknowledge whether i have even received your private message
DIRECTIVE 2 (CHILE CON CARNE): as per my view, "private" applies only to the initial transaction, and the material of your message may or may not be made public at my discretion; as this will more than likely be a post in the CCC or IRC, you may not be able to view it
DIRECTIVE 3 (FEATHER DUSTER): you must address me (xgoff) as "Sir Master Xgofficus his Highest and Most Awesome the Third"; failure to comply with this term may invoke one or both of the above directives, and i will leave a burning bag of **** on your doorstep
DIRECTIVE 4 (BOOTSTRAP): if you have read this disclaimer, please private message me promptly, in compliance with the above terms, so i can ensure you are capable of following directions you idiot
this concludes the test of the emergency disclaimer system, your scheduled programming will now continue. satisfaction guaranteed, and 100% cash back available under certain circumstances; restrictions may or may not apply within your place of residence
NOTICE: these directives and their terms may change at any time, without notice; as a private message transaction to myself assumes an understanding and full compliance of the above, you should ensure you are fully aware of the above terms at any point before sending a private message; any message received is assumed to have been sent in compliance with the above

QUOTE
(5:25:58 PM) Mikau: xgoff
(5:26:00 PM) Mikau: guess what
(5:26:04 PM) Xgoff: chicken butt
(5:26:09 PM) Mikau: **** you
PMEmail PosterUsers WebsiteAOLMSN
Top
France
Ice_Hedgehog22
Posted: May 22 2006, 10:59 PM
Quote Post


Standard Member
[*][*][*][*][*]
[*][*][*][*][*]


Group Icon
Group: Banned
Posts: 23481
Member No.: 23
Joined: 13-October 03

Status: (71582624m) [XX]


QUOTE (Xgoff @ May 22 2006, 10:55 PM)
there might be a way to remove it while in safe mode

Not too sure on that. From what I've read on Spyfalcon, it still runs perfectly in safe mode.
PMEmail Poster
Top
Unspecified
Trasher
Posted: May 22 2006, 11:10 PM
Quote Post



[*][*][*][*][*]


Group Icon
Group: Members
Posts: 8105
Member No.: 54
Joined: 14-October 03

Status: (0d) [--]


1.) Find the program HiJackThis.
2.) Find the autostart entry for the undeletable program.
3.) Remove the entry and restart the PC, preferably in Safe Mode.
4.) Perform a heavy virus and spyware scan.
5.) Physically harm your brother.
PMEmail PosterAOLMSN
Top
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

  Topic Options Topic Options Reply to this topicStart new topicStart Poll

 




[ Script Execution time: 0.0482 ]   [ 14 queries used ]   [ GZIP Enabled ]   [ Server Load: 1.02 ]