We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Need help from you guys on this.

Hullo :)

A friends PC has ground to a halt after his brother was...looking at some sites...so said I'd have a look at it. There is a definate browser hijack on there, it wont let me even access google, it also wont let me run any programs such as malwarebytes, SS&D or hijack this normally, in safe mode or as admin.. Windows defender told me it was fine :rolleyes:

The only program I can run is avira which I've managed to get installed but crashes at 77%.

In the logs of Avira its found:

TR/crypt.xpack.gen.trojan
TR/TDss.yuz trojan
TR.Redol.C

All I can do is keep quarantining them.

Laptop is running on Vista

The only option I can think of now is moving on to combofix, any other ideas?
Work like you don't need money,
Love like you've never been hurt,
And dance like no one's watching
Save the cheerleader, save the world!
«1

Comments

  • Marty_J
    Marty_J Posts: 6,594 Forumite
    Can you run HijackThis and post a log?
  • iwanttosave_2
    iwanttosave_2 Posts: 34,292 Forumite
    10,000 Posts Combo Breaker
    No, as I said in the OP it wont let me run it.

    It shut down when I first tried installing it :rotfl: It just wont run any programs like that.
    Work like you don't need money,
    Love like you've never been hurt,
    And dance like no one's watching
    Save the cheerleader, save the world!
  • enigma52
    enigma52 Posts: 642 Forumite
    can you do a system restore?
  • -TangleFoot-
    -TangleFoot- Posts: 4,673 Forumite
    Part of the Furniture Combo Breaker
    Have you considered using a live CD preloaded with anti-malware software?
  • iwanttosave_2
    iwanttosave_2 Posts: 34,292 Forumite
    10,000 Posts Combo Breaker
    God I'm trying to balance 2 laptops on my knee here. :rolleyes:

    Tangle, that would be an option but I actually don't have any disks, we are waiting for a delivery. At the moment its a case of dragging and dropping with memory sticks

    I've managed to get on the internet if I manually type in the address, just just Hijack this again and it keeps saying its not installed properly and to redo it and when you try it just reboots.

    I have a resident shield alert popping up which I am alt-F4ing because I'm pretty sure its just the malware faking it.
    Work like you don't need money,
    Love like you've never been hurt,
    And dance like no one's watching
    Save the cheerleader, save the world!
  • -TangleFoot-
    -TangleFoot- Posts: 4,673 Forumite
    Part of the Furniture Combo Breaker
    I actually don't have any disks, we are waiting for a delivery. At the moment its a case of dragging and dropping with memory sticks
    Ever heard of UNetbootin?
  • iwanttosave_2
    iwanttosave_2 Posts: 34,292 Forumite
    10,000 Posts Combo Breaker
    Oooh never heard of that one.

    I even just tried SDFIX in safemode and wont let me execute the bat file.
    Work like you don't need money,
    Love like you've never been hurt,
    And dance like no one's watching
    Save the cheerleader, save the world!
  • Browntoa
    Browntoa Posts: 49,612 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    download combofix

    http://www.bleepingcomputer.com/combofix/how-to-use-combofix

    on the good one , put it on the infected one , try and run it. If it will not run then right click and rename the file from combofix to cleanup , then try again

    no nedd for recovery console like XP , on vista just install and run

    same applies with malwarebytes , rename the exe file to something else
    Ex forum ambassador

    Long term forum member
  • iwanttosave_2
    iwanttosave_2 Posts: 34,292 Forumite
    10,000 Posts Combo Breaker
    Thanks BT, I'm just seeing if the AV can get passed where it got stuck, I've finally managed to uninstall AVG (wouldn't let me before) so hopefully it was just Avira conflicting with it.

    I'll try the combo fix once if I get anywhere with it.
    Work like you don't need money,
    Love like you've never been hurt,
    And dance like no one's watching
    Save the cheerleader, save the world!
  • iwanttosave_2
    iwanttosave_2 Posts: 34,292 Forumite
    10,000 Posts Combo Breaker
    Just to let you know ComboFix worked perfectly, Avira found 2 of them and Combo removed the rest, I can now launch the malware programs which will hopefully pick off the stragglers. It shall be going back with strict instructions that his brother is not allowed within 15 feet of the bloody thing.
    Work like you don't need money,
    Love like you've never been hurt,
    And dance like no one's watching
    Save the cheerleader, save the world!
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352K Banking & Borrowing
  • 253.5K Reduce Debt & Boost Income
  • 454.2K Spending & Discounts
  • 245.1K Work, Benefits & Business
  • 600.7K Mortgages, Homes & Bills
  • 177.4K Life & Family
  • 258.8K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.2K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.