HALP! VIRUSES!

If you touch your software enough does it become hardware?

Moderator: Forum Moderators

Killavodka
Cheese Lord
Cheese Lord
Posts: 804
Joined: June 13th, 2006, 22:09
Contact:

HALP! VIRUSES!

Post by Killavodka »

c:\Windows\sysWow64\y4RHB.exe is eating 50% of my CPU. Last night virus scanner did fack all, today it noticed the file and sent it for anal-ysis along with my msconfig. Been trying to find out how to annihilate it for ages now thought I would see if you guys could help. Assuming that its a fairly new threat given that my virus scanner hasn't annihilated it for me yet.

What I've tried so far:

Disabling all non-microsoft services/startup programs in msconfig, couldn't see anything odd there.
Managed to delete the .exe in safe mode but as soon as i boot normally it reappears.
Tried Windows malicious software removal tool, didn't do anything.
Virus scanned with Bitdefender and a few other online ones.
Looked up the exe in registry, nothing there.

Please help, will give sexual services on demand! Thanks
Roman Totale
Robotic Bumlord
Robotic Bumlord
Posts: 8475
Joined: October 24th, 2004, 0:27
Location: Manchester, UK

Post by Roman Totale »

I believe Kaspersky[?] is a good scanner, as it will also scan your existing anti-virus.


That said, I could be talking complete and utter horse shit.
Shada
Shambler
Shambler
Posts: 645
Joined: October 24th, 2007, 20:55
Location: Manchester

Post by Shada »

format and start over
friznit
Heavy
Heavy
Posts: 5147
Joined: October 3rd, 2005, 21:51
Location: South of England
Contact:

Post by friznit »

Form an ongoing relationship with it and live together in harmony, sharing your hardware safe in the knowledge that your CPU will never again feel under used.
Dr. kitteny berk
Morbo
Morbo
Posts: 19676
Joined: December 10th, 2004, 21:53
Contact:

Post by Dr. kitteny berk »

*point*

*laugh*
Killavodka
Cheese Lord
Cheese Lord
Posts: 804
Joined: June 13th, 2006, 22:09
Contact:

Post by Killavodka »

Trying Kaspersky now, hopefully won't get to format times...
deject
Berk
Berk
Posts: 10353
Joined: December 7th, 2004, 17:02
Location: Oklahoma City, OK, USA
Contact:

Post by deject »

We have great success using Malwarebytes to remove viruses and such at work. We use it at least one computer a day. I'd give it a try.
Stoat
Site Admin
Site Admin
Posts: 3291
Joined: October 8th, 2004, 15:48
Location: Sheffield, UK
Contact:

Post by Stoat »

AutoRuns will tell you what's running at startup and Process Explorer has a Verify function for running processes.
Dog Pants
Site Moderator
Site Moderator
Posts: 21653
Joined: April 29th, 2005, 13:39
Location: Surrey, UK
Contact:

Post by Dog Pants »

Sounds like it's pretty well hidden. In theory it should be as simple as deleting the files and registry settings, but unless you know what you're looking for you're unlikely to root everything out. A quick google doesn't reveal much on what it might be, but if you can identify it you stand a decent chance of being able to dig it out.

Try McAfee's Stinger. Might find something, might not.

What AV were you using, out of interest?
Killavodka
Cheese Lord
Cheese Lord
Posts: 804
Joined: June 13th, 2006, 22:09
Contact:

Post by Killavodka »

Was using Bitdefender which seemed to be pretty good. Just formatted again only took an hour and I didn't have any data to loose so all is well again.
cheeseandham
Shambler In Drag
Shambler In Drag
Posts: 780
Joined: March 16th, 2007, 20:22
Location: on the sofa
Contact:

Post by cheeseandham »

MBAM and/or Hitman Pro can usually do the job
Guybrush
Unicorn
Unicorn
Posts: 323
Joined: July 22nd, 2006, 14:58
Contact:

Post by Guybrush »

Grimmie
Master of Soviet Propaganda
Master of Soviet Propaganda
Posts: 7672
Joined: February 5th, 2005, 19:00
Location: Birming-humm, England
Contact:

Post by Grimmie »

Thread resurrect fail, guys :p
Guybrush
Unicorn
Unicorn
Posts: 323
Joined: July 22nd, 2006, 14:58
Contact:

Post by Guybrush »

lol - never noticed when it started. I'll go and stand in the corner facing the wall :P
Baliame
Tremors Worm
Tremors Worm
Posts: 3491
Joined: October 13th, 2007, 23:43
Location: Hungary

Post by Baliame »

Killavodka wrote:Was using Bitdefender which seemed to be pretty good. Just formatted again only took an hour and I didn't have any data to lose so all is well again.
/latenazi.
detrimental78
Svenno
Svenno
Posts: 5
Joined: October 2nd, 2010, 15:24
Location: in't'hills

Post by detrimental78 »

Fuckin virus dans ma maison!!!!

voddi came in to my domane to let me know, but i have been using avg and to be honest - aside of one nasty virus i had a while back, its been the dogs bollox for me, and though it was on the lan, i didnt get it.

So, a word to the wise, if you dont want a nasty virus then my advice to you is ;

1. get avg internet security, and above all,
2. dont live with voddi!
Dog Pants
Site Moderator
Site Moderator
Posts: 21653
Joined: April 29th, 2005, 13:39
Location: Surrey, UK
Contact:

Post by Dog Pants »

Honestly, that is only half good advice. You get what you pay for, although AVG is better than nothing (as is the also free Windows Defender). The fact that you haven't seen any malware might only mean that it hasn't been detected. I'd recommend Kaspersky personally, although I use NOD32 which is also a top runner.

However, the best way to not get a virus is to avoid dodgy internets. Don't go to shady download or porn sites, be very careful about stuff you torrent, don't go opening or following links from spam. Have your firewall turned on and configured on your router. If you're savvy then your AV should really be just a goalkeeper to watch out for unexpected Javascript exploits and stuff. And you can be safe in the knowledge that 90% of people out there are softer targets than you.

But the bit about living with Voddy has got to be sound advice.
Dr. kitteny berk
Morbo
Morbo
Posts: 19676
Joined: December 10th, 2004, 21:53
Contact:

Post by Dr. kitteny berk »

AVG? don't bother, has a history of dodgy updates fucking shit up.

http://www.theregister.co.uk/2010/12/02 ... ne_update/

microspaz security essentials, nod32, sophos, kaspersky.

Use one of them, live happy.
Grimmie
Master of Soviet Propaganda
Master of Soviet Propaganda
Posts: 7672
Joined: February 5th, 2005, 19:00
Location: Birming-humm, England
Contact:

Post by Grimmie »

Dog Pants wrote:Don't go to... porn sites
I don't get it :?
deject
Berk
Berk
Posts: 10353
Joined: December 7th, 2004, 17:02
Location: Oklahoma City, OK, USA
Contact:

Post by deject »

Microsoft Security Essentials is easily the absolute best free Anti-Virus software out there. NOD32 is the best for pay Anti-Virus software. The others that Berk mentioned are good too, but you won't go wrong with either of those two.
Post Reply