The new forums will be named Coin Return (based on the most recent vote)! You can check on the status and timeline of the transition to the new forums here.
The Guiding Principles and New Rules document is now in effect.
This is the part where I normally schedule an Avast! Boot-Time scan. Failing that, use the Windows recovery console after properly setting it up so that you can delete files in the Windows subdirectories.
Checking Yahoo, it seems like it's a rootkit driver, and it may come back when you delete it. I'd suggest using Hijackthis to find out what else is causing problems.
Backup your documents; reformat and reinstall the OS and Apps.
Yea, it sucks. But, any other method has a chance of not working -- and once your box is 0wned, you can't trust that there's not something else installed you just didn't find.
Backup your documents; reformat and reinstall the OS and Apps.
Yea, it sucks. But, any other method has a chance of not working -- and once your box is 0wned, you can't trust that there's not something else installed you just didn't find.
True, once you get a trojan you can never trust the machine 100%.
BUT, it is possible to remove it.. although you need to be decently knowledgeable and somewhat confident of that knowledge.
Since AVG has picked it up you're not looking at a rootkit level trojan, which is a good sign.
My preferred method of doing this is to use one of my boot cd's (bartpe) with hijackthis on it and remove anything dodgy that way, it can easilly remove any nasties since they can't hide themselves as i'm not booted into the installed OS.
However, I doubt you're wanting to go creating a boot cd with bartpe etc.
Therefore, I recommend you download hijackthis and post the log file here. We'll tell you which files to remove using it.
GrimReaper on
PSN | Steam
---
I've got a spare copy of Portal, if anyone wants it message me.
So ther is the log file or whatever it is called. I know a few things about computers, but I really do not have any idea what todo with this. thank you very much for the help thus far, guys.
Ok, in the middle of a hw assignment so I can't help too much. Things I noticed:
C:\WINDOWS\system32\btorrent.exe
O4 - HKLM\..\Run: [ATI Video Driver Control] btorrent.exe
O4 - HKLM\..\RunServices: [ATI Video Driver Control] btorrent.exe
O4 - HKCU\..\Run: [ATI Video Driver Control] btorrent.exe
O4 - HKCU\..\RunServices: [ATI Video Driver Control] btorrent.exe Some non-English forum, but someone had the same problem as you. (babooforum.com.br) Google or Babelfish may be able to translate, I didn't get a chance to check.
You might be able to just have Hijack this "fix" those entries, but they could come back if I missed something or if they need to be deleted while they aren't running.
Posts
Chances are you aren't the first person ever to get this virus, so look it up.
Steam Profile | Signature art by Alexandra 'Lexxy' Douglass
Checking Yahoo, it seems like it's a rootkit driver, and it may come back when you delete it. I'd suggest using Hijackthis to find out what else is causing problems.
Yea, it sucks. But, any other method has a chance of not working -- and once your box is 0wned, you can't trust that there's not something else installed you just didn't find.
True, once you get a trojan you can never trust the machine 100%.
BUT, it is possible to remove it.. although you need to be decently knowledgeable and somewhat confident of that knowledge.
Since AVG has picked it up you're not looking at a rootkit level trojan, which is a good sign.
My preferred method of doing this is to use one of my boot cd's (bartpe) with hijackthis on it and remove anything dodgy that way, it can easilly remove any nasties since they can't hide themselves as i'm not booted into the installed OS.
However, I doubt you're wanting to go creating a boot cd with bartpe etc.
Therefore, I recommend you download hijackthis and post the log file here. We'll tell you which files to remove using it.
---
I've got a spare copy of Portal, if anyone wants it message me.
So ther is the log file or whatever it is called. I know a few things about computers, but I really do not have any idea what todo with this. thank you very much for the help thus far, guys.
C:\WINDOWS\system32\btorrent.exe
O4 - HKLM\..\Run: [ATI Video Driver Control] btorrent.exe
O4 - HKLM\..\RunServices: [ATI Video Driver Control] btorrent.exe
O4 - HKCU\..\Run: [ATI Video Driver Control] btorrent.exe
O4 - HKCU\..\RunServices: [ATI Video Driver Control] btorrent.exe
Some non-English forum, but someone had the same problem as you. (babooforum.com.br) Google or Babelfish may be able to translate, I didn't get a chance to check.
O23 - Service: sdktemp - Unknown owner - C:\WINDOWS\sdktemp.exe
Known worm (CastleCops.com)
You might be able to just have Hijack this "fix" those entries, but they could come back if I missed something or if they need to be deleted while they aren't running.
The reaper gets no love?
The reaper is saddened, because the reaper didn't check the post quickly enough.
---
I've got a spare copy of Portal, if anyone wants it message me.