So I got my mother-in-law's laptop to fix, because she said it was overran with virii. I did not know how bad it was.
First, I couldn't get this thing to even boot up without running chkdsk on it.
So it boots up and I am greeted not only by MS Antivirus, but also some other random "antivirus." Having dealt with the former before, I figured it shouldn't be too bad.
I was wrong. One of these things has hijacked the start menu, so that will not come up at all. Also, it has disabled pasting, as well as the ability to drag and drop. I installed Spybot with updates, Firefox 3.0, and extracted SmitFraudFix from my thumbdrive, and used those tools respectively, waiting to get on antivirus.com through firefox when done.
Well, I've ran multiple scans with spybot, and let smitfraud run its course, and still connectivity is denied, instantly.
And if anyone says post a hijack this log, remember that the laptop cannot drag and drop or paste, and has no internet connectivity.
Help me purge the devil from this beast!
Posts
Shogun Streams Vidya
- Run Malwarebytes Anti-Malware
- Run ComboFix
Spybot and Ad-Aware are weak sauce against any serious malware. I disagree that you can "never be sure otherwise;" you can almost certainly be sure by looking at the appropriate HijackThis log and getting clean bills of health from the appropriate tools.
See how many books I've read so far in 2010
also turn off system restore while getting rid of the bugs, it wont help get rid of them and sometimes they hide in there to reinfect the machine. all of this presumes some level of functionality in the computer which it sounds like you may not have, might want to look into manual Registry fixes to deal with things like missing Control Panels and disabled taskmanagers (be careful when playing with the registry though as it can quickly mess up a computer if not treated right). hope this is all some help...
Does anyone know of a place where I can download such a copy (providing legality is not against this).
See how many books I've read so far in 2010
If you boot into that you may regain some of the functionality like drag and drop or copy paste.
but they're listening to every word I say
See how many books I've read so far in 2010
Another idea is to start up the computer in safe mode, CTL ALT DEL and kill any process you dont need on startup. If any process is unneeded or looks fishy just end process tree. this might take some trial and error as you will certainly accidentaly kill some vital system processes and have to restart. It may regain some functionality if you do it right though.
Run all your antivirus and anti spyware programs near simultaneously, some programs are sneaky and will reinstall themselves while removal programs have only removed part of them. If you catch them in the right order or before they have reloaded themselves you can get them sometimes.
but they're listening to every word I say
ARRG! I hated Gator! It was bad enough that I couldn't afford high speed cable in the 90's because it costed $texas so I got stuck with super high speed 56k dialup; everytime I would go to a web page that mother fucker would come sliding in from the side asking me if I want to save some passwords :x. Hell, I was young; I didn't know any better I saved all my passwords.
Edit: Relevant information: I'm sure you probably already looked at this. but I remember a few companies (mainly Compaq) partitioning space on the HDD for the operating system; just incase you had to format. If its there it would show up in my computer more then likely assigned the letter "D". Just a thought.
See how many books I've read so far in 2010
Obtain an XP MCE disc and use the proper OEMBIOS files for your make of laptop to alter it to accept your key. As long as you have a legit key and COA, you're on pretty solid ground legally.
But first things first.
Orbital nuke, deploy.
Can trade TF2 items or whatever else you're interested in. PM me.
See how many books I've read so far in 2010
It's thier machine, you have to tell them:
"Your computer is so full of malware that it must have rolled around on the floor of the Internet's bathroom. The only real option here is a reformat and reinstall, because even if I did clear every piece of crap out of it, you'd never have the same functionality, and you can never be sure you got every last bit on a machine so infested like this. It would just be better if we got a clean install of Windows in there, so that we can be sure there's no surprises waiting for us. We can set everything back the way it was, including some programs to make sure this stuff doesn't happen again."
Long story short, fire up the tactical nuke and destroy everything.
I can has cheezburger, yes?
It works for me.