Go Back   OnRPG Free MMORPG Forums > Main Category > General > Tech Corner

Reply
 
LinkBack Thread Tools Display Modes
Old 10-25-2009, 06:56 AM   #1 (permalink)
Super Moderator
 
shadowsworn's Avatar
 
Join Date: May 2006
Location: in the pipe, five by five
Posts: 7,936
Reputation: 241
Default Massive Computer Problem

This is probably the wrong place to post this but whatever

recently I somehow got a virus on my other computer. Now when I try to log in on it I get a black screen with no taskbar or icons. Also I can't call up task manager but I understand that this is what viruses do to **** you over so that's not surprising.

The real problem is I can't even reformat. Every time I try to run setup from a cd, I get the following error

"A problem has been detected and Windows has been shut down to prevent damage to your computer

[bunch of stuff]

Check for viruses on your computer

[bunch of stuff]

Technical Information:

*** STOP: 0x0000007B (0XF78D2524, 0xC0000034, 0x00000000, 0x00000000)

Any help would be much appreciated

Thanks

ps. also there will be rep and possible sexual favours

Last edited by shadowsworn; 10-25-2009 at 07:19 AM.
shadowsworn is offline   Reply With Quote
Old 10-25-2009, 10:57 AM   #2 (permalink)
Nyaaaaaaah ~~
 
SnOwBunZz's Avatar
 
Join Date: Dec 2007
Location: The Flanders
Posts: 7,610
Reputation: 303
Default

This should fix it.

The most google searches point to this fix. :/
__________________


[My Anime List] | [last.fm] | [xfire] | [Steam]
If anyone would like me to build a rig, I'd prefer it to be in a thread in the tech section rather than PM. Thank you.
SnOwBunZz is offline   Reply With Quote
Old 10-26-2009, 03:40 AM   #3 (permalink)
Super Moderator
 
shadowsworn's Avatar
 
Join Date: May 2006
Location: in the pipe, five by five
Posts: 7,936
Reputation: 241
Default

thank you, I'll try that.

ok well that doesn't work on HP computers. should probably have mentioned that's what I have, sorry.

atm, I managed to get some sort of desktop to pop up. I'm running a registry cleaner. Over 1000 problems so far. joy...

lol it shut down the cleaner partway through and now I don't have permission to access it

additional shit:

I can't run windows in safe mode. It starts loading files then crashes and restarts.

Also I can't run cmd.exe

also I can't run combofix because of virut.

alsooo I can't run the virut fixer I found because I can't start safe mode

****

OH and I can't run malwarebytes because of a problem with VbalGrid

and I can't run anything that requires windows installer

edit: ok I found a virut checker that seems to work anyway. If it doesn't find anything by tomorrow morning I'm going to ****ing RAGE

another edit: **** it automatically turns off after a certain time of me not touching it I think. BULLSHIT

Last edited by shadowsworn; 10-26-2009 at 04:27 AM.
shadowsworn is offline   Reply With Quote
Old 10-26-2009, 05:18 AM   #4 (permalink)
Dixie Banana Bar
 
Join Date: Aug 2009
Posts: 278
Reputation: 47
Default

Edit: oh god virut. good times. Have you tried using Avast to fix your virut problem?

First of all try running a Hijack This log and posting it here and somewhere else so we can get an idea of what is going on. If something looks damn suspicios such as HKLM\ redirect to\partyinmyasianpants.com then feel free to delete the file using the application.

Second of all, assuming you can't access Safe Mode, try renaming mbam.exe (Malwarebytes) to some other name such as fred.exe. It is probably vundo blocking Malwarebytes by name. And changing the name will slip past it's defenses.

If you could try running msconfig go to startup/startup services and find anything suspicious or out of place outside the normal name of services. If you need, use Google and disable the start-up of these services after a reboot. Then try running your anti-virus software again.

Third of all, try running other software such as Ad-Aware and less popular alternatives. Stay away from false-positive software. If these are blocked then try Step Four.

Four, try googling what viruses you're being hit with and manually delete them using regedit. Certain registry cleaners are unable to get these and therefore require manual deletion.

Fifth, during this time period I suggest you close system restore. If the viruses are serious enough, they could implant themselves in system restore in order to reinstall themselves at a later date. True story.
__________________
Quote:
Originally Posted by opshon
"I am the king of Faggotry and I hate people who have life's"

Last edited by KniteOps; 10-26-2009 at 05:23 AM.
KniteOps is offline   Reply With Quote
Old 10-26-2009, 05:28 AM   #5 (permalink)
Super Moderator
 
shadowsworn's Avatar
 
Join Date: May 2006
Location: in the pipe, five by five
Posts: 7,936
Reputation: 241
Default

Thank you very much :]

will try this all tomorrow

oh and +reps just for taking all that time to help
shadowsworn is offline   Reply With Quote
Old 10-26-2009, 05:40 AM   #6 (permalink)
Dixie Banana Bar
 
Join Date: Aug 2009
Posts: 278
Reputation: 47
Default

Honestly I'll look into this problem myself. I assumed you accessed safe mode using the f8 or del key on startup. I'm not sure if the virus is blocking this method and if using msconfig will be any better.

We both know that the virus is a backdoor program and pretty much has ****ed up most of your computer. So what we're basically aiming for here is enough cleaning to get you to get a clean reformat of your computer.

I also found this website but I can't argue for how legitimate it is. If most of your .exe files have been infected then I don't see why you shouldn't give this a try if you're not open to a reformat.

http://remove-malware.com/antimalwar...t-sooooo-evil/

Damage-control of aggressive malware is seriously beyond my expertise. I apologize. I hope that you didn't lose a lot of files and that it only affected a small portion of your hard-drive.
------------
Edit: I really don't deserve to be repped until your computer is repaired (and not just crudely reformatted). I wish I could offer more detailed assistance. For rootkit problems we usually use Avenger:

http://swandog46.geekstogo.com/

Looking at a previous search query for using avenger on virut I got this page:

http://forums.majorgeeks.com/showthread.php?t=195951

Again logs would be great. They are the second most accurate impression I can get of feeling your pain besides you giving me virut yourself via p2p. And believe me. I wouldn't want that. :<

According to the above website, if you could shimmy up a spare usb or a cd you can carry over all files that are non .exe in nature. Although grain of salt. As always.
__________________
Quote:
Originally Posted by opshon
"I am the king of Faggotry and I hate people who have life's"

Last edited by KniteOps; 10-26-2009 at 05:51 AM.
KniteOps is offline   Reply With Quote
Old 10-26-2009, 05:42 AM   #7 (permalink)
Super Moderator
 
shadowsworn's Avatar
 
Join Date: May 2006
Location: in the pipe, five by five
Posts: 7,936
Reputation: 241
Default

a reformat is basically my goal yeah. there's nothing valuable on my laptop atm that I don't have backed up elsewhere, fortunately.
shadowsworn is offline   Reply With Quote
Old 10-26-2009, 06:05 AM   #8 (permalink)
Dixie Banana Bar
 
Join Date: Aug 2009
Posts: 278
Reputation: 47
Default

Good luck. If it is a boot sector virus that is blocking you from reinstall then removing it should allow you to reformat your computer. If not, then it could be a litany of other issues as stated in the link below which you've probably looked at already.

http://support.microsoft.com/kb/324103

Sorry for not offering you more professional advice.
__________________
Quote:
Originally Posted by opshon
"I am the king of Faggotry and I hate people who have life's"
KniteOps is offline   Reply With Quote
Old 10-26-2009, 06:33 PM   #9 (permalink)
Super Moderator
 
shadowsworn's Avatar
 
Join Date: May 2006
Location: in the pipe, five by five
Posts: 7,936
Reputation: 241
Default

HijackThis is shut down about 2 seconds after it starts and then after that I'm told I don't have the privileges to access it.

I also tried changing it's name with the same results.

oh also I tried changing mbam to something else and still got the same error I was getting before.
shadowsworn is offline   Reply With Quote
Old 10-26-2009, 06:47 PM   #10 (permalink)
Nyaaaaaaah ~~
 
SnOwBunZz's Avatar
 
Join Date: Dec 2007
Location: The Flanders
Posts: 7,610
Reputation: 303
Default

Perhaps the best forum to be on with your issues. You might have to wait a bit before getting a reply though.
HJT is outdated and very easily bypassed, although it can be useful with older viruses.

You could try to run a linux based live CD and format the HDD from there, along with the bootsector.
__________________


[My Anime List] | [last.fm] | [xfire] | [Steam]
If anyone would like me to build a rig, I'd prefer it to be in a thread in the tech section rather than PM. Thank you.

Last edited by SnOwBunZz; 10-26-2009 at 06:50 PM.
SnOwBunZz is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:41 AM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.6.0
OnRPG, Copyright ©2003-2011, Game Entertainment Enterprises