Bad virus - Bankerfox.a Machine is dying....help!

Search
Go

Discussion Topic

Return to Forum List
This thread has been locked
Messages 21 - 40 of total 80 in this topic << First  |  < Previous  |  Show All  |  Next >  |  Last >>
noshoesnoshirt

climber
I don't even know anymore
Jan 22, 2009 - 10:47pm PT
Dr.Sprock

Boulder climber
Sprocketville
Jan 22, 2009 - 10:48pm PT
You might want to remove that Log File, might be some stuff that people can use.
TradIsGood

Chalkless climber
the Gunks end of the country
Jan 22, 2009 - 10:48pm PT
Crimpie, computers can only get infected in two ways that I can think of:
 Being on a network
 loading software from a bad disk (that was common back in floppy disk days.

Most likely, your computer has been "on the network". Does it have a network card, or wireless adapter?

Oh yeah, and wash your hands thoroughly after touching the keyboard.
WBraun

climber
Jan 22, 2009 - 10:50pm PT
Can you give snapshot of what services are running?

My computer left click >> manage >> scroll down to services and applications >>> click the plus (+) >>> click services.

In the left pane you'll see all your services running.

Now hit start >> run >> type regedit.

HKEY_LOCAL_MACHINE >> software/microsoft/windows/run

Whats running in there?
BrassNuts

Trad climber
Boulder Colorado
Jan 22, 2009 - 10:50pm PT
Here you go? What do you think doctor?

WBraun

climber
Jan 22, 2009 - 10:52pm PT
The virus is still running

BHO: C:\WINDOWS\system32\hgfdge4unjdfdg.dll - {C5BF49A2-94F3-42BD-F434-3604812C8955} -

C:\WINDOWS\system32\hgfdge4unjdfdg.dll This one
BrassNuts

Trad climber
Boulder Colorado
Jan 22, 2009 - 10:53pm PT
When I go to regedit, it says "registry editing has been disabled by your adminstrator"

When I do the other thing, I see in the left pane under services and applications:

services
wmi control
indexing service


Is this what you need to see?
WBraun

climber
Jan 22, 2009 - 10:54pm PT
Hang on ....
Dr.Sprock

Boulder climber
Sprocketville
Jan 22, 2009 - 10:59pm PT
you can download a remover here:

http://www.spywaredoctorhelp.com/hgfdge4unjdfdgdll-removal/

WBraun

climber
Jan 22, 2009 - 11:00pm PT
Is your Taskmanager working?

Anyways go here for the registry re-enable

http://www.pchell.com/support/registryeditordisabled.shtml
BrassNuts

Trad climber
Boulder Colorado
Jan 22, 2009 - 11:01pm PT
SWCHWWWEEEET! Thanks Dr. Schrock - we'll give it a try...
happiegrrrl

Trad climber
New York, NY
Jan 22, 2009 - 11:08pm PT
I imagine Crimpie writing in a faux deep male voice when I read her posts under the BrassButs name....


...except the SCHWEEET one, that is.
WBraun

climber
Jan 22, 2009 - 11:14pm PT
Skip

It's one step at a time.

I can explain to you how all this works but it's way too much typing for me. I'm too slow.

LEB could do it Typing. She types 100 mph.
BrassNuts

Trad climber
Boulder Colorado
Jan 22, 2009 - 11:16pm PT
What I'm hoping is to get it to a point to get some anti-virus software back working. Then perhaps I won't have to wipe everything off and start over. It's most disturbing since it is unclear how this machine got sick. It's just a laptop here at the house. Yes, it has a wireless card, but it connects to our secured wireless internet. What if I get it cleaned and it just comes back?

I went to Dr. Sprock's suggested site and it is not working. The list of commands does not quite match what is on the machine for getting the regedit back working.

frustration builds...
BrassNuts

Trad climber
Boulder Colorado
Jan 22, 2009 - 11:18pm PT
Happie!!!! BrassBUTS??? Hahahahaaaa!
WBraun

climber
Jan 22, 2009 - 11:25pm PT
You need to download the script to re-enable the registry.

I have done this before.

Google; registry editing has been disabled by your administrator

And find the script and save it in notepad with the proper ending.

Execute the script and then you need to reboot.

Gee wiz man you need to learn how to search and research.

This is not that hard.
SteveW

Trad climber
The state of confusion
Jan 22, 2009 - 11:25pm PT
Oh Callie
I hope you get it fixed--I've had Norton on my box for a long
time and haven't had any problems. . .of course, now that I say
that I'm sure to be infected. . . .

Good luck!
WBraun

climber
Jan 22, 2009 - 11:28pm PT
These new viruses disable your anti viruses so they become useless.

Rootkits are more difficult but can be eradicated by skill full use of the proper tools.

I have a whole office full of these tools.
happiegrrrl

Trad climber
New York, NY
Jan 22, 2009 - 11:39pm PT
"Happie!!!! BrassBUTS??? Hahahahaaaa!"


...oops, typo.

But no doubt many here who have seen your derriere would say it's accurate(I mean that in a good way).
Crimpergirl

Social climber
Boulder, Colorado!
Topic Author's Reply - Jan 22, 2009 - 11:42pm PT
Heh heh. I'm back on my machine as you can see by the name.

I think it's looking grim here - that wiping out the hard drive may be what has to be done. Someone up thread said that one should not only wipe out the hard drive, but should just get a new one. For real? This is a laptop that has fallen ill. Same advice then?
Messages 21 - 40 of total 80 in this topic << First  |  < Previous  |  Show All  |  Next >  |  Last >>
Return to Forum List
 
Our Guidebooks
spacerCheck 'em out!
SuperTopo Guidebooks

guidebook icon
Try a free sample topo!

 
SuperTopo on the Web

Recent Route Beta