ComputerForum.com ComputerForum.com  
TigerDirect
 
Go Back   Computer Forum > Computer Software > Computer Security

Reply
 
LinkBack Thread Tools Display Modes
Old 06-17-2008, 04:53 AM   #1 (permalink)
New Member
 
Join Date: Jun 2008
Posts: 24
Default HELP!!! Virus completely locked me out

Yesterday I found out my computer was infected with spyware and a trojan virus. I use Norton 360 which did not detect anything. My cable company actually sent me a message saying my internet settings were changed by a virus and that I needed to run my antivirus/spyware protection software. I ran norton which said it removed something but my computer was still acting funny. I downloaded AVG which I've used in the past and it found other items which were removed. My computer ran progressivly slower and slower. I could not press ctrl, alt, delete as I get a message saying the administrator has it locked. I restarted my computer and now I get a login screen saying the computer has been locked by it's administrator and will not allow me to do anything. PLEASE HELP ME. I have absolutely no idea what I am doing. I am a real estate investor and desperately need the files stored on this computer.

Thank you
ih8puters is offline   Reply With Quote


Old 06-17-2008, 04:56 AM   #2 (permalink)
Diamond Member
 
g25racer's Avatar
 
Join Date: Feb 2008
Location: Hamilton, MI
Posts: 3,789
Default

Have you tried booting into safe mode? When the bios page (page that says your pc make) appears repeatedly hit F8 key until a black page appears. Hit the arrow down key until "safe mode (no network)" is highlighted and hit "enter".
__________________
CPU - AMD Athlon 64x2 5200+ @ 2.6ghz
Ram - 2GB Stock clock
HD - 320gb seagate & Samsung 750gb 32mb cache
GPU - XFX 8600GT XXX Zalman @ 680 or 700mhz
PSU - Ultra X-finity 600watt
OS - Vista Home Premium(32) & Ubuntu (8.04) Ultimate Ed
Audio - JVC 460watts
Control - Logitech G25 Wheel & Logitech Rumblepad 2
Games - GTR2 and LFS
-- Race Sim's for Life --
g25racer is offline   Reply With Quote
Old 06-17-2008, 05:06 AM   #3 (permalink)
Bronze Member
 
PCC_Australia's Avatar
 
Join Date: Jun 2008
Location: Newcastle, Australia
Posts: 75
Default

Sounds quite odd to say the least. You are the administrator of your computer aren't you? and you can remember the password? If not try the Windows defaults:

username: administrator or admin

leave the password field blank and hit ok or enter on your keyboard.

As for the Virus. Sometimes after a scan is completed and results are returned, it is good to take a look at the paths of the infected files and manually navigate to the folder where the assumed infected file is found and manually delete that file.

Let us know how you go, as far as accessing your desktop etc.
PCC_Australia is offline   Reply With Quote
Old 06-17-2008, 05:11 AM   #4 (permalink)
Diamond Member
 
g25racer's Avatar
 
Join Date: Feb 2008
Location: Hamilton, MI
Posts: 3,789
Default

Also. If you have both AVG and Norton installed that is BAD. You need to get rid of one of them. I recommend sticking with AVG and dump norton. Un-install norton once you get into safe mode.
__________________
CPU - AMD Athlon 64x2 5200+ @ 2.6ghz
Ram - 2GB Stock clock
HD - 320gb seagate & Samsung 750gb 32mb cache
GPU - XFX 8600GT XXX Zalman @ 680 or 700mhz
PSU - Ultra X-finity 600watt
OS - Vista Home Premium(32) & Ubuntu (8.04) Ultimate Ed
Audio - JVC 460watts
Control - Logitech G25 Wheel & Logitech Rumblepad 2
Games - GTR2 and LFS
-- Race Sim's for Life --
g25racer is offline   Reply With Quote
Old 06-17-2008, 05:21 AM   #5 (permalink)
New Member
 
Join Date: Jun 2008
Posts: 24
Default

Thank you very much for the quick reply. At the log-in screen I couldn't type anything it was "grayed" out. I rebooted the computer pressing f8 as suggested by one of the previous posts. I now have AVG running another scan and it has picked up a lot of stuff. The only thing I recognize is trojan.....I see Trojan.bomka , trojan.killproc.h , trojan.goldun.u , trojan. conhook.b , trojan.Zlob.f , Trojan.PWS.cu , etc. My computer has always ran fine until this happened yesterday. AVG has identified a lot of stuff but I'm completely ignorant about this. How do I know what I'm dealing with to even begin to remove it.
ih8puters is offline   Reply With Quote


Old 06-17-2008, 05:54 AM   #6 (permalink)
Bronze Member
 
PCC_Australia's Avatar
 
Join Date: Jun 2008
Location: Newcastle, Australia
Posts: 75
Default

You can generally look up the definitions on any known good Anti Virus manufacturers website.

Personally, i just type the name of the virus into a google search and see whether or not the virus attaches itself to a program or frequently used file within Windows itself.

If you are unsure if the file is used alot and is a core component of daily software activites, just quarantine the file to be sure.

Hope this helps
PCC_Australia is offline   Reply With Quote
Old 06-17-2008, 05:56 AM   #7 (permalink)
New Member
 
Join Date: Jun 2008
Posts: 24
Default

is it possible to get so many virus' at once? My computer was fine until yesterday. Now AVG has a HUGE list of things
ih8puters is offline   Reply With Quote
Old 06-17-2008, 05:57 AM   #8 (permalink)
Moderator
 
ceewi1's Avatar
 
Join Date: Dec 2005
Location: Melbourne, Australia
Age: 21
Posts: 5,214
Default

Post a HijackThis log:

Please download the HijackThis installer from http://www.trendsecure.com/portal/en...HJTInstall.exe.

Run the installer and choose Install, indicating that you accept the licence agreement. The installer will place a shortcut on your desktop and launch HijackThis.

Click Do a system scan and save a logfile

When the Notepad window opens choose Edit -> Select All to select the entire log, and copy and paste the log into a reply post.
Most of what it lists will be harmless or even essential, don't fix anything yet.
__________________

CPU: Core 2 Duo E6600 / MOBO: Gigabyte 965P-DS3 / GPU: Gigabyte HD4870
RAM: 2GB G.Skill F2-6400CL4D-2GBPK / HDD: 2TB Total HDD / PSU: Antec NeoPower 480W

Cheap PSUs - 2% of system costs, responsible for 28% of system deaths
As Sealed Stick was removed, lost or damaged, it shall be out of warranty validity.
- The "Warranty void if removed" sticker on numerous CoolerMaster PSUs.

ceewi1 is offline   Reply With Quote
Old 06-17-2008, 05:59 AM   #9 (permalink)
Moderator
 
ceewi1's Avatar
 
Join Date: Dec 2005
Location: Melbourne, Australia
Age: 21
Posts: 5,214
Default

Quote:
Originally Posted by ih8puters View Post
is it possible to get so many virus' at once? My computer was fine until yesterday. Now AVG has a HUGE list of things
Yes, it's not unusual for an infection to download reinforcements. I suggest you spend as little time on the Internet as possible with the infected machine.
__________________

CPU: Core 2 Duo E6600 / MOBO: Gigabyte 965P-DS3 / GPU: Gigabyte HD4870
RAM: 2GB G.Skill F2-6400CL4D-2GBPK / HDD: 2TB Total HDD / PSU: Antec NeoPower 480W

Cheap PSUs - 2% of system costs, responsible for 28% of system deaths
As Sealed Stick was removed, lost or damaged, it shall be out of warranty validity.
- The "Warranty void if removed" sticker on numerous CoolerMaster PSUs.

ceewi1 is offline   Reply With Quote
Old 06-17-2008, 06:03 AM   #10 (permalink)
New Member
 
Join Date: Jun 2008
Posts: 24
Default

Working on that now. I will post results ASAP
ih8puters is offline   Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
new notebook ... jessiej Computer Security 49 06-08-2008 01:40 PM
Analyse combofix log and hijack log alyoob Computer Security 10 02-09-2008 02:22 AM
Probs with adware despite rung several anti spyware altvic Computer Security 29 01-18-2008 09:50 AM
computer problem yellow.orange Computer Security 16 12-21-2007 09:56 AM
Friends HJTL vroom_skies Computer Security 11 09-12-2006 06:04 AM


All times are GMT +1. The time now is 06:11 AM.


Powered by: vBulletin Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.1.0 ©2007, Crawlability, Inc.
Copyright © 2002-2007 Computer Forum and Web Design Forum