|
|
#1 (permalink) |
|
New Member
![]() Join Date: Jun 2008
Posts: 2
|
I somehow got a virus and its called XPSecurityInstaller. I checked my startup using msconfig and XPSecurityInstaller and braviax.exe keep running on startup even if i uncheck it and apply it. I tried using Ad-Aware, Spybot S & D, Avira Antivir, Registry Mechanic. I just cant seem to get rid of it. It says by my clock on my desktop "Your computer is infected", the yellow balloon comes up lik every 5 minutes. I found its registry values in regedit and deleted it. It also made a XPSecurityCenter folder in my C:\ProgramFiles\XPSecurityCenter\XPSecurityCenter. exe" /hide. Someone told me that this is a virus that tries to make you buy some anti-virus program that is supposedly supposed to get rid of the virus but doesn't and then your out $50. How do i get rid of this virus? O yea, my anti-spyware protector found this virus while scanning and i delete it but it seems to be coming back all the time. TR/Crypt.XPACK.Gen
Last edited by circa808; 06-26-2008 at 02:16 PM. |
|
|
|
|
|
#2 (permalink) |
|
Platinum Member
![]() Join Date: Aug 2007
Location: Canada
Age: 14
Posts: 866
|
Hello.
Download Hijackthis. Link: http://www.trendsecure.com/portal/en...kthis/download Install the program to the default directory. Run Hijackthis and select "Do a system scan and save a log file". Copy the entire log file and paste the contents here. Do not fix anything unless advised to do so. Hijackthis. will allow all of the computer security experts to check for the virus, where it's located along with any other problems you mite have.
__________________
/My Rig:/ /Case :/ Antec Sonata III /Power Supply :/ Antec Earthquake 500W /Motherboard :/ Gigabyte P35-DSR3 /Processor :/ Intel E6850@3.4Ghz /Ram :/ Consair 2x 1 Gb 800mhz /Video Card :/ Zotac 8800 GT /3DMark06 Score :/ 11730 |
|
|
|
|
|
#4 (permalink) | |
|
Silver Member
![]() Join Date: Jun 2008
Posts: 116
|
Quote:
You could see if a repair installation would allow you to run HijackThis. It might solve a lot of your problems. After it's finished post a HijackThis log and run and post a combofix log. You can download combofix here: http://download.bleepingcomputer.com/sUBs/ComboFix.exe Perform a Repair Installation Configure your computer to start from the CD-ROM drive. For more information about how to do this, refer to your computer's documentation or contact your computer manufacturer. Then insert your Windows XP Setup CD, and restart your computer. 1. When the Press any key to boot from CD message is displayed on your screen, press a key to start your computer from the Windows XP CD. 2. Press ENTER when you see the message To setup Windows XP now, and then press ENTER displayed on the Welcome to Setup screen. 3. Do not choose the option to press R to use the Recovery Console. 4. In the Windows XP Licensing Agreement, press F8 to agree to the license agreement. 5. Make sure that your current installation of Windows XP is selected in the box, and then press R to repair Windows XP. 6. Follow the instructions on the screen to complete Setup. Last edited by Briguy; 06-26-2008 at 07:51 PM. |
|
|
|
|
|
|
#5 (permalink) |
|
Diamond Member
![]() Join Date: Feb 2008
Location: Hamilton, MI
Posts: 3,852
|
^^ Is that all you recommend?? Geez
__________________
CPU - AMD Athlon 64x2 5200+ @ 2.6ghz Ram - 2GB Stock clock HD - 320gb seagate & Samsung 750gb 32mb cache GPU - XFX 8600GT XXX Zalman @ 680 or 700mhz PSU - Ultra X-finity 600watt OS - Vista Home Premium(32) & Ubuntu (8.04) Ultimate Ed Audio - JVC 460watts Control - Logitech G25 Wheel & Logitech Rumblepad 2 Games - GTR2 and LFS -- Race Sim's for Life -- |
|
|
|
|
|
#7 (permalink) |
|
Diamond Member
![]() Join Date: Feb 2008
Location: Hamilton, MI
Posts: 3,852
|
Why not just use Killbox and kill the process?
__________________
CPU - AMD Athlon 64x2 5200+ @ 2.6ghz Ram - 2GB Stock clock HD - 320gb seagate & Samsung 750gb 32mb cache GPU - XFX 8600GT XXX Zalman @ 680 or 700mhz PSU - Ultra X-finity 600watt OS - Vista Home Premium(32) & Ubuntu (8.04) Ultimate Ed Audio - JVC 460watts Control - Logitech G25 Wheel & Logitech Rumblepad 2 Games - GTR2 and LFS -- Race Sim's for Life -- |
|
|
|
|
|
#8 (permalink) |
|
Diamond Member
![]() Join Date: Feb 2008
Location: Hamilton, MI
Posts: 3,852
|
Or a simple restore point should take care of it.
__________________
CPU - AMD Athlon 64x2 5200+ @ 2.6ghz Ram - 2GB Stock clock HD - 320gb seagate & Samsung 750gb 32mb cache GPU - XFX 8600GT XXX Zalman @ 680 or 700mhz PSU - Ultra X-finity 600watt OS - Vista Home Premium(32) & Ubuntu (8.04) Ultimate Ed Audio - JVC 460watts Control - Logitech G25 Wheel & Logitech Rumblepad 2 Games - GTR2 and LFS -- Race Sim's for Life -- |
|
|
|
|
|
#10 (permalink) | |
|
Diamond Member
![]() Join Date: Jan 2008
Location: Melbourne, Australia
Age: 14
Posts: 8,166
|
I've seen it about 5 times now!
Quote:
Download and Run ComboFix If you already have Combofix, please delete this copy and download it again as it's being updated regularly.
Combofix should never take more that 20 minutes including the reboot if malware is detected. If it does, open Task Manager then Processes tab (press ctrl, alt and del at the same time) and end any processes of findstr, find, sed or swreg, then combofix should continue. If that happened we want to know, and also what process you had to end.
__________________
My Website Forum Site JOIN NOW!
Desktop / Laptop Motherboard: Asus M2N X SE / Unknown CPU: AMD 4000+ 2.1GHZ x 2 / Intel Pentium M 1.60GHZ Ram: 2GB Transcend / 512MB Hard Drive: 320GB / 60GB Video Card: Both Intergrated Monitor: 19" Benq / 15.4" OS: Windows Vista Home Premium Service Pack 1 / Windows XP Professional Service Pack 3 |
|
|
|
|
![]() |
| Bookmarks |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| HELP riddled with Trojans :( | Hey it's me | Computer Security | 32 | 03-19-2008 05:12 PM |
| advertisment by adssite annoying pop ups analyse hijack log | alyoob | Computer Security | 11 | 01-10-2008 09:08 AM |
| hijack this log | spkenn5 | Computer Security | 29 | 11-17-2006 05:45 AM |
| computer running REALLY slow | gmen5681 | Computer Security | 3 | 09-06-2006 04:28 AM |
| Infected With Look2me;Popups include:Dofact,Yourtruths,Drivecleaner.Here is HJT Log. | ranzy | Computer Security | 9 | 09-05-2006 03:54 PM |