|
|
#1 (permalink) |
|
Diamond Member
![]() Join Date: Jul 2006
Location: I wonder !!!
Posts: 6,299
|
As per the title guys. I really need some help on this.
is there a definite way to remove this crap ? Even though I disable it at startup and I would also remove its entry, it would appear again. However there's no process called herss.exe like google said. The only way for me to know the thing is running i have to go to the user's temp directory and looks for cvas0.dll or similar or i'll end up with this ![]() This is what happens when printing back to back on the printer. It crashes when the virus is active. I can go to temp, delete herss.exe and remove the dll, try printing and it will work. Are there any good ways to permanently remove it ? many thanks |
|
|
|
|
|
#3 (permalink) |
|
Diamond Member
![]() Join Date: Jun 2009
Location: NSW, Australia
Age: 16
Posts: 2,330
|
get malwarebytes and hijack this... run them both in safemode after updating (best way is to go safemode with networking)
could you give a list of your processes when the virus is active?
__________________
System CM Storm Scout - Asus P5N-E SLI - Core 2 Duo E4500 @ 3.02Ghz - 2x1GB Corsair XMS2 @ 900mhz - Sapphire HD 3870 - WD 250GB Caviar SE16 - SHAW 860W - Windows 7 Ultimate x64 Perhiprials Logitech G5 Mouse - Logitech R-10 Speakers - Targus Keyboard - HP L1470 17" 1280x1024 Monitor |
|
|
|
|
|
#4 (permalink) | |
|
Diamond Member
![]() Join Date: Jul 2006
Location: I wonder !!!
Posts: 6,299
|
Quote:
I downloaded Spybot S&D and so far it has removed the infection, I have also rebooted a couple of times. So far so good. Will see how long this last
|
|
|
|
|
|
|
#5 (permalink) |
|
Diamond Member
![]() Join Date: Jun 2009
Location: NSW, Australia
Age: 16
Posts: 2,330
|
perhaps try googling for the specific infection and then removal... usually works... some people are kind enough to create guides to remove a specific infection.
__________________
System CM Storm Scout - Asus P5N-E SLI - Core 2 Duo E4500 @ 3.02Ghz - 2x1GB Corsair XMS2 @ 900mhz - Sapphire HD 3870 - WD 250GB Caviar SE16 - SHAW 860W - Windows 7 Ultimate x64 Perhiprials Logitech G5 Mouse - Logitech R-10 Speakers - Targus Keyboard - HP L1470 17" 1280x1024 Monitor |
|
|
|
|
|
#6 (permalink) | |
|
Diamond Member
![]() Join Date: Jul 2006
Location: I wonder !!!
Posts: 6,299
|
Quote:
I once was on a blog somewhere and it lead me to StopZilla. I downloaded the program and I have to admit.. It sucks major
|
|
|
|
|
|
|
#7 (permalink) |
|
Diamond Member
![]() Join Date: Aug 2007
Location: Canada
Age: 15
Posts: 2,646
|
Hello:
Download and Run ComboFix If you already have Combofix, please delete this copy and download it again as it's being updated regularly.
Combofix should never take more that 20 minutes including the reboot if malware is detected. If it does, open Task Manager then Processes tab (press ctrl, alt and del at the same time) and end any processes of findstr, find, sed or swreg, then combofix should continue. If that happened we want to know, and also what process you had to end. In your next reply i will need:
__________________
Winner of Photo Tourney: Twilight /My Rig:/ /Case :/ Antec Sonata III /Power Supply :/ Antec Earthquake 500W /Motherboard :/ Gigabyte P35-DSR3 /Processor :/ Intel E6850@3.4Ghz /Ram :/ Consair 2x 1 Gb 800mhz /Video Card :/ Zotac 8800 GT /Monitor:/Samsung T220 w 20 000 : 1 Contrast and 2ms response time /3DMark06 Score :/ 11730 |
|
|
|
![]() |
| Bookmarks |
| Thread Tools | Search this Thread |
| Display Modes | |
|
|