Twinbird24
Member
The following files are infected on a Windows XP system:
winlogon.exe (C:\WINDOWS\system32) AV says: Win32
atched-RP [Trj]
explorer.exe (C:\WINDOWS) AV says: Win32
atched-RP [Trj]
atapi.sys (C:\WINDOWS\system32\drivers) AV says: Win32:Alureon-FZ
The AV installed on the system is NOD32 4, which detects the infected files but cannot remove them (they are system files) and removing the files by hooking the HDD as a slave won't help because then the OS won't start up. I tried replacing the infected files with files from another computer also running XP, but when I try to start up the system with the infected files replaced with the new ones from another XP system, it just gets to the black screen which gives me options like Start Windows, Safe Mode, etc. if I click any of those options then the computer just restarts and shows me the black page with the options again. The computer starts up with the infected files, though.
How do I fix this problem? Thanks!
winlogon.exe (C:\WINDOWS\system32) AV says: Win32
explorer.exe (C:\WINDOWS) AV says: Win32
atapi.sys (C:\WINDOWS\system32\drivers) AV says: Win32:Alureon-FZ
The AV installed on the system is NOD32 4, which detects the infected files but cannot remove them (they are system files) and removing the files by hooking the HDD as a slave won't help because then the OS won't start up. I tried replacing the infected files with files from another computer also running XP, but when I try to start up the system with the infected files replaced with the new ones from another XP system, it just gets to the black screen which gives me options like Start Windows, Safe Mode, etc. if I click any of those options then the computer just restarts and shows me the black page with the options again. The computer starts up with the infected files, though.
How do I fix this problem? Thanks!