WiredWX Hobby Weather ToolsLog in

 


descriptionUPS virus (NEED to REMOVE!) EmptyUPS virus (NEED to REMOVE!)

more_horiz
Help!! I got an email saying that it's from UPS. It has a zipped file that once opened deploy braviax.exe and burito.exe on to the system. The bogus Packet Service messages claim a parcel sent by the user was undeliverable due to an incorrect address. The user is instructed to open an attachment containing a copy of the invoice. The attachment actually contains a virus that infected my computer!!
I can't believe I got this virus!!

I tried to get some online help as of downloading the SDFix however, I couldn't because the virus block me from going online!! I tried to save the file on a usb thumb drive from another computer and open it up on the infected computer but could not also!! Now I'm stuck!!

Please help me!!

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
Download OTL by OldTimer to your Desktop.

  • Close all windows and double click OTL.exe
  • Click Run Scan and let the program run uninterrupted
  • It will produce two logs for you, one will pop up - OTL.txt, the other will be saved on your Desktop - Extras.txt. Post both logs in this thread.
  • You may need to use two posts to get it all.

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
so.. i downloaded the OTL and copy it to a disk to run it on the infected computer... however, after it was scan, there was nothing in the notepad as well as the saved file on desktop.. what do i do now? should i scan it again?

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
Yes, try again, see if anything different happens.

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
while scanning, a pop-up windows says no-disk and has the following info below.. c0000013 Parameters 75b6bf9c 4 75b6bf9c 75b6bf9c and says if i should continue or cancel.. i choose continue but after it scan, it came out blank in the notepad again..

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
Okay, lets try this instead.

Please download the current version of HijackThis from HERE

  • Double click and run the installer.
  • It will install to C:\Program Files\Trend Micro\HijackThis\hijackthis.exe
  • After installing, you should get the user agreement, press accept and Hijack This will run.
  • Select Do a system scan and save a log file. This will open a notepad file of everything Hijack This found, copy and paste it back here.

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
I could not install the file.. A window pop up saying: The Windows Installer Service could not be accessed. This can occur if you are running Windows in safe mode, or if the Windows Installer is not correctly installed. Contact your support personnel for assistance.

I've tried several times and this keeps on poping up. What do I do now?

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
Hello.

Please download Ice Sword from HERE

  1. Download the zip to your desktop and extract it.
  2. Open the Ice Sword folder and then launch IceSword.exe.
  3. Will IceSword open?

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
yes, i was able to open the folder..
from the functions, do i choose process or start-up?

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
Hello.


  • Now, on the left hand side tool, hit the Process button at the top of the list.
  • Just above the list, there is a log button, press that and save the log to your Desktop.
  • Next, hit the Startup on the left side list.
  • Press the log button again.
  • Post the two logs in your next reply.

descriptionUPS virus (NEED to REMOVE!) EmptyRe: UPS virus (NEED to REMOVE!)

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum