WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionWin32/Crytor HELP EmptyWin32/Crytor HELP

more_horiz
Hi, my AVG detected 2 win32/cryptor virus about 1 week ago...and i tried to remove it using AVG but it said "operation intercrupted by user". So i left it there seing its not changing my computer/internet in anyways. Then yesterday i search on google on how to remove it, and someone told me to download Malwarebytes Anti-Malware. I did that and found about 6 viruses (didnt read/look wat they are....), then i selected them and removed them and restarted my computer...then i started the internet again and AVG still detect the 2 win32/cryptor. Can you help please?

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Yes, we can.

Please download the current version of HijackThis from HERE

  • Double click and run the installer.
  • It will install to C:\Program Files\Trend Micro\HijackThis\hijackthis.exe
  • After installing, you should get the user agreement, press accept and Hijack This will run.
  • Select Do a system scan and save a log file. This will open a notepad file of everything Hijack This found, copy and paste it back here.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Now my DHCP is not working....
it said program caused DHCP client to stop working....how can i fix that?

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
The rootkit is blocking internet access. Do you have another machine to use + a USB memory stick to transfer stuff over to and from?

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
im using computers at my school right now...but i dont have a USB

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Can you write to CD? we can burn a few tools to use all at once and then run them when we need them.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
dam...i dont have a CD eiter

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Well looks like you'll need to get your hands on an external drive, because without tools, there isn't much I can do from here.

You can try resetting the winsock to see if it helps connection any.
Go to Start > Run. In the Run box, type in:
netsh winsock reset
Press enter and reboot normally.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
ok i'll try that....is there anything else i can try?

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Nope, unfortunately.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
well i might come to my friend's house and get a disc.....u wanna post the programs that i need? so i can burn it when i get 1

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Hello.
Okay, here are the four tools we might need to use.

Do not use them on your own, because they are too dangerous if used incorrectly.

Hijack This Installer
Malware-Bytes Anti-Malware Installer (MBAM)
DDS
OTMoveIt3

For starters, install both Hijack This and MBAM.
Don't use MBAM yet, just run Hijack This and get a log and we'll see how things go from there.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
well i got my old computer to work....
and the thing you told me to do before....
Start>run>something....
it said the action require elevation...
idk wat that is

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Hello.
Ah, you didn't tell me this was a Vista OS. The Run box/cmd require elavated privileges.

But if you can get the machine to boot now/internet access, then skip the Run command do install Hijack This.
Install and run a system scan and save a log file. Post the log file back here.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
i meant the older computer....not the infected computer, but the computer that i was about to throw away because its super old.

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Oh. Is the old machine able to write to CD's?

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
it probally can but i dont have CDs =/.....ill keep searching my house for CDs

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
can i still burn programs into a disc that already has stuff in it?

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
No, that would mean the disc has to be RE-writable.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
ok, super bad news.....i just installed hijackthis and scanned for a log, now my the window wont start.....it started up, then i had a black screen. So i restarted the computer, then it ask if i want to go into safe mode, which i did....it frozed while it was loading the win32 stuff....

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Reboot it again.
Start tapping the F8 key after the beep to access the advanced boot menu.
Boot from "Last known good configuration"

Can you boot now?

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
nope, its still the same.

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Darn.
Unless you can get access to a CD writer, there isn't much I can do.

If we can get a CD writer, we can boot to Avira's rescue disc.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
i do have a CD writer,

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
Okay.
Read this article and guide, the Avira boot disc link is at the bottom of the article.

http://www.raymond.cc/blog/archives/2008/06/28/free-avira-antivir-rescue-system-cd-to-clean-unremovable-virus/

Everything you need to do this is there in the article. Smile...

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Win32/Crytor HELP DXwU4
Win32/Crytor HELP VvYDg

descriptionWin32/Crytor HELP EmptyRe: Win32/Crytor HELP

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum