Got a Java virus, completely screwing me over…

August 2nd, 2013

Hey guys.
I got a Java virus from a guy here (banned now) after using a keygen.
It attaches to all the files that are being ran at any time, which is a hell of a lot.
I can’t do any work, can barely run firefox and my fan sounds like it’s about to explode.
What I’ve already done:
– Gotten Malware Bytes to clean my PC. Picked up all of the files that had been used to attach the virus to, not the parent (mother) virus.
– Downloaded Bitdefender and ran a full scan (2h long). Picked up the downloader for the mother virus, all of the new rookits but it’s still here.
Tried rescue mode but got the error “mcookie not found” when booting it.
I can’t format as I don’t have a recovery disc nor do I have the data allowance on my dongle (USB modem) to download it.
Any ideas on how to completely clean my PC?
Thanks in advance guys.

Answer #1
Try using ComboFix and run a scan with it. Scans normally don’t take that long. I think it says 10-20 minutes:
http://www.bleepingcomputer.com/download/anti-virus/combofix
If that doesn’t do the trick, download Emsisoft Emergency Kit. I linked to it below. It’s a pretty large file (111MB) but it very good imho at finding and deleting infections. No installation is require since it’s portable. Then restart your computer and go into “Safe Mode with Networking”. Run the Emsisoft Emergency Kit and run an update. After it’s finished updating, run a full system scan.
http://www.emsisoft.com/en/software/eek/
Answer #2
Thanks for the help.
I’ll give combofix a shot now, I need sleep soon but I would rather get this sorted.
I’ll be sure to get Emsisoft tomorrow at college when I haven’t got a download limit
Answer #3
hi, if your unable to install or run anything use Kaspersky rescue disc 12…unetbootin makes the process simple.
http://unetbootin.sourceforge.net/
you’ll need to burn to disc or install to usb using another PC. boot up Krd12 do a full scan. when windows is running OK, run SFC /SCANNOW as administrator.
Answer #4
OK dude – here is one of getting rid of it…
1) start in safe mode – if does not come up (the virus) then its a lame virus!
2) start in normal mode – see if you can start task-manager.
3) Find a unusual process – one thats out of the ordinary
4) right click -> open file location
5) DELETE!
6) restart – see if that works!

 

| Sitemap |