How to remove a Rogue virus from computer?

August 19th, 2013

Hi there, I’ve recently discovered that I have a rogue virus installed on my computer . About 3 hours ago I was browsing the interwebz then suddenly my browser closed and my desktop backround turned black, all the icons on it got deleted, my start menu f***’d up and whenever I go on it there’s no icons either, not even my computer shows up! As well as that every 10 minutes or so I get bombarded with warning messages saying “failed to save all the components for the file _______”. I’ve tried restoring my computer to a previous point but that didn’t work. I’ve tried scanning using Malwarebytes to remove it but what happens is that it finds a ‘suspicious item’ called “ProHacker.StartRunner” or something like that. I remove I still get bombarded with these warning messages. I’ve also tried putting all my files onto a external HDD so that I can format the whole computer but my HDD won’t show up for some reason. :\ Any help? I’m on windows 7 64 bit btw.
Answer #1
format ?
Answer #2
Yeah but I want to keep all my files. I have a load of college work and music/movies which I want to keep !
Answer #3
Get a good AV (Avira, Nod32 or Kaspersky) and scan for infected files. You should also run Malwarebytes again, but this time on safe-mode.
Answer #4
hitman pro takes 90 seconds to scan and uses 6 different av engines
Answer #5
_Hell_Boy_ replied: format ?
A normal quick format does nothing, you need to do more than that after virus.
Answer #6
THE MELON MAN replied: Yeah but I want to keep all my files. I have a load of college work and music/movies which I want to keep !
format only C and scan other partitions
Answer #7
fresh format then install good AV and scan full system.
Answer #8
Better use DBAN first:
http://www.dban.org/
Answer #9
Kaspersky Virus Removal Tool 2011
http://support.kaspersky.com/viruses/avptool2011?level=2
Answer #10
appleflies replied: hitman pro takes 90 seconds to scan and uses 6 different av engines
^^Try this. If that doesn’t do the trick, download Emsisoft Emergency Kit. I linked to it below. It’s a pretty large file (111MB) but it very good imho at finding and deleting infections. No installation is require since it’s portable. Then restart your computer and go into “Safe Mode with Networking”. Run the Emsisoft Emergency Kit and run an update. After it’s finished updating, run a full system scan.
http://www.emsisoft.com/en/software/eek/
Answer #11
Okay so I’ve stopped getting warning messages and all that which is good but I still can’t access my files, also the icons haven’t appeared on my desktop or in the start menu :\\
Answer #12
post a hijack this log on here and the peeps will give you there help on it
Answer #13
Okay good, I’ve gotten rid of the virus now (after a kaspersky virus removal tool scan which took about a day to complete lol, cheers for the rec Gjoski)
However though this virus has “hidden” all of my files and icons. I can now access all my files but all the icons are under the hidden setting so they are faded.
My question is how do I ‘Unhide’ all these files at once instead of manually clicking over every single file. Which would take days lol. Cheers
Here’s an example of how they look (not my pic btw)

Answer #14
have you tried this ??
http://www.bleepingcomputer.com/tutorials/how-to-see-hidden-files-in-windows/
Answer #15
Yeah I’ve tried that and all that does is makes me view the ‘hidden files’. It doesn’t unhide them which is what I’m trying to doo
Answer #16
Maybe you can do a System Restore to a date before that started to happen or resetting the folder/icon views. Go to Organize » Folder » Restore Default, then on the View tab » click Reset folders and Restore defaults.
Answer #17
what about this link for you
http://forums.techguy.org/virus-other-malware-removal/991326-virus-has-hidden-most-files.html
Answer #18
You could try a linux live cd.
This variant is only 30 MB \/
http://www.slitaz.org/en/
This should allow you to view all your files like normal, in theory. Then just copy and paste to flash drive, external HDD?
Answer #19
id use hirens boot disc and run the AV’s from that

 

| Sitemap |