Main Forum > General Computer Support

Super malicious root kit virus Trojan.msil

(1/4) > >>

Elrammstein:
I recently started noticing my PC not having access to control panel options, such as security, windows update trouble shooter, and most of the control panel options. The system would not shut down, I left it on for 24 hours once before I manually shut it down by holding the power cord.


Fixing the issue :
In safe mode
I ran malwarebyte root beta, the program only found one file a .jpg file with Trojan.passwords.msil which I cleaned up. Assuming my system was clean I proceeded to do a normal boot and log in. Turns out I was wrong, removing the Trojan and booting in normal now only returned a black screen with my cursor on it. After some researched I read that Ctrl alt del would still work, so I made it so that I could at least restart in safe mode.

I'm on 2 small solid state drives so there is no chance I can start in safe mode by pressing the f8 key

I ran tweaking.com windows repair and everything seemed ok it went thru the entire process, however, I am receiving the black screen with only a cursor and Ctrl alt del capability.

I'll try to post my specs if I can get a follow up

Pls note I wrote this on an iPhone so spelling might be off

jraju:
Hi,
            After fixing with malware bytes, you should have let it clean the entire drives. There is an option to select to scan entire system before normal reboot. Because, malware bytes normal scan run only in c: drive. I hope you understand.
               Now, if you could start computer in safe mode, do this and then try to boot normal. Then if the problem is  not fixed, then you could try to download JRT tools from bleeping computer.com or thisusu.org, and then run it. It will fix most of the third party attacks.
                   If those steps could not fix, then, it is better to boot in safe mode, download aswmbr from the avast site or reputed site and then run it on safe mode, and then wait. It will fix some hidden rootkit.
                          If it prompts to some corruption and asked you to run fixmbr, run it. You could safely run this command in that program. It will fix any master boot error.
                               Try and then post your progress

Shane:
If you can ctrl alt delete can you open task manager and start explorer.exe?

Shane

Boggin:
I once had the black screen with just the white cursor but it wasn't because of an infection and the only way I could get back in was with a Kaspersky Rescue Disk which you can create if you have access to another computer or you may be able to do it in Safe Mode with Networking. http://support.kaspersky.co.uk/viruses/rescuedisk/

As you can boot into Safe Mode you could also manually run a full scan with MSRT by going Start - type mrt.exe and press enter, then select the Full scan option.

I assume you have your OS on one of the SSDs and your programs on the other ?

If that is the case then disconnect the programs one and see how it boots either in normal mode or with F8 and run the scans on that.

Rick:

--- Quote from: Shane on January 15, 2015, 05:20:12 pm ---If you can ctrl alt delete can you open task manager and start explorer.exe?

Suggestion; Can he remove the hard drive and connect it on a USB port; then run Malware-bytes on another computer?

In my humble opinion, any infected hard drive should only be checked on a clean system...

I have also found using 360 to be very helpful recently

That program you sent for the phone is working great, thank you!

best regards,
rick

Shane

--- End quote ---

Navigation

[0] Message Index

[#] Next page

Go to full version