Page 2 of 2 FirstFirst 12
Results 11 to 18 of 18

Thread: virtumonde/iedefender fix>SS&D crash

  1. #11
    Junior Member
    Join Date
    Jan 2012
    Posts
    10

    Default whoa!

    here is what happened:

    I connect the ethernet cable, turn on the comp, open firefox, follow your instructions.

    combofix got stuck at the same place it did earlier, so I restart to try it in safe mode.

    Now after the BIOS stuff, the comp just sits there with a black screen! does not get to the user password or anything.

    man this thing is wicked in that it prevents you from doing things to get rid of it.

  2. #12
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi,

    What happens if you try to start system with ethernet cable unplugged?
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  3. #13
    Junior Member
    Join Date
    Jan 2012
    Posts
    10

    Default

    hello

    I tried with the ethernet cable unplugged, and there was the same black screen after the BIOS.

    I think where I messed up was 1) after the first combofix, connecting to the internet via firefox to access these forums and 2) forgetting to run your combofix code in safe mode. From the info provided by Spybot, I am supposed to leave the comp disconnected during the cleaning of virtumonde.

    I have located my windows 7 disc as I will probably have to reinstall. Let me know if you have any other ideas.

  4. #14
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi,

    Reinstallation is likely needed. I just wonder if hard drive has issues (those earlier bad sectors you mentioned + jammed ComboFix runs). I recommend to monitor how it performs.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  5. #15
    Junior Member
    Join Date
    Jan 2012
    Posts
    10

    Default very strange

    I ran the windows 7 disc repair and it found:

    'a recent driver installation or upgrade may be preventing the system from starting.'

    but the problem could not be fixed. I did manage to get into windows, and everything was running smoothly. I did not attempt to run combofix.

    the problem is a long delay, about 1 hour, at startup.

  6. #16
    Junior Member
    Join Date
    Jan 2012
    Posts
    10

    Default thanks

    I read this about virtumonde on wikipedia:

    'Creates a virus critical driver in C:\Windows\system32\drivers\ (ati0dgxx.sys)'


    What that means, I don't know, but I hope my hard drive is fine.

    thanks for your help blade, once I get into windows again I'll backup, and reinstall, hopefully that will take care of it.

  7. #17
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Hi,

    If the hard drive has hardware issue (bad sectors can be one sign of it) then best thing is to backup all important asap. That way the data will be safe if hard drive is nearly at its end. When you have reinstalled keep monitoring hard drive health by running regular checks for some time to see if bad sectors keep appearing.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

  8. #18
    Security Expert: Emeritus Blade81's Avatar
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    25,288

    Default

    Due to inactivity, this thread will now be closed.

    Note:If it has been three days or more since your last post, and the helper assisting you posted a response to that post to which you did not reply, your topic will not be reopened. At that point, if you still require help, please start a new topic and include a fresh DDS log and a link to your previous thread. Please do not add any logs that might have been requested in the closed topic, you would be starting fresh.

    If it has been less than three days since your last response and you need the thread re-opened, please send me or other MOD a private message (pm). A valid, working link to the closed topic is required.
    Microsoft Windows Insider MVP 2016-2020
    Microsoft MVP Consumer Security 2008-2015
    UNITE member since 2006

    If you have problems create a thread in the forum, please.

    Malware removal instructions are for the correspondent user's case only.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •