View previous topic :: View next topic |
Author |
Message |
xceleration Cheater
Reputation: 0
Joined: 25 Jan 2007 Posts: 43
|
Posted: Wed Oct 15, 2008 12:58 pm Post subject: Highly Contagious Dangerous Virus-psp,handphone Viable |
|
|
[CENTER] [/CENTER]
My computer was infected with virus since my friends came and connected my computer to his phone. Apperently his computer is already infected which infected is handphone and now my computer is infected. another friend of mine have his com infected by psp by him.
Here's how the virus look like:
Infected PSP
If i end the process it will open a new one.
It's files are invisible, and cant be removed.
It will still remain after restart.
It will spam pop-up if i end them with virus scan on , it will stop after a while but if i restart, it will return.
Virus Info-
(The Attributes and setting are changeable but no effect however.)
Virus scan only clear some virus probably created by those process, but virus remain.
My virus scan find some virus and clear them and then show this:
which then even after restart the virus still retain, scan again and this will pop up again.
There is a text file created by the virus-(Read Me)Pendekar Blank.txt
Salam Kenal Buat User yang sedang Aktif di Komputer ini
Saya adalah Pendekar Blank 1, Program yang dibuat oleh seseorang yang ingin
memberantas kejahatan di muka bumi ini dan saya dikirim ke sini untuk:
1. Mencoba memberantas virus-virus lokal yang sudah menyebar di Indonesia
2. Mencoba mengamankan komputer ini dari infeksi virus lokal, dan
3. Mencoba menghalangi anda untuk berbuat sesuatu yang tidak perlu dilakukan di komputer ini
Itulah 3 Misi saya setelah dikirim ke komputer ini
Mohon maaf apabila nantinya terdapat kesalahan-kesalahan selama melakukan 3 misi diatas
Mudah-mudahan anda adalah orang baik yang mempergunakan komputer pada jalan yang benar
I have no idea what it mean.. if u know please translate
btw spyware doctor is a really good virus scan, i used it compared with others, so i dun think it's the virus scan fault, as my friend scan it with another virus scan it also says restart which is useless.
If anyone think they know how to cure this, (system restore dun work) not reformat nor reinstall windows , please post them.
|
|
Back to top |
|
 |
Sup3R C3r34L Grandmaster Cheater Supreme
Reputation: 0
Joined: 05 Nov 2007 Posts: 1379 Location: Soviet Russia
|
Posted: Wed Oct 15, 2008 1:34 pm Post subject: |
|
|
re-format...
that's some nasty shit you got.
also it probably spreads via USB that's how your PSP passed it on.
_________________
It's sexy, amirite? |
|
Back to top |
|
 |
HalfPrime Grandmaster Cheater
Reputation: 0
Joined: 12 Mar 2008 Posts: 532 Location: Right there...On your monitor
|
Posted: Wed Oct 15, 2008 4:24 pm Post subject: |
|
|
Download ollydbg if you don't have it already. Open up multiple instances of it and attach each one to one of the bad virus processes running. When you attach, it should automatically pause the program. Once you've attached to all of them, go to each olly and close them. You should no longer have any virus processes running. Now delete all those files and do a virus scan.
Also, whenever you insert a foreign device, you can hold the shift key and nothing will get auto-run.
_________________
|
|
Back to top |
|
 |
Pancake Grandmaster Cheater
Reputation: 0
Joined: 26 Jul 2007 Posts: 843
|
Posted: Wed Oct 15, 2008 5:27 pm Post subject: |
|
|
i can't see, what anti virus u using?
_________________
|
|
Back to top |
|
 |
Sup3R C3r34L Grandmaster Cheater Supreme
Reputation: 0
Joined: 05 Nov 2007 Posts: 1379 Location: Soviet Russia
|
Posted: Wed Oct 15, 2008 5:32 pm Post subject: |
|
|
jst700 wrote: | i can't see, what anti virus u using? |
you're blind? wtf...
_________________
It's sexy, amirite? |
|
Back to top |
|
 |
rapion124 Grandmaster Cheater Supreme
Reputation: 0
Joined: 25 Mar 2007 Posts: 1095
|
Posted: Wed Oct 15, 2008 5:36 pm Post subject: |
|
|
The virus isn't godly. It's most likely one of those .DLL viruses that inject an instance of itself into every running process. Attach OllyDbg to an instance and see what it's doing. If the virus maker was pro, he would have made a rootkit that hides all the payloads of the virus. The person who made this is probably a script kiddy.
|
|
Back to top |
|
 |
Pancake Grandmaster Cheater
Reputation: 0
Joined: 26 Jul 2007 Posts: 843
|
Posted: Wed Oct 15, 2008 5:37 pm Post subject: |
|
|
xceleration, did you download a hack?
_________________
|
|
Back to top |
|
 |
SFP+ Comp. talk moderator
Reputation: 26
Joined: 02 May 2007 Posts: 1228 Location: Sweden
|
Posted: Wed Oct 15, 2008 11:48 pm Post subject: |
|
|
Download Unlocker. Great program, when you try to delete the .exes it'll say "Lock found" or something, unlocker will pop up and tell you which processes are using it, press "terminate all" and the file should be gone
Restart explorer.exe or restart the entire computer, if any system files are gong - run a repair through the windows boot disc.
|
|
Back to top |
|
 |
GG Grandmaster Cheater Supreme
Reputation: 4
Joined: 20 Jan 2008 Posts: 1589 Location: Australia
|
Posted: Thu Oct 16, 2008 12:51 am Post subject: |
|
|
Looks horrible!
xceleration wrote: | There is a text file created by the virus-(Read Me)Pendekar Blank.txt
Salam Kenal Buat User yang sedang Aktif di Komputer ini
Saya adalah Pendekar Blank 1, Program yang dibuat oleh seseorang yang ingin
memberantas kejahatan di muka bumi ini dan saya dikirim ke sini untuk:
1. Mencoba memberantas virus-virus lokal yang sudah menyebar di Indonesia
2. Mencoba mengamankan komputer ini dari infeksi virus lokal, dan
3. Mencoba menghalangi anda untuk berbuat sesuatu yang tidak perlu dilakukan di komputer ini
Itulah 3 Misi saya setelah dikirim ke komputer ini
Mohon maaf apabila nantinya terdapat kesalahan-kesalahan selama melakukan 3 misi diatas
Mudah-mudahan anda adalah orang baik yang mempergunakan komputer pada jalan yang benar
I have no idea what it mean.. if u know please translate
|
That's indonesian, though my knowledge of the language isn't sufficiant enough to translate.
I will print it out and take it to my Indonesian teacher, maybe she can shed some light
_________________
|
|
Back to top |
|
 |
blackdiamond Expert Cheater
Reputation: 0
Joined: 06 Oct 2007 Posts: 161
|
Posted: Thu Oct 16, 2008 12:27 pm Post subject: |
|
|
Zelda_454 wrote: | Looks horrible!
xceleration wrote: | There is a text file created by the virus-(Read Me)Pendekar Blank.txt
Salam Kenal Buat User yang sedang Aktif di Komputer ini
Saya adalah Pendekar Blank 1, Program yang dibuat oleh seseorang yang ingin
memberantas kejahatan di muka bumi ini dan saya dikirim ke sini untuk:
1. Mencoba memberantas virus-virus lokal yang sudah menyebar di Indonesia
2. Mencoba mengamankan komputer ini dari infeksi virus lokal, dan
3. Mencoba menghalangi anda untuk berbuat sesuatu yang tidak perlu dilakukan di komputer ini
Itulah 3 Misi saya setelah dikirim ke komputer ini
Mohon maaf apabila nantinya terdapat kesalahan-kesalahan selama melakukan 3 misi diatas
Mudah-mudahan anda adalah orang baik yang mempergunakan komputer pada jalan yang benar
I have no idea what it mean.. if u know please translate
|
That's indonesian, though my knowledge of the language isn't sufficiant enough to translate.
I will print it out and take it to my Indonesian teacher, maybe she can shed some light |
this is what google translate has to say about it
Quote: | Create a User Salam Know that are active in this Computers
I was Pendekar Blank 1, the program created by someone who wants to
combat crime in the face of this earth and I am here to be sent to:
1. Trying to combat viruses that have spread locally in Indonesia
2. Trying to secure this computer from virus infection, and
3. Discourage you to do something that does not need to be done on this computer
3 That is my mission sent to the computer after this
Apologize later if there are errors during the mission above 3
Hopefully you are good people that make the computers in a way that is true |
_________________
|
|
Back to top |
|
 |
|