Virus-Need help

Darn Malware

Wednesday, January 14, 2009 by WeatherBound | Discussion: Personal Computing

I have vista and was running One-Care Anti virus and firewall.  Some how a virus came into my system.

I have uninstalled One-Care and installed Avast Antivirus software that has a boot scan. I did the boot scan and it found 5 viruses on my system. Avast took care of those. I installed Comodo firewall just because i think it better to have a firewall installed.

I then Installed MalwareByts Anti malware soft-wear and it found one attack. And deleted it.

 

So far all sounds good but

I am still receiving messages in my Email saying that my email i sent did not go thrue and gives me the email addresses where it was supposed to go. I do not Email very much and all these addresses where not sent by me.

I will also add that i did try Ad-Aware, Spy-blaster and Avg and others and all say everything is Good.

I am still getting theses could not be delivered emails that i did not send. when i look at the date the error message says the recent date of today.....

Has any one run in to this? If so how long does it take for those could not be delivered emails to get out of the Email system?

I will tell you it has been since Friday since all scans have been showing up with no viruses.

If you have had this virus. Let me know what you did to get rid of it.

Any help would be appreciated

Thanks

First Previous Page 3 of 6 Next Last
JaggedSparFel
Reply #41 Saturday, January 17, 2009 11:49 AM

just great, i got an email "Re: asdsd" or something like that from some random person and opened it

 

does this particular worm spread through email?

 

is it invasive, did it harm your computer?

WeatherBound
Reply #42 Saturday, January 17, 2009 12:07 PM

From what i have learned is that none of my Friends have received the virus from my computer. They are all clean

It did not harm my computer or slow it down. I still ? if the emails are even being sent from my computer.

I would suggest to run remove It and see what it comes up with.

WeatherBound
Reply #43 Sunday, January 18, 2009 1:23 PM

Updated.

Crash may be needed.

Emails are comming back and a lot at that.

Me is pulling out my Hair.

PuterDudeJim
Reply #44 Sunday, January 18, 2009 4:17 PM

WeatherBound
Updated.

Crash may be needed.

Emails are comming back and a lot at that.

Me is pulling out my Hair.

Don, run HiJack This and send me a copy of the results.

PuterDudeJim
Reply #45 Sunday, January 18, 2009 4:18 PM

Don, also, take a screenshot of your Program Files folder and send. Please.

PuterDudeJim
Reply #46 Sunday, January 18, 2009 4:24 PM

Don, send me you phone number via email. I can probably help with this. I do it all the time here for friends and siblings. 

Anthony R
Reply #47 Sunday, January 18, 2009 4:52 PM

Post hijackthis log to http://www.hijackthis.de/ hit enter, and see what it finds.

PuterDudeJim
Reply #48 Sunday, January 18, 2009 5:31 PM

Post hijackthis log to http://www.hijackthis.de/ hit enter, and see what it finds.

Not necessary...he had two items needing removal, the rest were normal Vista stuff.

WeatherBound
Reply #49 Monday, January 19, 2009 4:35 PM

Well, They have stopped.
That is funny in it self. Dose it not take days for returned emails to go through the mail system. But so for nothing has came through. :.)

DrJBHL
Reply #50 Monday, January 19, 2009 4:45 PM

WeatherBound
Well, They have stopped.
That is funny in it self. Dose it not take days for returned emails to go through the mail system. But so for nothing has came through. :.)

A friend in Israel had a similar problem, but it was the ISP that was infected. I wonder if that was your problem.

PuterDudeJim
Reply #51 Monday, January 19, 2009 4:50 PM

A friend in Israel had a similar problem, but it was the ISP that was infected. I wonder if that was your problem.

Well he definitely did have some malware found by HiJack this, and removeit pro.

WeatherBound
Reply #52 Tuesday, January 20, 2009 3:36 PM

They are Back.    crash is in the future.

DrJBHL
Reply #53 Tuesday, January 20, 2009 3:44 PM

Wellll....thinking about "format C"?

 

"A friend in Israel had a similar problem, but it was the ISP that was infected. I wonder if that was your problem.


Well he definitely did have some malware found by HiJack this, and removeit pro."

 

Naaah....it was just one of your skins, Jim....   

Seriously though, I think you've gotten to the point of formatting your drive, mate....hope you have a clean backup.

 

 


 

WeatherBound
Reply #54 Tuesday, January 20, 2009 4:06 PM

i am talking about full crash. start all over. and may be just through it out the window. lol

 

DrJBHL
Reply #55 Tuesday, January 20, 2009 4:15 PM

WeatherBound
i am talking about full crash. start all over. and may be just through it out the window. lol

 

WeatherBound
Reply #56 Tuesday, January 20, 2009 4:19 PM

I forgot to add. this is really funny.

I cleaned the startup menu. not sure why but after running Hijack this and RemoveIt. all emails stop. The funny thing is next thing i know is restore and backup is on my clean startup menu. I did not even run it. then emails come back.

Then Jim tells me to delete the two things from hijack this all things go good again. no emails.

Since i was suspicious of restore and back up thing. I cleared the start menu again. next thing you know backup and restore is on it again and emails are back.

Any ideas how it gets back on there.

I have never use that so it should not be on the start menu

BigDogBigFeet
Reply #57 Tuesday, January 20, 2009 4:51 PM

Sounds like the virus is using backup and restore to activate the email worm again.  Programs appear on the left side of the start menu based on frequency of use.

PuterDudeJim
Reply #58 Tuesday, January 20, 2009 5:09 PM

Turn off system restore on all drives, reboot, delete backups, reboot, run the progs that let you get rid of the worm to begin with. Once all this is done, turn system restore back on. If this don't work, I could probably fix it if I had it. But you are about to the point where a format is called for. It may be a polymorphic virus, which stays ahead of the virus programs by changing into some other form every so often.  http://www.webopedia.com/TERM/P/polymorphic_virus.html

WeatherBound
Reply #59 Tuesday, January 20, 2009 9:31 PM

Jim did all above. Scans have come up empty handed. If you dont mind i can send you a hiJack this doc to see if you can find some more or new ones.

this is crazy. to think I had Anti-virus and firewall with spyblaster install to make me feel safe.

PuterDudeJim
Reply #60 Tuesday, January 20, 2009 9:43 PM

Send away, I wish I was there. Fixing this kind of thing is a lot easier hands on. I have found precious little I can't fix. If I can get my hands on it. That's why a PC tech hates phone calls. My Dad in law sent me to school for this stuff. I wish I could be there to fix this.

Please login to comment and/or vote for this skin.

Welcome Guest! Please take the time to register with us.
There are many great features available to you once you register, including:

  • Richer content, access to many features that are disabled for guests like commenting on the forums and downloading skins.
  • Access to a great community, with a massive database of many, many areas of interest.
  • Access to contests & subscription offers like exclusive emails.
  • It's simple, and FREE!



web-wc01