SHININGRIVER'S PROFILE
I do freelance photoshop and writing in my free time. I'm also a computer programmer.
Search
Filter
The Long Long Road.
Virus threat....
spoiler: I'm speaking this out of what I think is happening
Your desktop seems to be fine at the moment, if not only at the first stages. For now, I think we'd want to focus on what happened on your laptop.
Are you able to boot on safe mode (with command prompt)? If you're able to, I'd like you to try these commands out:
>> tasklist
This should display all running programs. Take note of what you think is suspicious.
Now, try on "MSCONFIG" and click on "Startup". Look for the files that looks very suspicious (Like the one I have on my screenshot. It's the ones in red.).

The other one is not listed as a valid program, but is initiated during startup. The other one, it is initiated during startup, but from a questionable location "Application Data" (Which supposed to contain, let's say, save files from games from this website and some other configuration files and data of your installed programs. It should not run any program from that location.). What you need to do is to just untick the checkbox and click on "apply". It may prompt you to restart your computer for it to take effect, so let's do that. Then, let's check msconfig again if there were really changes that were made.
Don't worry about messing around with this section of the MSConfig since this just configures which programs to run as soon as windows start up. If you'd like, have someone you trust to do this out for you.
This should prevent further actions for now. I do not know the extent of the damage the virus has done, since I think I needed to see it personally, but let's see what we can do to restore them. Do you have a list of things that you believe are not working on your laptop?
Your desktop seems to be fine at the moment, if not only at the first stages. For now, I think we'd want to focus on what happened on your laptop.
Are you able to boot on safe mode (with command prompt)? If you're able to, I'd like you to try these commands out:
>> tasklist
This should display all running programs. Take note of what you think is suspicious.
Now, try on "MSCONFIG" and click on "Startup". Look for the files that looks very suspicious (Like the one I have on my screenshot. It's the ones in red.).

The other one is not listed as a valid program, but is initiated during startup. The other one, it is initiated during startup, but from a questionable location "Application Data" (Which supposed to contain, let's say, save files from games from this website and some other configuration files and data of your installed programs. It should not run any program from that location.). What you need to do is to just untick the checkbox and click on "apply". It may prompt you to restart your computer for it to take effect, so let's do that. Then, let's check msconfig again if there were really changes that were made.
Don't worry about messing around with this section of the MSConfig since this just configures which programs to run as soon as windows start up. If you'd like, have someone you trust to do this out for you.
This should prevent further actions for now. I do not know the extent of the damage the virus has done, since I think I needed to see it personally, but let's see what we can do to restore them. Do you have a list of things that you believe are not working on your laptop?
Virus threat....
I do manual tracking first while I scan the system in periods. For example, I take note of what occurs unusually for every 2 hours and scan the system twice a day. I regularly check (like, every 15 minutes or so) if there's something on the taskmanager that's running (under my username) that I did not initialize.
Sometimes, you'll see an 'autorun.inf' on either or both of your drives (sometimes, it could also be on the registry). You need to delete the one on the registry first.
Also, you can check if the program is being run when window starts. I believe what you need to type in on "Run" is "msconfig", and check on the "Startup" tab. If there's a program there that's run by something I did not initiate, then I remove that and take note of the file name. Then I do a search on the registry for related actions and files. If the antivirus does not detect it as a threat, then I delete it myself.
Just a precaution, do this on safe mode.
Sorry for the wall of text. I just got out of work, and I'm basing this off from a single type of virus that corrupted my folders (turning them to executables). Can you tell me more on what you notice the virus seem to do on your system (or anything that is out of ordinary), and then I'll see what we can do.
Sometimes, you'll see an 'autorun.inf' on either or both of your drives (sometimes, it could also be on the registry). You need to delete the one on the registry first.
Also, you can check if the program is being run when window starts. I believe what you need to type in on "Run" is "msconfig", and check on the "Startup" tab. If there's a program there that's run by something I did not initiate, then I remove that and take note of the file name. Then I do a search on the registry for related actions and files. If the antivirus does not detect it as a threat, then I delete it myself.
Just a precaution, do this on safe mode.
Sorry for the wall of text. I just got out of work, and I'm basing this off from a single type of virus that corrupted my folders (turning them to executables). Can you tell me more on what you notice the virus seem to do on your system (or anything that is out of ordinary), and then I'll see what we can do.
Virus threat....
It depends on the severity of what the virus can do.
If I'm not mistaken, this particular virus infects all executable files (includes .exe, .scr, .rar, .zip, .htm, .html). It will corrupt the file, making it nearly impossible to run (a sad thing, it may infect system files... and that is catastrophic.
For now, you can try to disconnect your external media devices (external HDD, etc), disconnect from the internet, boot in safe mode, and run your antivirus there (hope it isn't broken yet, or can find it).
Last resort is, as always, clean format.
I'll try to research on this more later. I'm about to go to work. :D
If I'm not mistaken, this particular virus infects all executable files (includes .exe, .scr, .rar, .zip, .htm, .html). It will corrupt the file, making it nearly impossible to run (a sad thing, it may infect system files... and that is catastrophic.
For now, you can try to disconnect your external media devices (external HDD, etc), disconnect from the internet, boot in safe mode, and run your antivirus there (hope it isn't broken yet, or can find it).
Last resort is, as always, clean format.
I'll try to research on this more later. I'm about to go to work. :D
OMG Another logo and MORE music? OH NOES!
Sorry, I'll make one for you to make up the time lost. T____T been busy with work for the past weeks.
We're Hiring! *le gasp* :>
I can help you with the Writer and/or Graphic Designer part. You can check my thread in the Creative Corner. :D
Coming Soon: Infinity 2
I'm very excited to try this one out~! *Subscribed*
I hope there's an improvement with the graphics...
I hope there's an improvement with the graphics...
RSD Video
Ah... Ok. I thought you meant the huge clock before dark hour hehe... Ok then...
BTW, just curious, Social Links are still available, right? Wouldn't it be funny for an awkward social link hehehe :D
BTW, just curious, Social Links are still available, right? Wouldn't it be funny for an awkward social link hehehe :D
RSD Video
What I mean is the same thing they used in P4 the Animation, to tell as if it's the next day... transition thing.
RSD Video
Pages:
1














