Help! virus' immediately after just restored computer with xp disk

  1. #1
    labine07 is offline Newbie

    Help! virus' immediately after just restored computer with xp disk

    I recently restored my computer using my xp disk, wiped everything off. When I went to get antivirus as soon as it was starting fresh, found out my old free antivirus AVG wouldn't work with my xp, so I had to find another antivirus. While looking for what was best to use I believe my computer was infected. Decided to go with Avast. Have downloaded it, ran it, and it has found some virus' that it can not repair, so it suggested to put them in a virus chest. It also said that they are in windows folders and something about not having full use of files. After that happened my shortcut key for my at&t yahoo wont work. Tried restoring, and taking off and re-installing the at&t yahoo disk, but as soon as it does the last steps of installing it bleeps that there is a virus. Win32:Trojan-gen(other) virus/worm. Once again can't repair, they suggest to put in virus chest, but then at&t yahoo shortcut link wont work. Not sure if related, but also everytime I use my printer, the que locks up as it's trying to delete from que once printing complete, so I need to shut off printer and turn back on between printing. Not sure if I've put enough information in here, I am not very familiar with working on this stuff, and first time looking for help on a forum. Thanks, labine07


  2. #2
    VopThis is offline Senior Member (Canada)
    A new install without protection can often be compromised in under 10-15 minutes - it is that bad out there.

    You may be best advised to do a clean install again with antivirus tool installed 'offline'. Also, a router is also highly advisable - that will make almost all ports on your Internet connections not be visible to the outside world and as a result less vulnerable to being 'hacked'.



    However, you might have SOME success with the following tools:

    * Please download Malwarebytes' Anti-Malware from HERE or HERE

    Double Click mbam-setup.exe to install the application.
    • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
    • If an update is found, it will download and install the latest version.
    • Once the program has loaded, select "Full Scan", then click Scan.
    • The scan may take some time to finish, so please be patient.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Make sure that everything is checked , and click Remove Selected.
    • When disinfection is completed , a log will open in Notepad and you may be prompted to Restart(See Extra Note).
    • A run log is automatically saved by MBAM and can be viewed by clicking the Logs TAB in MBAM.
    • Copy&Paste the entire report in your next reply along with a fresh HijackThis log.
    • Please post any current revised observations.

    Extra Note:
    If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.

  3. #3
    labine07 is offline Newbie
    Hi there... I had tried to do another install by putting in my xp disk again over the weekend, however many things stayed on the computer including the avast anitvirus, but as soon as I got to finishing installing my internet disk it said there was a virus, couldn't repair, if i asked to remove it, it said it was in a windows folder... are you sure you want to do so, may make things not work right. Did I do something wrong when trying to re-install? Also, how do you have antivirus tool installed offline? and what is a router? Do you need to buy one? And, one final question. Do you recommend buying anti-virus vs free antivirus? I'm not very computer tech-y... so I appreciate all of the help!! My computer is doing the malwarebytes scan now, and I will post the results also like you asked.

    Thanks Again!
    Labine07

  4. #4
    labine07 is offline Newbie
    Here is the report after the scan:

    Malwarebytes' Anti-Malware 1.30
    Database version: 1454
    Windows 5.1.2600 Service Pack 3

    12/3/2008 11:57:21 AM
    mbam-log-2008-12-03 (11-57-21).txt

    Scan type: Full Scan (C:\|)
    Objects scanned: 104849
    Time elapsed: 51 minute(s), 0 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 1
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Ext\Stats\{7370f91f-6994-4595-9949-601fa2261c8d} (Adware.BHO) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

  5. #5
    VopThis is offline Senior Member (Canada)
    Save 20% on AVG Internet Security 2012 Suite!
    Also, how do you have antivirus tool installed offline?
    Download such a tool from a clean PC to a non-contaminated CD or USB device to install offline.

    Do you recommend buying anti-virus vs free antivirus?
    Not really - at least not initially. Try downloading AVG8:

    AVG Free - Download installation files & documentation



    and what is a router? Do you need to buy one?
    I, personally, would not be without a router. A router creates an additional security layer because it is like finding the address of an apartment building (finding your PC online). But, even if the bad guys determine you have a apartment in that building (a PC on that IP address) you are in minimal jeopardy if the lobby directory does not say which apartment you are in (no direct path to your PC). Similarly, a router ensures that there are now 2 levels of access points required and not just one (one simple civic address) when your PC is connected directly to a modem.
    • Modem has a public IP address (as is always the case).
    • PC now gets a router provided PRIVATE IP address (unknown apartment number/access code) that can basically protect you from incoming traffic probes.
    • Router (often a minimum 4 usable ports) is connected between the modem and PC(s) and can connect multiple PCs.


    SEE selection of modems starting at $15US: Broadband Router, DSL Router, Network Routerat TigerDirect.com




    Sounds like you still did not get a clean install by deleting all existing partitions and recreating them:

    XP Clean Install
    10b If the hard drive or partition has a previous installation of XP you want to remove, choose to delete the partition by pressing "D". You will then be prompted to create a new partition in the empty space. This will remove all data from the deleted space.

+ Reply to Thread