win32/beovens virus - Techist - Tech Forum

Go Back   Techist - Tech Forum > Computer Software > Microsoft Windows and Software
Click Here to Login
Closed Thread
Thread Tools Display Modes
Old 03-15-2006, 04:27 PM   #1 (permalink)
Junior Techie
Join Date: Apr 2003
Posts: 62
Default win32/beovens virus

I am typing this from another computer. The computer that has this virus on it will only boot to safe mode and will not connect to the internet. I have run mcfee virus and it will not remove the virus. How do i remove the virus from safe mode?



grapeape is offline  
Old 03-15-2006, 04:52 PM   #2 (permalink)
Monster Techie
Join Date: Mar 2006
Posts: 1,533

download ewido anti-malware & full database updates
and also hijackthis
, burn em to cdr/cd-rw disc or copy to a usb flash memory/external hd and install on the infected pc (of course first ewido and then the updates) , run ewido and do as follows
1. Click on "Scanner" and choose "Settings".
2. Under the bottom section "What to Scan?" make sure "Scan every file" is selected.
3. Select "OK" and you will return to scanning options.
4. On the main screen click on "Complete System Scan" to start the scan.
5. While the scan is in progress, you will be prompted to clean the first infected file if finds. Put a check next to "Perform action on all infections" in the lower left corner.
6. Then choose "Clean" and click "OK".
7. After everything was cleaned exit ewido

run hijackthis and click "do a system scan and save a logfile" copy that logfile to a floppy/usb flash memory/external hd or burn it to cd/cd-rw disc (if thats even possible in safe mode,dont know as i never tried to burn in safe mode) anyway open a new thread at this section and open the hijackthis log and copy & paste it and wait instructions (this is neccasry as ewido might not catch everything)

jeremy is offline  
Old 03-15-2006, 07:50 PM   #3 (permalink)
Techie Beyond Description
Osiris's Avatar
Join Date: Jan 2005
Location: Kentucky
Posts: 36,817
Send a message via ICQ to Osiris Send a message via AIM to Osiris Send a message via MSN to Osiris Send a message via Yahoo to Osiris

Follow these instructions carefully

Download ALL 4 programs and update them as soon as they are installed, this is very important, except for Hijackthis!.

Ad Aware SE Personal Free

Spybot Search and Destroy Free

Microsoft Antispy

HijackThis Free


Follow these steps

Delete the prefetch folder C:\WINDOWS\Prefetch, this folder will come back on next reboot.

Delete all cookies and temporary internet files in the control panel.

Go to Start, run, type msconfig, go to startup, disable everything except your antivirus, click apply, dont reboot yet.

Download Msconfig Cleanup below

Msconfig Cleanup Free

Run Msconfig Cleanup after you unchecked the items you were told to uncheck and recheck, click "Select All", then click "Clean up Selected", then click "Quit".

Now run each spyware program 1 by 1. Running all 3 at the same time will slow most systems down.

When each program has finished scanning, remove everything.

For Microsoft Antispy, after it has finished scanning, some items will/might be on ignore, you will need to select remove unless the program is valid such as VNC Viewer, etc.

Now go to the recycle bin and delete everything that is in it.

When finished with the scans, reboot, and go into Safe Mode and run these scans again, remove everything they find, and then reboot back into Windows in normal mode. You dont need to run Hijackthis! yet.

Then run HiJackthis!

Save the log, copy and paste the log on
Do not attach the log, copy and paste always. This will make things go much faster.
Osiris is offline  
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off

Copyright 2002- Social Knowledge, LLC All Rights Reserved.

All times are GMT -5. The time now is 01:26 AM.

Powered by vBulletin® Version 3.8.8 Beta 1
Copyright ©2000 - 2018, vBulletin Solutions, Inc.