win32/beovens virus

Status
Not open for further replies.

grapeape

Baseband Member
Messages
62
I am typing this from another computer. The computer that has this virus on it will only boot to safe mode and will not connect to the internet. I have run mcfee virus and it will not remove the virus. How do i remove the virus from safe mode?

Thanks

Michael
 
download ewido anti-malware & full database updates
http://www.ewido.net/en/download/
http://www.ewido.net/en/download/updates/
and also hijackthis http://www.download.com/3000-8022-10227353.html
, burn em to cdr/cd-rw disc or copy to a usb flash memory/external hd and install on the infected pc (of course first ewido and then the updates) , run ewido and do as follows
1. Click on "Scanner" and choose "Settings".
2. Under the bottom section "What to Scan?" make sure "Scan every file" is selected.
3. Select "OK" and you will return to scanning options.
4. On the main screen click on "Complete System Scan" to start the scan.
5. While the scan is in progress, you will be prompted to clean the first infected file if finds. Put a check next to "Perform action on all infections" in the lower left corner.
6. Then choose "Clean" and click "OK".
7. After everything was cleaned exit ewido

run hijackthis and click "do a system scan and save a logfile" copy that logfile to a floppy/usb flash memory/external hd or burn it to cd/cd-rw disc (if thats even possible in safe mode,dont know as i never tried to burn in safe mode) anyway open a new thread at this section http://www.techist.com/forumdisplay.php?forumid=126&s= and open the hijackthis log and copy & paste it and wait instructions (this is neccasry as ewido might not catch everything)
 
Follow these instructions carefully

Download ALL 4 programs and update them as soon as they are installed, this is very important, except for Hijackthis!.

Ad Aware SE Personal Free

Spybot Search and Destroy Free

Microsoft Antispy

HijackThis Free

Ewido

Follow these steps

Delete the prefetch folder C:\WINDOWS\Prefetch, this folder will come back on next reboot.

Delete all cookies and temporary internet files in the control panel.

Go to Start, run, type msconfig, go to startup, disable everything except your antivirus, click apply, dont reboot yet.

Download Msconfig Cleanup below

Msconfig Cleanup Free

Run Msconfig Cleanup after you unchecked the items you were told to uncheck and recheck, click "Select All", then click "Clean up Selected", then click "Quit".

Now run each spyware program 1 by 1. Running all 3 at the same time will slow most systems down.

When each program has finished scanning, remove everything.

For Microsoft Antispy, after it has finished scanning, some items will/might be on ignore, you will need to select remove unless the program is valid such as VNC Viewer, etc.

Now go to the recycle bin and delete everything that is in it.

When finished with the scans, reboot, and go into Safe Mode and run these scans again, remove everything they find, and then reboot back into Windows in normal mode. You dont need to run Hijackthis! yet.

Then run HiJackthis!

Save the log, copy and paste the log on www.techist.com
Do not attach the log, copy and paste always. This will make things go much faster.
 
Status
Not open for further replies.
Back
Top Bottom