Computing.Net > Forums > Security and Virus > Severe virus/trojan attack - HELP!

Computing.Net: Over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to sign up now, it's free!

Severe virus/trojan attack - HELP!

Reply to Message Icon

Original Message
Name: baraka_17360
Date: July 25, 2007 at 14:51:24 Pacific
Subject: Severe virus/trojan attack - HELP!
OS: Win2K SP4
CPU/Ram: 2.8 MHz / 1Gb
Model/Manufacturer: Computer Associates, PA
Comment:

Hi, everyone!

I have been on dial-up for 10 years. At last I was able to install broadband through Hughes satellite and in 3 week was attacked by severe something(???). With my Norton Personal Wirewall 2002 and Norton Antivirus 2002 with latest antivirus data I cannot figure out for more than a week what's happening (with 17 years of working in computer field...)

I have 3 operating systems Win2K on partitions (let's call them this) A, B & C.

My problems began when suddenly some of my directories became unreadable with bunch of files and non-existing subdirectories consisted of scrambled characters: squares, symbols, etc. It it important to emphasize that while some of them are unreadable from system A (i.e. when I boot into A), the same bunch is readable from system B and vice versa - the other bunch is not readable from B, but readable from A.

It happens mostly on the data partitions - I have 8 of them on 3 hard drives altogether.

Then it became much worth with loss of the systems and crashes on 2 other computers on the home network.

The other problems include, but not limited to:
1. complete wipeout of one partition
2. blue screens of death starting from no bootable device (sorry. I did not write), hardware errors, UNEXPECTED_KERNEL_MODE_TRAP
3. windows chkdisk at startup wipes out directories and converts them into files (it's logical for unreadable characters, though)

I was restoring the systems from the drive image and data from backups, but problems continue, of course, because the reason for them remains.

Scanned with McAfee, spyware programs, etc. and did not find anything. If you need more info about my systems please let me know and I would post them.

An interesting detail, though. Started software Trojan Remover Rmvtrjan.exe on the infected system, it crashed at the scan for "bogus explorer" and whenever I tried to start it again, Dr. Watson gave me very confusing errors, but NOT about Rmvtrjan.exe, BUT about programs called differently each time, like ad34.exe, cj87.exe, ik98.exe, etc...
Certainly there is some monster sitting there.

I am absolutely devastated, because my work depends on computer and I spent already hours and hours and could not even come closer to the solution. Which programs to use to detect it? Can I recover files which are unreadable from one partition, but readable from another?

Your help would be appreciated with NO LIMITS of my gratitude.

Looking forward to hearing from you.


Thanks from baraka_17360


Report Offensive Message For Removal


Response Number 1
Name: ScoobyDoo
Date: July 25, 2007 at 21:27:35 Pacific
Reply: (edit)

I am not a regular on this board and limited to the helps I can give. I cannot request you post an HJT scan result or results from a few other detection programs.

What I did notice is of the (3) .exe files you listed. Only one came up with results on a google search.

First thing I believe I would do is upload those 2 files (cj87.exe, ik98.exe) to either Virus Total or Jotti's File scan and see if they are infected and maybe give a clue as to what your system is infected with.

Virus Total: http://www.virustotal.com/

Jotti's File Scan: http://virusscan.jotti.org/


I would also run an online scan.

BitDefender : http://www.bitdefender.com/scan8/ie...

I may be on the wrong track but all you can lose is a little time while you wait for the tech's on this board to post.


Report Offensive Follow Up For Removal







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home








Do you own an iPhone?

Yes
No, but soon
No


View Results

Poll Finishes In 7 Days.
Discuss in The Lounge
Poll History




Data Recovery Software