Antivirus Protection
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me

The Shed is going Social! Join us on FaceBook and Twitter and chime in on the conversation.

Go Back   Dev Shed ForumsSystem AdministrationAntivirus Protection

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old July 30th, 2010, 04:40 AM
zynder's Avatar
zynder zynder is offline
Not much of a contributor
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Aug 2006
Location: Hidden
Posts: 1,009 zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)zynder User rank is General 2nd Grade (Above 100000 Reputation Level)  Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1Folding Points: 201535 Folding Title: Super Ultimate Folder - Level 1
Time spent in forums: 1 Week 5 Days 8 h 20 m 17 sec
Reputation Power: 1090
Send a message via Yahoo to zynder
Facebook
Yahoo Messenger Worm

Hi guys,

My friend got this worm from YM by clicking a link sent out by one of her friends.

Now I'm fixing her computer. To my surprise, I cannot run an exe except for Firefox.

I cannot install Hijackthis. I cannot run msconfig or any anti virus. The worm closes it automatically.

Any input is greatly appreciated.

Reply With Quote
  #2  
Old July 30th, 2010, 05:24 PM
hiker's Avatar
hiker hiker is offline
They're coming to take me away
Dev Shed God (5000 - 5499 posts)
 
Join Date: Jan 2005
Location: Florida
Posts: 5,091 hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)hiker User rank is General 61st Grade (Above 100000 Reputation Level)  Folding Points: 33832 Folding Title: Starter FolderFolding Points: 33832 Folding Title: Starter Folder
Time spent in forums: 3 Months 2 Weeks 6 Days 21 h 46 m 50 sec
Reputation Power: 5048
Quote:
Originally Posted by zynder
Hi guys,

My friend got this worm from YM by clicking a link sent out by one of her friends.

Now I'm fixing her computer. To my surprise, I cannot run an exe except for Firefox.

I cannot install Hijackthis. I cannot run msconfig or any anti virus. The worm closes it automatically.

Any input is greatly appreciated.


Have you tried Safe Mode?
__________________
"I don't need to get a life. I'm a gamer. I have lots of lives!"

Reply With Quote
  #3  
Old July 30th, 2010, 11:38 PM
Doug G Doug G is offline
Grumpier Old Moderator
Dev Shed God 19th Plane (14000 - 14499 posts)
 
Join Date: Jun 2003
Posts: 14,233 Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level) 
Time spent in forums: 1 Month 4 Weeks 14 h 15 m 56 sec
Reputation Power: 4445
Can you open a command prompt window? If so try starting a program from the command prompt. You can also try starting programs from the taskmanager. One of these tricks may get you around a hack of explorer. Another from explorer, a shift-Run As sometimes works to start a blocked exe

There is at least one trojan that adds a gazillion entries in a registry key that effectively blocks all exe programs.

If you haven't already seen it maybe this google search will be helpful.

http://www.google.com/search?q=can%...lient=firefox-a
__________________
======
Doug G
======
It is a truism of American politics that no man who can win an election deserves to. --Trevanian, from the novel Shibumi

Reply With Quote
  #4  
Old August 21st, 2010, 10:27 PM
Axigy Axigy is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: May 2010
Location: Michigan, United States of America
Posts: 36 Axigy User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 5 h 3 m 26 sec
Reputation Power: 3
Send a message via AIM to Axigy
Quote:
Originally Posted by hiker
Have you tried Safe Mode?


Exactly what I was going to suggest. Boot into safemode, run MalwareBytes off a Flash Drive and you should be all clean.

Reply With Quote
  #5  
Old August 28th, 2010, 04:25 AM
inspirohost inspirohost is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Aug 2010
Location: New York
Posts: 20 inspirohost Negative: is most likely a SPAMMER and a traitor to the cause. 
Time spent in forums: 4 h 4 m 19 sec
Reputation Power: 0
If safe mode doesn't help, check under msconfing/starup programs to see if there's anything listed which shouldn't be there and disable it. You can also terminate unwanted processed from task manager.

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationAntivirus Protection > Yahoo Messenger Worm

Developer Shed Advertisers and Affiliates



Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 


Powered by: vBulletin Version 3.0.5
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.

© 2003-2013 by Developer Shed. All rights reserved. DS Cluster - Follow our Sitemap