At 6/29/09 02:46 PM, CompleteDouche wrote:
I need to know If I have a virus. Norton, Malwarebytes, and clamwin. So my computer is currently in safe mode. What do I do?
First of all, this will take a long time. But it's the only way to be 100% sure you removed every malware without formating.
You have a DNS-Changer -among others most probably. Assuming that you're already in safe mode with networking enabled, launch Malwarebytes, update and run a full scan. It will probably detect most trojans and stuff like that. Then, after the scan is complete, remove everything and restart as prompted. Boot in normal mode. Now you have to make absolutely sure no viruses remain in your computer. The most efficient way to do so is to perform two scans using different software. Here's how:
download and install Avast Home Edition. Once the installation is complete it will prompt you to reboot your computer, do that, boot in safe mode again.
Now launch avast -don't worry about the demo warning- stop the ongoing memory test and update the virus database (click the lightning button on the main window). Click Menu (upper left of the window), then Schedule Boot-Time Scan. Make sure Scan all local disks is ticked, and Scan archive files is unticked. Tick Advanced options and select Delete infected file as well as Allow delete or move for both drop-down textboxes that appear. Ignore the warning (click Yes), then click Schedule and reboot your computer (Normal boot).
You'll have to wait 'till it's finished, then continue to booting your PC as always.
Now, this step is optional, if you're paranoid and want every malware out.
You have to run a scan with Kaspersky Online Scanner
It is very slow, let it fully update first (make sure you have enough free disk space available as it will run locally on your computer), then make sure you have all scan options enabled (adware/malware etc.) -if the scan starts automatically after updating, stop it and configure your settings first.
After the scan is complete (it might take long), pm me the scan report to give you removal instructions, should your computer be infected; the scanner won't clean any detected items.
If further problems arise, post in this thread or PM me.
Note that we haven't got rid of viruses that reside in Archive files (.rar, .zip, etc.), so be careful.
Some useful advice: When browsing potentially unsafe websites or are about to run unsafe applications (keygens are usually packed with viruses) use Sandboxie. Any program run under the supervision of Sandboxie will keep it's contents inside a confined space in your hard drive, enabling you to easily delete it.