James A
Honorary Members-
Posts
63 -
Joined
-
Last visited
Reputation
0 Neutral-
My computer initially got a virus from what I believe was web browsing (very few files I've downloaded), it came up as a fake antivirus warning on my start bar. I rebooted in safe mode in order to run Malwarebytes, ran a full scan and received error messages for missing files in the middle of the scan. I rebooted, ran scan again, same error message but later in the scan. Eventually after 3 or 4 times of doing this Malwarebytes found 1 infected file and as the scan completed, a message popped up asking if I wanted to close MWB, and the computer just shut off. If anyone could help me i would GREATLY appreciate it. Thanks in advance.
-
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Dont have any of the discs it came with, ugh. ; / -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Here's the Problem details list that comes up with the error message about 10 seconds into startup repair: ProblemEventName: Startup Repair V2 Problem Signature 1: Autofailover Problem Signature 2: 6.0.6000.16386.6.0.6000.16386 Problem Signature 3: 6 Problem Signature 4: 1114129 Problem Signature 5: NoRootCause Problem Signature 6: NoRootCause Problem Signature 7: 0 Problem Signature 8: 2 Problem Signature 9: WrpRepair Problem Signature 10: 0 OS Version: 6.0.6000.2.0.0.256.1 Locale ID: 1033 -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Also, just uploaded the export.txt -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
It stops during the searching for problems part, right at te beginning of the repair. And yes there is a list of problem details, shall i type it out ? -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Startup repair searches for problems, the after 10 seconds gives message "windows cannot repair automatically" -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Okay, startup repair is coming up now -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Sat Dec 4 07:32:08 2010 Command line: TestDisk TestDisk 6.12-WIP, Data Recovery Utility, April 2010 Christophe GRENIER <grenier@cgsecurity.org> http://www.cgsecurity.org OS: Linux, kernel 2.6.31.2 (#5 SMP Mon Dec 7 11:56:35 UTC 2009) i686 Compiler: GCC 4.4 - Jul 27 2010 17:00:22 ext2fs lib: 1.41.9, ntfs lib: 10:0:0, reiserfs lib: 0.3.1-rc8, ewf lib: 20080501 /dev/sda: LBA, LBA48, DCO support /dev/sda: size 625142448 sectors /dev/sda: user_max 625142448 sectors /dev/sda: dco 625142448 sectors Warning: can't get size for Disk /dev/mapper/control - 0 B - CHS 1 1 1, sector size=512 /dev/sr0 is not an ATA disk Hard disk list Disk /dev/sda - 320 GB / 298 GiB - CHS 38913 255 63, sector size=512 - ATA Hitachi HDT72503 Disk /dev/sdg - 2000 MB / 1907 MiB - CHS 969 64 63, sector size=512 - SanDisk U3 Cruzer Micro Disk /dev/sr0 - 67 MB / 64 MiB - CHS 32770 1 1 (RO), sector size=2048 - HL-DT-ST DVDRRW GSA-H30L Disk /dev/sr1 - 67 MB / 63 MiB - CHS 32767 1 1 (RO), sector size=2048 - SanDisk U3 Cruzer Micro Partition table type (auto): Intel Disk /dev/sda - 320 GB / 298 GiB - ATA Hitachi HDT72503 Partition table type: Intel Analyse Disk /dev/sda - 320 GB / 298 GiB - CHS 38913 255 63 Geometry from i386 MBR: head=255 sector=63 NTFS at 0/1/1 NTFS at 37760/0/1 Info: size boot_sector 18522944, partition 18522945 get_geometry_from_list_part_aux head=255 nbr=4 get_geometry_from_list_part_aux head=8 nbr=3 get_geometry_from_list_part_aux head=16 nbr=3 get_geometry_from_list_part_aux head=32 nbr=3 get_geometry_from_list_part_aux head=64 nbr=3 get_geometry_from_list_part_aux head=128 nbr=3 get_geometry_from_list_part_aux head=240 nbr=3 get_geometry_from_list_part_aux head=255 nbr=4 Current partition structure: 1 * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] 2 P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] Ask the user for vista mode Computes LBA from CHS for Disk /dev/sda - 320 GB / 298 GiB - CHS 38914 255 63 Allow partial last cylinder : Yes search_vista_part: 1 search_part() Disk /dev/sda - 320 GB / 298 GiB - CHS 38914 255 63 NTFS at 0/1/1 filesystem size 606614337 sectors_per_cluster 8 mft_lcn 786432 mftmirr_lcn 6555520 clusters_per_mft_record -10 clusters_per_index_record 1 HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] NTFS, 310 GB / 289 GiB NTFS at 37760/0/1 filesystem size 18522944 sectors_per_cluster 8 mft_lcn 170152 mftmirr_lcn 255229 clusters_per_mft_record -10 clusters_per_index_record 1 HPFS - NTFS 37760 0 1 38912 254 62 18522944 [Recovery] NTFS, 9483 MB / 9044 MiB get_geometry_from_list_part_aux head=255 nbr=4 get_geometry_from_list_part_aux head=8 nbr=3 get_geometry_from_list_part_aux head=16 nbr=3 get_geometry_from_list_part_aux head=32 nbr=3 get_geometry_from_list_part_aux head=64 nbr=3 get_geometry_from_list_part_aux head=128 nbr=3 get_geometry_from_list_part_aux head=240 nbr=3 get_geometry_from_list_part_aux head=255 nbr=4 Results * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] NTFS, 310 GB / 289 GiB P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] NTFS, 9483 MB / 9044 MiB interface_write() 1 * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] 2 P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] search_part() Disk /dev/sda - 320 GB / 298 GiB - CHS 38914 255 63 NTFS at 0/1/1 filesystem size 606614337 sectors_per_cluster 8 mft_lcn 786432 mftmirr_lcn 6555520 clusters_per_mft_record -10 clusters_per_index_record 1 HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] NTFS, 310 GB / 289 GiB NTFS at 693/63/10 filesystem size 18522944 sectors_per_cluster 8 mft_lcn 170152 mftmirr_lcn 255229 clusters_per_mft_record -10 clusters_per_index_record 1 NTFS part_offset=5702155776, part_size=9483747328, sector_size=512 NTFS partition cannot be added (part_offset<part_size). NTFS at 37759/254/63 filesystem size 606614337 sectors_per_cluster 8 mft_lcn 786432 mftmirr_lcn 6555520 clusters_per_mft_record -10 clusters_per_index_record 1 HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] NTFS found using backup sector!, 310 GB / 289 GiB NTFS at 37760/0/1 filesystem size 18522944 sectors_per_cluster 8 mft_lcn 170152 mftmirr_lcn 255229 clusters_per_mft_record -10 clusters_per_index_record 1 HPFS - NTFS 37760 0 1 38912 254 62 18522944 [Recovery] NTFS, 9483 MB / 9044 MiB get_geometry_from_list_part_aux head=255 nbr=4 get_geometry_from_list_part_aux head=8 nbr=3 get_geometry_from_list_part_aux head=16 nbr=3 get_geometry_from_list_part_aux head=32 nbr=3 get_geometry_from_list_part_aux head=64 nbr=3 get_geometry_from_list_part_aux head=128 nbr=3 get_geometry_from_list_part_aux head=240 nbr=3 get_geometry_from_list_part_aux head=255 nbr=4 Results * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] NTFS, 310 GB / 289 GiB P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] NTFS, 9483 MB / 9044 MiB interface_write() 1 * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] 2 P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] simulate write! write_mbr_i386: starting... write_all_log_i386: starting... No extended partition TestDisk exited normally. -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Sat Dec 4 07:11:36 2010 Command line: TestDisk TestDisk 6.12-WIP, Data Recovery Utility, April 2010 Christophe GRENIER <grenier@cgsecurity.org> http://www.cgsecurity.org OS: Linux, kernel 2.6.31.2 (#5 SMP Mon Dec 7 11:56:35 UTC 2009) i686 Compiler: GCC 4.4 - Jul 27 2010 17:00:22 ext2fs lib: 1.41.9, ntfs lib: 10:0:0, reiserfs lib: 0.3.1-rc8, ewf lib: 20080501 /dev/sda: LBA, LBA48, DCO support /dev/sda: size 625142448 sectors /dev/sda: user_max 625142448 sectors /dev/sda: dco 625142448 sectors Warning: can't get size for Disk /dev/mapper/control - 0 B - CHS 1 1 1, sector size=512 /dev/sr0 is not an ATA disk Hard disk list Disk /dev/sda - 320 GB / 298 GiB - CHS 38913 255 63, sector size=512 - ATA Hitachi HDT72503 Disk /dev/sdg - 2000 MB / 1907 MiB - CHS 969 64 63, sector size=512 - SanDisk U3 Cruzer Micro Disk /dev/sr0 - 67 MB / 64 MiB - CHS 32770 1 1 (RO), sector size=2048 - HL-DT-ST DVDRRW GSA-H30L Disk /dev/sr1 - 67 MB / 63 MiB - CHS 32767 1 1 (RO), sector size=2048 - SanDisk U3 Cruzer Micro Partition table type (auto): Intel Disk /dev/sda - 320 GB / 298 GiB - ATA Hitachi HDT72503 Partition table type: Intel Analyse Disk /dev/sda - 320 GB / 298 GiB - CHS 38913 255 63 Geometry from i386 MBR: head=255 sector=63 NTFS at 0/1/1 NTFS at 37760/0/1 Info: size boot_sector 18522944, partition 18522945 get_geometry_from_list_part_aux head=255 nbr=4 get_geometry_from_list_part_aux head=8 nbr=3 get_geometry_from_list_part_aux head=16 nbr=3 get_geometry_from_list_part_aux head=32 nbr=3 get_geometry_from_list_part_aux head=64 nbr=3 get_geometry_from_list_part_aux head=128 nbr=3 get_geometry_from_list_part_aux head=240 nbr=3 get_geometry_from_list_part_aux head=255 nbr=4 Current partition structure: 1 * HPFS - NTFS 0 1 1 37759 254 63 606614337 [HP] 2 P HPFS - NTFS 37760 0 1 38912 254 63 18522945 [Recovery] -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
First command came back as bcd is not a recognized file all the others worked it came up with 1 installation and asked if i wanted to add it to boot cd, I hit Y (hope that was okay) still not rebooting and now windows repair option doesn't come up, so i don't know how to get to command prompt to try scanos option -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Whoops, message got screwed up Still found 0 installations, and windows still fails to boot -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Same thing, Total installations: 0 -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Total identified windows installations: 0 -
Help! Virus redirects google and disabled MBAM
James A replied to James A's topic in Resolved Malware Removal Logs
Done. Also, I have a second drive (D:) called recovery, could that help us at all?