Gnutella Forums

Gnutella Forums (https://www.gnutellaforums.com/)
-   Nederlands (https://www.gnutellaforums.com/nederlands/)
-   -   Worm (https://www.gnutellaforums.com/nederlands/51182-worm.html)

Bamzaaier January 9th, 2006 06:16 AM

Worm
 
Hoe te handelen als men via limewire software heeft gedl en deze bevatten volgens de virusscanner een worm.

BVD

Bamzaaier

sonnet January 10th, 2006 09:40 PM

Hi; :) I can't read Dutch but I will do my best.

I think you are saying you have a worm gotten through Limewire or Peer to Peer P2P File Sharing.

If you go to www.thetechguide.com they can help but it is English.

You would

1. Download a program called "Hijack this" from http://www.spywareinfo.com/~merijn/downloads.html
Also please read How to post a Hijackthis log You want to follow the instructions there and make your first Hijackthis log before you begin to delete the viruses, worms, spyware. Your first Hijackthis log needs to show your system the way it is now.

If you can find someone to interpret English for you, go to www.thetechguide and ask for help.

If not, try to find someone who speaks both English and Dutch to help you with the following. It may get rid of some of your problem.

When I ask you to download a zip file, make sure you choose SAVE TO DISK rather than Open
Can you open "MyComputer"
Double click to open Local Disk C: drive
Right click an empty spot and left click NEW>>Folder
A new folder will be placed in the C: folder , name it BFU
So you now have C:\BFU

2. Download and save p2pnetwork.zip
Then UNZIP it to the BFU Folder so you now have p2pnetwork.bfu extracted

3. Download and save and then UNZIP to the BFU folder
BFU.zip
So you now have BFU.exe extracted

4. ==Download and Install this small program
to help clean your temp folders,cookies, etc...
Windows Cleanup! 4.0
Don't run it yet

5. There may be a other file virus/removal utilities for your specific situation (based on your original hijack this! log); check with the folks at www.thetechguide.com; also you would want them to check your before-and-after Hijack this! logs. They are experts at helping people with malware get rid of it for free; and they are very good.

6. ==Download and then Install
Ewido Security Suite (Ewido Malware Suite)

When installing, under "Additional Options" Uncheck "Install background guard" and "Install scan via context menu".

From the main ewido screen, click on Update in the left menu, then click the Start update button.
After the update finishes (the status bar at the bottom will display "Update successful")
Close out Ewido for now, we'll need it later
If for some reason the Updater won't work can you manually download the
Updates from this link after you have Ewido installedhttp://www.ewido.net/en/download/updates/

Please save these instructions to a Notepad file and save it to your Desktop for reference
or Print them out!

Also remember if you really want to do this right and remove the exact virus/trojan/worm/spyware that is causing your problem, go see to www.thetechguide.com/forum and post in the Tech support forum.

RESTART your Computer into SAFE MODE
You can do this by tapping the F8 key as the system is restarting, just before Windows loads
Choose Safe mode from the startup menu and hit Enter

In safe mode

Open the BFU folder
Double click to run BFU.exe
Use the "Open Script file" button (the folder icon next to Scriptfile to execute)
Navigate to p2pnetwork.bfu in the BFU folder
Right click p2pnetwork.bfu and choose Select
In Brute Force Uninstaller select Execute
Let it finish then Exit

==Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:
Click "Options..."
Move the arrow down to "Custom CleanUp!"
Put a check next to the following (Make sure nothing else is checked!):

* Empty Recycle Bins
* Delete Cookies
* Delete Prefetch files
* Cleanup! All Users

Click OK
Press the CleanUp! button to start the program.
When it's done, decline to log off or restart the computer

==Open Ewido Security Suite
Click on the Scanner button on the left menu (it is the third button down if your Safe Mode doesn't show the buttons)
Select Complete System Scan
*If Ewido finds something it will prompt you with "Infected Object found"
Ensure the following are Selected
*1. Perform Action = Remove
*2. Create Encrypted Backup in Quarantine (Recommended)
*3. Perform action with all infections

Then click OK
When Ewido has finished its scan click the "Save Report" button
Save the report to desktop
Exit Ewido
NOTE: When Ewido is running, don't open any other Windows

Reboot back to Normal mode

Back in Windows, to do this right, you would need to contact the people at www.thetechguide.com and post a few logs so they can tell you if your system is clean; this is why I recommend you start with them at the beginning. Much better to let the experts analyze the final logs and tell you whether you are "clean." I am no expert; I only ran into the same problem myself, but there are many viruses out there, so I would let them help if you can find someone to interpret for you.

The techs at www.techguide.com will want to see logs of the following (and anything else they ask for):

1. Scan and save logfile with Hijackthis again, post a fresh log
2. Post the Whole contents of Ewido's report

Don't post it here as I cannot help you determine if your system is clean! I am no expert; I cannot interpret the logs for you to tell you if your system is clean; only a tech support board that uses Hijack this could do that.

Good luck. :)

Bamzaaier January 10th, 2006 11:42 PM

Thx for the information and if it works i post in her thx

Bamzaaier

sonnet January 15th, 2006 08:28 PM

Hi Bamzaaier, :)

You speak English; great! :) That's good because www.thetechguide.com will be able to help you much better if you disregard everything I said!

Just go to their forums and choose their Tech Clinic forum. Read the pinned topic at the top, "how to post a Hijack this log." Do not clean your system first! (They want to see a "Hijack this" log of your infected system with the virus on it so they know what they are up against.)

The person who will help you is very good. Your problem will have a solution custom-made based on your "Hijack this" log. They do not like you to follow instructions for someone else's problem, because it may not help your problem.

Each person with a problem starts their own thread. Just do what they say and they will help you. :)

Bamzaaier January 16th, 2006 12:54 AM

Roger that, first off all i reinstal my pc again , a lot of work bud oke, so i removed all the sh** and till now it works again and no worm, virus ect.

Thx Bamzaaier ( Erik )


All times are GMT -7. The time now is 02:17 PM.

Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2024, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.0 ©2011, Crawlability, Inc.

Copyright © 2020 Gnutella Forums.
All Rights Reserved.