PCBUILD Archives

Personal Computer Hardware discussion List

PCBUILD@LISTSERV.ICORS.ORG

Options: Use Forum View

Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
John Sproule <[log in to unmask]>
Reply To:
Personal Computer Hardware discussion List <[log in to unmask]>
Date:
Fri, 13 Jun 2014 01:46:11 -0400
Content-Type:
text/plain
Parts/Attachments:
text/plain (65 lines)
It is hard to know from the information that you have given whether this is
just the nuisance kind of ransomware or the more malevolent version that
encrypts the HDD's contents.

In any case, I wonder if you can boot into safe mode with networking enabled
and download an antimalware program, such as malwarebytes or emisisoft
antimalware.  I know malwarebytes can be run in safe mode and I think that
emsisoft can as well.

Hopefully, this will remove the actual malware infection, but note the name
of the virus, in case you are also dealing with the difficult task of trying
to recover your files by decrypting them.  I believe that Kaspersky has some
tools that can be of assistance with this.

It may be necessary to do an offline scan of the hard drive, since the virus
seems to be rather determined to interfere with any normal use of your
operating system.  Kaspersky and others have rescue discs that can be
created that allow you to boot a live CD version of linux and run their
antivirus program from there.  If this isn't possible (since you seem to be
having trouble running things from the optical drive), you might have to
pull the drive from this computer and put it into another computer as a
secondary drive and run a scan of the infected hard drive from within this
other system.  Of course, this is always a bit risky to the second system;
so, weigh the possible consequences before deciding to go ahead and do this.

Good luck,

John Sproule

----------------------------------------------------------------------
(Original Message Follows)

Date:    Mon, 9 Jun 2014 13:18:18 -0400
From:    cubbettee cubbettee <[log in to unmask]>
Subject: boot issue

Well friend got another virus again--this one did not seem so bad as only
one box poped up asking for money, or police would be called and givng him a
countdown which keeps changing when he does not comply--he thinks he got the
one that was just in the papers.  Anyway I am having problem.  Normally I
just use a hiren Boot Disk and run Acronis and restore an image--this gets
does about every 6 months for years  The computer is set to boot from cd.
However it will not and just is going into windows.  I even tried another
copy of my Hiren Boot cd as well in case my original copy that I had been
using was too scratched.  I know the rom works as I put in a cd of music and
was able to see the files listed.  With the two copies of the Hiren, it
would not show the files even though the drive seems to be flickering at its
normal pace for that cd.  From  the booting I tried f5 to go to safe mode
and that hung as well as f10 for system recovery.  So I logged back into the
main user and did system restore which after reboot  said it changed
nothing.  Then I tried from the hardly used profile which did not have all
the pop up boxes, and I got the same result.  Then I tried safe mode again
and this time I was able to get in but still after a long delay.  Used the
default HP administrator that gets created and the system restore took much
longer, and it was only half way done whencomputer  rebooted and went into
windows.  The I tried the Hiren boot cd again to no avial booting.  Any idea
what I can do?  The issues are still in his machine although it  is seeming
to be a bit quicker

Thanks in advance

                          PCSOFT's List Owners:
                      Bob Wright<[log in to unmask]>
                        Mark Rode<[log in to unmask]>

ATOM RSS1 RSS2