Go Back   TalkBass Forums > Bass Guitar Forums > Bass Guitar Forums > Off Topic [BG]
Register Rules/FAQ/CUP Members List Search Today's Posts Mark Forums Read

Off Topic [BG] Non-music-related discussion and chat


Supporting Membership
Thank You

Latest Supporting Member
Donate to Upgrade Today

Reply
 
Thread Tools Search this Thread
  #1  
Old 12-15-2009, 04:00 AM
Jimmy Bones's Avatar
I make metal look good.
 
Join Date: Feb 2009
Location: Baxley, GA
Send a message via AIM to Jimmy Bones Send a message via MSN to Jimmy Bones Send a message via Yahoo to Jimmy Bones
Supporting Member
Anybody Know How To Kill The Brontok A Malware?

Sign in to disble this ad
My recording computer at one point was a regular online machine. The Brontok worm got in somehow, and it wasn't an issue when it was just my recording tower, but I just figured out how to get it hooked up to my tv to record there since my monitor was stolen.

Now I have it hooked up and I want to get it online too, but in order to remove it via the ways I have looked up on my laptop, I need to connect it to the internet to try to download certain tools, but if I do, then my info will get shot out to whoever wrote the damn thing.

So.

Anybody know how to be rid of it manually?
__________________
Schecter #68|Mediocre Bassists #279|Redneck #8
SX Club Member In Good Standing
  #2  
Old 12-15-2009, 04:38 AM
Registered User
 
Join Date: Feb 2009
Backup your data and put linux on it
At any rate it's very unlikely that it's going to upload anything and everything on your computer to the internet as soon as it makes a connection.
Load the tools on a pen drive from your laptop to the desktop.

I don't manually remove anything I ghost anything that acts funny, though my pron box is getting pretty messed up LOL.
__________________
damned teeny pinky....always hits the wrong string and makes this ugly noise.
  #3  
Old 12-15-2009, 05:42 AM
Jimmy Bones's Avatar
I make metal look good.
 
Join Date: Feb 2009
Location: Baxley, GA
Send a message via AIM to Jimmy Bones Send a message via MSN to Jimmy Bones Send a message via Yahoo to Jimmy Bones
Supporting Member
I can't boot linux on this tower or else my recording software and interface won't work. Otherwise I'd have knoppix on it.
__________________
Schecter #68|Mediocre Bassists #279|Redneck #8
SX Club Member In Good Standing
  #4  
Old 12-15-2009, 06:36 AM
73jbass's Avatar
Registered User
 
Join Date: Apr 2004
Location: Ellenwood,Ga.
GOLD Supporting Member
Webroot is what I've been using for years,and it works great. Their anti spywear,and antivirus products are top shelf alll the way.
__________________
Music Man Sterling 5HS/Tobias Killer B 6/ Thunderfunk 550 /Ampeg Heritage 810.
  #5  
Old 12-15-2009, 06:56 AM
Registered User
 
Join Date: Feb 2009
Here you go

http://wiki.answers.com/Q/How_do_you...virus_manually



Answer
Manual removal steps: Disconnect your computer from the network and disable file sharings, if any.
Disable System Restore (for Windows XP/Windows Me only).
For Windows XP:
Click Start.
Right-click My Computer, and then click Properties.
Click the System Restore tab.
Select "Turn off System Restore" or "Turn off System Restore on all drives" check box. Start your machine in Safe mode.
How to start a computer in safe mode, pls refer to: http://service1.symantec.com/SUPPORT...rc=sec_doc_nam
Update your Anti-virus software with the latest signature files and scan your computer withthe Anti-virus to detect the worm and delete any files detected as the worm by clicking the DELETE button.
Delete the value from the registry.
You need to back up the registry before making any changes to it. In correct changes to the registry can result in permanent data loss or corrupted files. Modify the specified subkeys only.
How to make a backup of the Windows registry, pls refer at: http://service1.symantec.com/SUPPORT...rc=sec_doc_nam
Click Start > Run. Type regedit Click OK.
Note: If the registry editor fails to open the threat may have modified the registry to prevent access to the registry editor. You can used a tool to resolve this problem.
Download this tool. Once downloaded, �right-click� the UnHookExec.inf file and click install. Then continue with the removal steps. http://securityresponse.symantec.com...stry.keys.html
Other alternative way to enable registry, please refer to: http://www.patheticcockroach.com/mpam4/index.php?p=28
Navigate to the subkey that was detected by the anti-virus and delete the value.
Exit the Registry Editor.
If you are still unable to open your registry, you may try the following steps.
Boot up the infected computer, but do not login to the server, leave it at the login prompt.
Start up another clean computer, worm-free computer which has an updated anti-virus software running and an active firewall running preventing all inbound connections.
From the clean computer, start REGEDIT.EXE and click on File -> File -> Connect Network Registry. Connect to the infected computer.
Modify the following values in HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\NT\C urrentVersion\Winlogon to the following values:
"Userinit" = "C:\WINNT\system32\userinit.exe," "Shell" = "Explorer.exe"
(make sure that you enter the correct path to where Windows is installed. For example on NT4.0 it is WINNT)
After completing the above steps, reboot the infected computer.
Using the clean computer, map the C$ share and scan it using the up to date anti-virus to remove any infected files on the infected computer. Then, you should be able to boot to the computer and then follow Steps 6 - Steps 11.
Run a full system scan using an updated version of Anti-virus software and delete any files detected as worm.
Download and run a process management tool or process viewer to kill all worm processes running on the infected machine. The process management tool or the process viewer is available according to the machine's platform and can be downloaded free from the Internet. For example users can download and use the following process viewer: http://www.sysinternals.com/Utilitie...sExplorer.html
Delete the scheduled tasks added by the worm. Click Start, and then click Control Panel. (In Windows XP, switch to Classic View.) In the Control Panel window, double click Scheduled Tasks. Right click the task icon and select Properties from pop-up menu. The properties of the task is displayed. Delete the task if the contents of the Run text box in the task pane matches the worm.
Enable the System Restore (for Windows XP/Windows Me only).
Re-scan your computer with an updated version of Anti-virus to confirm the computer is clean.
Re-connect your computer to the network once confirmed clean.
__________________
damned teeny pinky....always hits the wrong string and makes this ugly noise.
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off

Follow TalkBass on Twitter   Visit TalkBass on Facebook  

All times are GMT -6. The time now is 10:12 PM.




Copyright 2011 Talk Music Group Inc. All rights reserved.
Play guitar? Visit our new sister site TalkGuitar.com [beta]
Powered by vBulletin® Version 3.6.12
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.