Post Reply 
broken computers!!!
Author Message
ZiNgA BuRgA
Smart Alternative

Posts: 17,022.2988
Threads: 1,174
Joined: 19th Jan 2007
Reputation: -1.71391
E-Pigs: 446.1274
Offline
Post: #21
RE: broken computers!!!
Haven't read everything, but do you have a firewall?  If so, use it to block any connections from the trojan.
Once you've done that, kill dodgey looking processes, and remove references to them from your startup.
27/07/2008 06:14 PM
Visit this user's website Find all posts by this user Quote this message in a reply
J'adore le paissons
~The IRISH ex-Mod~

Posts: 1,531.4116
Threads: 101
Joined: 9th Apr 2007
Reputation: 1.39255
E-Pigs: 9.0127
Offline
Post: #22
RE: broken computers!!!
damn this not bein invisible lol!!! way to go stickin 2 the topic though lool!!!!
ima PM u!
________________________________
jus noticed you removed a link ZiNgA sorry i didn realise wer it was....

ddedat edit: ssshhhh J! you'll give the secret away..


[Image: 34f0juc.png]
[Image: 2a8evzq.png]
[Image: 14udjcx.png]
[Image: 29zvif7.gif]
[Image: sqk2f6.png]
[Image: 2djuv5j.png]
[Image: 143jqsk.png]
Spoiler for jimi hendrix:
[Image: 5nox36.jpg]
(This post was last modified: 27/07/2008 11:23 PM by dedat.)
27/07/2008 06:15 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Method
You may call me Reverend.

Posts: 6,358.2856
Threads: 443
Joined: 14th Jan 2008
Reputation: 6.04241
E-Pigs: 71.3136
Offline
Post: #23
RE: broken computers!!!
lol :/

From the HijackThis log it says that I have an illegitimate lsass.exe from the AHKER.G worm


[Image: mvg1hw.gif]
27/07/2008 06:23 PM
Visit this user's website Find all posts by this user Quote this message in a reply
J'adore le paissons
~The IRISH ex-Mod~

Posts: 1,531.4116
Threads: 101
Joined: 9th Apr 2007
Reputation: 1.39255
E-Pigs: 9.0127
Offline
Post: #24
RE: broken computers!!!


[Image: 34f0juc.png]
[Image: 2a8evzq.png]
[Image: 14udjcx.png]
[Image: 29zvif7.gif]
[Image: sqk2f6.png]
[Image: 2djuv5j.png]
[Image: 143jqsk.png]
Spoiler for jimi hendrix:
[Image: 5nox36.jpg]
27/07/2008 06:29 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Method
You may call me Reverend.

Posts: 6,358.2856
Threads: 443
Joined: 14th Jan 2008
Reputation: 6.04241
E-Pigs: 71.3136
Offline
Post: #25
RE: broken computers!!!
Is it from a good source? Like is it recomended by someone?


[Image: mvg1hw.gif]
27/07/2008 06:37 PM
Visit this user's website Find all posts by this user Quote this message in a reply
J'adore le paissons
~The IRISH ex-Mod~

Posts: 1,531.4116
Threads: 101
Joined: 9th Apr 2007
Reputation: 1.39255
E-Pigs: 9.0127
Offline
Post: #26
RE: broken computers!!!
no i mean the manual instructions... not the download part!! idk wat the download is
Spoiler for this part:
Step 1: Use Windows File Search Tool to Find lsass.exe Path

   1. Go to Start > Search > All Files or Folders.
   2. In the "All or part of the the file name" section, type in " lsass.exe" file name(s).
   3. To get better results, select "Look in: Local Hard Drives" or "Look in: My Computer" and then click "Search" button.
   4. When Windows finishes your search, hover over the "In Folder" of " lsass.exe", highlight the file and copy/paste the path into the address bar. Save the file's path on your clipboard because you'll need the file path to delete lsass.exe in the following manual removal steps.

    * Read more about How to Delete lsass.exe with File Search Tool

Step 2: Use Windows Task Manager to Remove lsass.exe Processes

   1. To open the Windows Task Manager, use the combination of CTRL+ALT+DEL or CTRL+SHIFT+ESC.
   2. Click on the "Image Name" button to search for " lsass.exe" process by name.
   3. Select the " lsass.exe" process and click on the "End Process" button to kill it.

    * Read more about How to kill lsass.exe Processes

Step 3: Detect and Delete Other lsass.exe Files

   1. To open the Windows Command Prompt, go to Start > Run > cmd and then press the "OK" button.
   2. Type in "dir /A name_of_the_folder" (for example, C:\Spyware-folder), which will display the folder's content even the hidden files.
   3. To change directory, type in "cd name_of_the_folder".
   4. Once you have the file you're looking for type in del "name_of_the_file".
   5. To delete a file in folder, type in "del name_of_the_file".
   6. To delete the entire folder, type in "rmdir /S name_of_the_folder".
   7. Select the " lsass.exe" process and click on the "End Process" button to kill it.
a few sites say to apply this??? its som sort of patch off the microsoft site, and then remove the virus:
http://www.microsoft.com/technet/securit...4-011.mspx


[Image: 34f0juc.png]
[Image: 2a8evzq.png]
[Image: 14udjcx.png]
[Image: 29zvif7.gif]
[Image: sqk2f6.png]
[Image: 2djuv5j.png]
[Image: 143jqsk.png]
Spoiler for jimi hendrix:
[Image: 5nox36.jpg]
(This post was last modified: 27/07/2008 06:56 PM by J'adore le paissons.)
27/07/2008 06:51 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Method
You may call me Reverend.

Posts: 6,358.2856
Threads: 443
Joined: 14th Jan 2008
Reputation: 6.04241
E-Pigs: 71.3136
Offline
Post: #27
RE: broken computers!!!
Ahhh ok thanks J'Adore.

I think I'll do this tomorrow because it is 3:00am and I don't want to be tired during the creening of The Dark Knight at the cinema....thatx for all your help guys.

By the way I tried some of those steps but they don't work because it says that they are critical files :/


[Image: mvg1hw.gif]
27/07/2008 06:57 PM
Visit this user's website Find all posts by this user Quote this message in a reply
J'adore le paissons
~The IRISH ex-Mod~

Posts: 1,531.4116
Threads: 101
Joined: 9th Apr 2007
Reputation: 1.39255
E-Pigs: 9.0127
Offline
Post: #28
RE: broken computers!!!
mmm ya i done a bit more readin n i think lsass.exe is a microsoft file u need for logging in r somtin so u got to replace it with a real one... im not too sure cause alot of things im readin r different lol!!! n e way im off 2 bed 3am here aswell...


[Image: 34f0juc.png]
[Image: 2a8evzq.png]
[Image: 14udjcx.png]
[Image: 29zvif7.gif]
[Image: sqk2f6.png]
[Image: 2djuv5j.png]
[Image: 143jqsk.png]
Spoiler for jimi hendrix:
[Image: 5nox36.jpg]
27/07/2008 07:02 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Chroma
Chromatic Nutjob

Posts: 2,626.3796
Threads: 435
Joined: 1st Mar 2007
Reputation: -5.01013
E-Pigs: 40.2135
Offline
Post: #29
RE: broken computers!!!
I have a Mac.

/thread.

PSN ID: Chroma3000
My Steam Page
ADD ME
superdouche Wrote:
TheGuy Wrote:
superdouche Wrote:You need at least an 8 inch penis, that's what I heard.
Man, if I had 8 inches, I would find a better use for it :P
Like what, pushing elevator buttons?
27/07/2008 07:09 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Method
You may call me Reverend.

Posts: 6,358.2856
Threads: 443
Joined: 14th Jan 2008
Reputation: 6.04241
E-Pigs: 71.3136
Offline
Post: #30
RE: broken computers!!!
Damn the trojan just won't go away :/

I think I'm just gonna reinstall windows Erk


[Image: mvg1hw.gif]
28/07/2008 02:45 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Post Reply 


Forum Jump:


User(s) browsing this thread: 1 Guest(s)

 Quick Theme: