Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.
|
|||||||
FullHouse Drive Virus?
![]() |
|
|
|
Thread Tools |
|
#1
|
|||
|
|||
|
FullHouse Drive Virus?
My computer suddenly has this drive like thing (like removable disk drive) on the desktop and My Computer. Its name is FullHouse Drive and when I double click it it show a picture of a Korean female movie star. It won't be moved, deleted or anything at all. I don't know what other effects it's having on my computer as it seem to be functioning normally except for this annoying extra drive.
I try to scan it with Kaspersky, MBAM, and KillFullHouse (from a Laos website I got by googling). Still it won't budge! Please help me. Thanks, Rasmey |
|
#2
|
|||
|
|||
|
Outstandind description. Did the 'gurgle' & found this thread.
It probably goes against conventional wisdom around here, but I would System Restore to a point preceding its appearance. 'Ratscheddar' does a good job of undoing registry hacks meant to annoy. Some of the hacks alters permissions, takes away common tools/utilities, to mention a few. Download RatsCheddar It contains a program written by Rathat, and it is a Policy Controller. Save and extract this program to the desktop. Once extracted, Double click on the RatsCheddar.exe file. Enable everything, then click Exit Reboot your Computer. Update all the scanning programs. Please post the 3 logs. See Here |
|
|
|
#3
|
|||
|
|||
|
Thanks for your reply.
I did as the suggested. Here are the logs. As for HiJackthis I can't find the log. The FullHouse drive is still there in my computer and my other computer have it too. But there doesn't seem to be any noticeable symthom yet. Rasmey |
|
#4
|
|||
|
|||
|
For your case, we will supplement our guide with a special scan / tool. The difficulties you mention are being interpretted as a procedural glitch. Inform me if I have this wrong. 'Taskmgr.exe' appearing in recycle bin is unusual.
Observations & Recommended Action:
Supplement to guide. Successive scans used to uncover additional infections.
|
|
#5
|
|||
|
|||
|
Problem fixed
Thank you rf6647. I did as instructed and now the Fullhouse drive is removed. I run Combofix twice. The first time it made the 'virus' appear like a folder and I can delete it from my desktop and the second time I run Combofix it's removed from my Control panel. I'm attaching the log of both times here.
However I have two other computers which have the same problem but even though I run Combofix and other program (CCleaner, MBAM) a few time it still won't be removed. I don't know why. Please help. The logs in zip file is from one of the computer which the problem cannot be solved. Thanks Last edited by Rasmey; 12-06-2008 at 11:42 AM.. |
|
#6
|
|||
|
|||
|
I have insufficient information.
No filetype for zip file. Does HJT contain reference?? >> "BIBLauncher"="c:\documents and settings\INTERNET\Desktop\BIBLauncher.exe" Network? That opens the possibility of cross contamination. Firewalls? How configured? Your observations about the double run of combofix to clean the 'full house' symptom was a learning experience for me. A HJT log may show residue remaining in 'msconfig'. |
|
#7
|
|||
|
|||
|
I'm sorry I don't know what happen to the zip file.
I did Hijackthis and the log is here. Thank you so much for your help. |
|
#8
|
|||
|
|||
|
|
#9
|
|||
|
|||
|
Thank you! I'll do as instructed.
By the way I forgot to tell you. My computers have network connection but I don't think it's the source of contamination since the other are cleaned and only these two that won't clear. Also I forgot to mention that while running combofix on these two there is a messege on the blue screen that say something about missing file or something. I wonder if it's because of this that it's not effective. |
|
|
|
#10
|
|||
|
|||
|
Hi these are the logs. I did it on three computers which are having the same problem.
The third computer I did SDFix twice as you'll see in the report. Should I try to fix the two items in hijackthis log that combofix did handle? The FullHouse drive are still there and won't be deleted. Overall the computers are still the same. |
|
#11
|
|||
|
|||
|
After SDFix finish and start the normal window there is this icon near the clock that say Windows Security Alert (on two computers except the 3rd one). What do I do with it?
Here are two more logs. |
|
#12
|
|||
|
|||
|
You have given me much to ponder. Here is my current understanding.
Member’s assessment
Quote:
Overview
D/L install and run ATF-Cleaner clear all except passwords in all browsers you have. Run repeatedly until no more found. http://www.majorgeeks.com/ATF_Cleaner_d4949.html ---------------------------------------------------------------------------------------------------------------------------------- D/L Xclean_Micro http://www.xblock.com/download/xclean_micro.exe No install, just run it delete all it finds decline to reboot on each item found, until the program finishes then reboot. Xclean will run minimized and will pop up a window if it finds anything. If it finds nothing it will exit. Please make a note of what it found if any as it has no log. If it finds several things reboot to Safe Mode and run again before continuing below. ---------------------------------------------------------------------------------------------------------------------------------- Get and run Malware Removal Tool by Joe Pestro http://majorgeeks.com/Malware_Removal_Tool_d4632.html ---------------------------------------------------------------------------------------------------------------------------------- When above is completed reboot back to Safe Mode Networking and do the following.. http://www.techspot.com/vb/post684649-3.html When Fixit.cmd finishes it will reboot to normal. Then.. ComboFix NOTE: If you have had ComboFix more than a few days old delete and re-download. Get it here: http://download.bleepingcomputer.com/sUBs/ComboFix.exe Or here: http://subs.geekstogo.com/ComboFix.exe Double click combofix.exe follow the prompts. When finished, it will open a log. Attach the log and a new HJT log in your next reply. Note: Do not click combofix's window while its running. That may cause it to stall. |
|
#13
|
|||
|
|||
|
I think I have found a easy way to do away with fullhouse drive. It will take less than a minute.
check this link to know about the issue and the linkto download the removal tool. exchangeserverinfo.net/default.aspx?g=posts&t=59 Enjoy ... I had to fight this virus for 24 hours to get it out. It had screwed my regedit and task manager. I so happy that its gone ... |
|
#14
|
||||
|
||||
|
Quote:
Later on he confirmed running the UPDATED 8-step Viruses/Spyware/Malware Preliminary Removal Instructions (and Combofix) did ![]() But thanks for your reply anyway ![]() |
|
#15
|
|||
|
|||
|
Quote:
Cheers! Merry Christmas. |
|
#16
|
||||
|
||||
|
ok good point!
Here's the direct link, to that fullhouse executable: http://exchangeserverinfo.net/resource.ashx?a=4 I also checked it for Viruses online first (when it was posted) Yes good for reference |
|
#17
|
|||
|
|||
|
fullhouse drive
guys there is a change in the link from where you can download the virus removal tool:
exchangeserverinfo.net/default.aspx?g=posts&m=67C its under anti virus forum , |
|
#18
|
|||
|
|||
|
thanks lot it works
|
![]() |
| Thread Tools | |
|
|
| Similar Topics | ||||
| Topic | Category | Replies | Last Post | |
| Virus? Hard drive issue? | Windows OS | 3 | 05-26-2008 10:10 PM | |
| Can't delete a virus from my pen drive, even after formating it! | Virus & Malware removal | 8 | 01-22-2008 08:04 PM | |
| I got a virus in my flash drive | Virus & Malware removal | 2 | 05-09-2007 07:59 PM | |
| My Anti virus Cd is scratched and it doesn't work in my D drive. | Windows OS | 6 | 11-20-2006 10:02 PM | |
| Virus Hard drive OS issue help please | General Hardware | 24 | 02-23-2006 07:35 PM | |
All times are GMT -4. The time now is 08:31 AM.





