also @ TechSpot: HDD supply to recover by Q3 2012, prices to remain high
Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Sign up or Login to participate.

Go Back   TechSpot OpenBoards > Tech Support > Virus and Malware Removal

Begin your free trial now Pay-as-you-go options starting at $10/user/month

Personalized Settings Virus

Thread Tools Search this Thread
  #1  
Old 04-10-2009
TechSpot Member
 
Location: Toronto, Canada
Member since: Aug 2007, 48 posts
System specs
Personalized Settings Virus

Lately, I have opened a foul Ventrilo.exe which was backdoored. Never knew, but I do now.

On Startup, I get a Personalized Settings message top left, and in the middle of the screen I get a "Run" "Cancel" "server.exe"


In the Personalized settings box it says "C:\Windows\system32\lol\server.exe"

I tried using CMD to remove the directory and file, CMD can't find it. i can't find it either.

So I was thinking of using a ComboFix script to remove it. Except I don't know what the commands are for combofix scripts.

The combofix script is attached!
Attached Files
File Type: txt ComboFixlog.txt (69.3 KB, 2 views)
  #2  
Old 04-10-2009
TechSpot Member
 
Location: Toronto, Canada
Member since: Aug 2007, 48 posts
System specs
WOOT.

Got rid of it on my own.

Used Killbox, and deleted the reg entries.
Closed Thread

Similar Topics
Topic Replies Forum
Windows 7 Setup stalls at Personalized Settings 0 Windows OS
Please help, virus changed settings in display properties and startup regedit 1 Virus and Malware Removal
Settings changed. Virus? 0 Virus and Malware Removal
An msn messenger virus, popups, and privacy settings 1 Virus and Malware Removal
Personalized Titles? 5 Site Feedback and Suggestions

Thread Tools Search this Thread
Search this Thread:

Advanced Search
All times are GMT -4. The time now is 04:42 PM.