Question
Help! I don't know what virus/es has latched on my computer, could you help me identify and cure it?
1. removed Folder Options in the toolbar
2. hides my folders and creates .exe files in their place (behavior of a recycler virus)
3. created / changed passwords of my user accounts (even the administrator) so I cannot login.
4. it created a rogue csrss.exe which launches on startup, even during safe mode, so that the virus activates even on safe mode and cannot be removed. When the process is running, it closes down regedit so I cannot alter the registry. I could kill the process, but I could not delete its source file because it is a hidden file.
5. Activates changepasswordkeroberos (not sure about this one)
6. the following processes comes up occasionally: net.exe, net1.exe, msha.exe, domain.exe, and of course the rogue csrss.exe
Help in identifying and removing this would be appreciated!
Answer
antivirus tips and antivirus download:
http://merakit-komputer.com
http://merakit-komputer.com
Other Answer
If you can't log in to your administrator's account you're pretty much screwed.
As for the processes you mentioned on your #6, they're core processes of the Windows OS.
If they've been replaced, which would really be something strange because Windows Defender (unless you have it disabled) would've blocked the attempt to change them, then you can:
1. try to run a System Restore by restarting your computer and pressing F8 many times before it boots up
2. restore your computer manually by using a recovery disk if you've ever made one
3. reformat your computer by installing an Operating System.
reinstall windows
2010-3-9 11:15:36You need to restart your computer and while its booting up continuously press F8 until a prompt pops up ...select Safe Mode with networking. after its fully loaded back to your desktop go download malwarebytes...www.malwarebytes.com run it update it and it will fix this. if you need further assistance you can contact me on msn or windows live a lol-tripp@hotmail.com
2010-3-9 15:24:43
Ask

