• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Virus or Trojan Vaporized Vista

wakkierob

New Member
Joined
Nov 29, 2009
Messages
72 (0.01/day)
System Name Terminator
Processor e8400 3GHz oced @ 4.03GHz 1.6vcore
Motherboard Asrock P45xe
Cooling Sibirian Tiger NorthQ Watercooled
Memory Corsair Dominator blade xms 2x 2gb pc2-8500
Video Card(s) VTX Radeon HD 4770 @ Sapphire HD 4770 Crossfire
Storage SATA 150GB HD Barracuda 7200 @ SATA 600GB HD Western Digital Caviar Geen 64MB cache
Display(s) standard 17"
Case Gamers Blk (120mm Cooling Fans)
Audio Device(s) none
Power Supply Alphapower (switching PSU) 750watt
Software Vista 32-bit Ultimate SP2
Benchmark Scores 20000+ with 3d mark 06 and both radeon hd 4770 oced
I downloaded Microsofts own Security Suit from there site and installed it everything fine but then today wack the lot was being sucked dry. My net was being sucked up when I hit connect on my t-mobile broadband as soon as the connect button was pressed all the usage was suck into oblivion in a instent. I thought maybe its a hacker but i soon discovered that when i use it on my other pc it work with no usage only when loading pages like normal so it had to be something on my lappy but boom the hard drive had suddenly developed crashes on the explorer when roaming my partitions and usb drives for software!

:eek::eek:HELP, HELP HELLLLLLLPPPPPP!!!!!! :eek::eek::eek:
 

dmbyer

New Member
Joined
Mar 8, 2010
Messages
13 (0.00/day)
Location
DFW
What's your network usage in task manager? Have a screenshot maybe?

Try getting a tool like Netlimiter to see what process is using the network.
 

wakkierob

New Member
Joined
Nov 29, 2009
Messages
72 (0.01/day)
System Name Terminator
Processor e8400 3GHz oced @ 4.03GHz 1.6vcore
Motherboard Asrock P45xe
Cooling Sibirian Tiger NorthQ Watercooled
Memory Corsair Dominator blade xms 2x 2gb pc2-8500
Video Card(s) VTX Radeon HD 4770 @ Sapphire HD 4770 Crossfire
Storage SATA 150GB HD Barracuda 7200 @ SATA 600GB HD Western Digital Caviar Geen 64MB cache
Display(s) standard 17"
Case Gamers Blk (120mm Cooling Fans)
Audio Device(s) none
Power Supply Alphapower (switching PSU) 750watt
Software Vista 32-bit Ultimate SP2
Benchmark Scores 20000+ with 3d mark 06 and both radeon hd 4770 oced
It's a virus

I think its some sort of virus :nutkick: but here's my t-mobile connection pic
 

Attachments

  • nework.jpg
    nework.jpg
    93.2 KB · Views: 392
Joined
May 5, 2009
Messages
2,270 (0.42/day)
Location
the uk that's all you need to know ;)
System Name not very good (wants throwing out window most of time)
Processor xp3000@ 2.17ghz pile of sh** /i7 920 DO on air for now
Motherboard msi kt6 delta oap /gigabyte x58 ud7 (rev1.0)
Cooling 1 green akasa 8cm(rear) 1 multicoloured akasa(hd) 1 12 cm (intake) 1 9cm with circuit from old psu
Memory 1.25 gb kingston hyperx @333mhz/ 3gb corsair dominator xmp 1600mhz
Video Card(s) (agp) hd3850 not bad not really suitable for mobo n processor/ gb hd5870
Storage wd 320gb + samsung 320 gig + wd 1tb 6gb/s
Display(s) compaq mv720
Case thermaltake XaserIII skull / coolermaster cm 690II
Audio Device(s) onboard
Power Supply corsair hx 650 w which solved many problems (blew up) /850w corsair
Software xp pro sp3/ ? win 7 ultimate (32 bit)
Benchmark Scores 6543 3d mark05 ye ye not good but look at the processor /uknown as still not benched
hi try this Malwarebytes_Anti-Malware it's from techpowerup's servers and comes highly recommended by me ;) scan your system and get back to us with what it says(don't forget to update it first)
 
Joined
May 7, 2009
Messages
5,392 (0.99/day)
Location
Carrollton, GA
System Name ODIN
Processor AMD Ryzen 7 5800X
Motherboard Gigabyte B550 Aorus Elite AX V2
Cooling Dark Rock 4
Memory G Skill RipjawsV F4 3600 Mhz C16
Video Card(s) MSI GeForce RTX 3080 Ventus 3X OC LHR
Storage Crucial 2 TB M.2 SSD :: WD Blue M.2 1TB SSD :: 1 TB WD Black VelociRaptor
Display(s) Dell S2716DG 27" 144 Hz G-SYNC
Case Fractal Meshify C
Audio Device(s) Onboard Audio
Power Supply Antec HCP 850 80+ Gold
Mouse Corsair M65
Keyboard Corsair K70 RGB Lux
Software Windows 10 Pro 64-bit
Benchmark Scores I don't benchmark.
If it is a virus it is a Denial of Service attack. You should start by disconnecting the internet, since that is what it is affecting and run through your usual virus routine (whatever that may be). 10 to 1 you will find some process that you didn't install trying to connect to the internet. Stop the service, remove files related, done.
 
Joined
Jun 16, 2009
Messages
5,123 (0.94/day)
Location
North of Germany
System Name Nexus PC
Processor Intel Xeon E3-1231 v3, 3600 MHz
Motherboard Gigabyte GA-H97-HD3
Cooling Thermalright Macho V2
Memory 24GB DDR3, 1400MHZ CL8
Video Card(s) Sapphire Radeon R9 290
Storage Samsung EVO 960 250gb, EVO 850 250gb, Vertex 3 128gb. 2 TB of Rotational.
Display(s) 1xAsus MX299, 2x Asus MX239, Oculus Rift CV1
Case Sunflower Tower
Audio Device(s) C-Media CMI8738/C3DX
Power Supply Corsair TX850
Mouse Cyborg R.A.T. 7
Software Win7 64Bit Ultimate
If it is a virus it is a Denial of Service attack. You should start by disconnecting the internet, since that is what it is affecting and run through your usual virus routine (whatever that may be). 10 to 1 you will find some process that you didn't install trying to connect to the internet. Stop the service, remove files related, done.

isnt a random DoS not designated for a specific "victim", a Teardrop?:)

EDIT:
Nevermind, that was in win95 times... maybe wakkie has a personal enemy,that can hack, then? Nukers dont work anymore,these days,as far as i know.
 
Joined
May 7, 2009
Messages
5,392 (0.99/day)
Location
Carrollton, GA
System Name ODIN
Processor AMD Ryzen 7 5800X
Motherboard Gigabyte B550 Aorus Elite AX V2
Cooling Dark Rock 4
Memory G Skill RipjawsV F4 3600 Mhz C16
Video Card(s) MSI GeForce RTX 3080 Ventus 3X OC LHR
Storage Crucial 2 TB M.2 SSD :: WD Blue M.2 1TB SSD :: 1 TB WD Black VelociRaptor
Display(s) Dell S2716DG 27" 144 Hz G-SYNC
Case Fractal Meshify C
Audio Device(s) Onboard Audio
Power Supply Antec HCP 850 80+ Gold
Mouse Corsair M65
Keyboard Corsair K70 RGB Lux
Software Windows 10 Pro 64-bit
Benchmark Scores I don't benchmark.
isnt a random DoS not designated for a specific "victim", a Teardrop?:)

EDIT:
Nevermind, that was in win95 times... maybe wakkie has a personal enemy,that can hack, then? Nukers dont work anymore,these days,as far as i know.

I don't know about Vista, but I have seem some cool DoS attacks in XP. 2 on my own personal system.

I am not saying it is being specific. He may have just got 1 computer infected and the other has not been infected. You know you use your Desktop and laptop differently. I don't even go the same web pages on my laptop. It may not be a virus at all. It could just be a failed process in Vista that just needs to be turned off.
 
Joined
Jun 16, 2009
Messages
5,123 (0.94/day)
Location
North of Germany
System Name Nexus PC
Processor Intel Xeon E3-1231 v3, 3600 MHz
Motherboard Gigabyte GA-H97-HD3
Cooling Thermalright Macho V2
Memory 24GB DDR3, 1400MHZ CL8
Video Card(s) Sapphire Radeon R9 290
Storage Samsung EVO 960 250gb, EVO 850 250gb, Vertex 3 128gb. 2 TB of Rotational.
Display(s) 1xAsus MX299, 2x Asus MX239, Oculus Rift CV1
Case Sunflower Tower
Audio Device(s) C-Media CMI8738/C3DX
Power Supply Corsair TX850
Mouse Cyborg R.A.T. 7
Software Win7 64Bit Ultimate
isnt a random DoS not designated for a specific "victim", a Teardrop?:)

EDIT:
Nevermind, that was in win95 times... maybe wakkie has a personal enemy,that can hack, then? Nukers dont work anymore,these days,as far as i know.

I don't know about Vista, but I have seem some cool DoS attacks in XP. 2 on my own personal system.

I am not saying it is being specific. He may have just got 1 computer infected and the other has not been infected. You know you use your Desktop and laptop differently. I don't even go the same web pages on my laptop. It may not be a virus at all. It could just be a failed process in Vista that just needs to be turned off.

denial of service is a massive overflooding of a system with crap data (for example,requests), to simply crash it.
i dont think it can effect a system permanently, if it works like this:

its named denial of service, due to what it does to the attacked system
but im not that network guru, it has to do with functionalities of gigantiv networks, and is far from beeing totally understandable by me :eek:
BUT as far as i know, a worm can also be programmed to spread, and then carry out a massive DoS on a Backbone, or Mainframe,after a specific,programmed time (Microsoft happened that often)
when 13 millions simultaneos requests hit a system, i bet you can imagine what happens ;-)
 
Last edited:
Joined
May 7, 2009
Messages
5,392 (0.99/day)
Location
Carrollton, GA
System Name ODIN
Processor AMD Ryzen 7 5800X
Motherboard Gigabyte B550 Aorus Elite AX V2
Cooling Dark Rock 4
Memory G Skill RipjawsV F4 3600 Mhz C16
Video Card(s) MSI GeForce RTX 3080 Ventus 3X OC LHR
Storage Crucial 2 TB M.2 SSD :: WD Blue M.2 1TB SSD :: 1 TB WD Black VelociRaptor
Display(s) Dell S2716DG 27" 144 Hz G-SYNC
Case Fractal Meshify C
Audio Device(s) Onboard Audio
Power Supply Antec HCP 850 80+ Gold
Mouse Corsair M65
Keyboard Corsair K70 RGB Lux
Software Windows 10 Pro 64-bit
Benchmark Scores I don't benchmark.
denial of service is a massive overflooding of a system with crap data (for example,requests), to simply crash it.
i dont think it can effect a system permanently, if it works like this:
http://www.emeraldinsight.com/fig/0460100501001.png
its named denial of service, due to what it does to the attacked system
but im not that network guru, it has to do with functionalities of gigantiv networks, and is far from beeing totally understandable by me :eek:
BUT as far as i know, a worm can also be programmed to spread, and then carry out a massive DoS on a Backbone, or Mainframe,after a specific,programmed time (Microsoft happened that often)
when 13 millions simultaneos requests hit a system, i bet you can imagine what happens ;-)

DoS come in various forms. That is a network DoS, but you can have local ones as well. As long as the virus primary goal is to prevent usage of your computer in some way by overloading it with crap data, it is a DoS. Example: I had a DoS worm that installed a fake printer on my computer. It then requested the printer to print 80,000 documents of the letter A. My computer began to queue/spool the pages and froze around 2,800 spooled documents. It then used every clock cycle of my CPU to spool thus rendering my entire system useless.

Network DoS are just more famous because it use to be "the" way to bring down a website for hackers in the past.
 
Joined
Jun 16, 2009
Messages
5,123 (0.94/day)
Location
North of Germany
System Name Nexus PC
Processor Intel Xeon E3-1231 v3, 3600 MHz
Motherboard Gigabyte GA-H97-HD3
Cooling Thermalright Macho V2
Memory 24GB DDR3, 1400MHZ CL8
Video Card(s) Sapphire Radeon R9 290
Storage Samsung EVO 960 250gb, EVO 850 250gb, Vertex 3 128gb. 2 TB of Rotational.
Display(s) 1xAsus MX299, 2x Asus MX239, Oculus Rift CV1
Case Sunflower Tower
Audio Device(s) C-Media CMI8738/C3DX
Power Supply Corsair TX850
Mouse Cyborg R.A.T. 7
Software Win7 64Bit Ultimate
DoS come in various forms. That is a network DoS, but you can have local ones as well. As long as the virus primary goal is to prevent usage of your computer in some way by overloading it with crap data, it is a DoS. Example: I had a DoS worm that installed a fake printer on my computer. It then requested the printer to print 80,000 documents of the letter A. My computer began to queue/spool the pages and froze around 2,800 spooled documents. It then used every clock cycle of my CPU to spool thus rendering my entire system useless.

Network DoS are just more famous because it use to be "the" way to bring down a website for hackers in the past.

ah, again, i learned sth new!thanks!:)
that sounds logical, but that seems more like a evil hoax to piss off people all over the world. some hackers seem to have a strange kind of humor/intentions:laugh:
luckily i never was infected by such a sucker, i had my biggest problems with sasser E,back in the days:D
 
Joined
May 7, 2009
Messages
5,392 (0.99/day)
Location
Carrollton, GA
System Name ODIN
Processor AMD Ryzen 7 5800X
Motherboard Gigabyte B550 Aorus Elite AX V2
Cooling Dark Rock 4
Memory G Skill RipjawsV F4 3600 Mhz C16
Video Card(s) MSI GeForce RTX 3080 Ventus 3X OC LHR
Storage Crucial 2 TB M.2 SSD :: WD Blue M.2 1TB SSD :: 1 TB WD Black VelociRaptor
Display(s) Dell S2716DG 27" 144 Hz G-SYNC
Case Fractal Meshify C
Audio Device(s) Onboard Audio
Power Supply Antec HCP 850 80+ Gold
Mouse Corsair M65
Keyboard Corsair K70 RGB Lux
Software Windows 10 Pro 64-bit
Benchmark Scores I don't benchmark.
I personally hate fake Virus scanner viruses because stupid people fall for that BS and I have to spend 6 hours fixing it. Then another hour explaining what AVG/Avast/Kaspersky or whatever mood I am in that day is and why SuperAntiVirus Ultimate 5 WAS the virus.

Best one ever "started a scan" on my computer and told me I had 200 virus or some shit. First off, it started a scan without permission from a weblink which is not possible. Second, it was a Win98 themed box.....I was using Ubuntu 7.10. I just closed the window and it never appeared again.

Anyway, lets wait an see what he reports have he like, you know, works on fixing the issue.
 

wakkierob

New Member
Joined
Nov 29, 2009
Messages
72 (0.01/day)
System Name Terminator
Processor e8400 3GHz oced @ 4.03GHz 1.6vcore
Motherboard Asrock P45xe
Cooling Sibirian Tiger NorthQ Watercooled
Memory Corsair Dominator blade xms 2x 2gb pc2-8500
Video Card(s) VTX Radeon HD 4770 @ Sapphire HD 4770 Crossfire
Storage SATA 150GB HD Barracuda 7200 @ SATA 600GB HD Western Digital Caviar Geen 64MB cache
Display(s) standard 17"
Case Gamers Blk (120mm Cooling Fans)
Audio Device(s) none
Power Supply Alphapower (switching PSU) 750watt
Software Vista 32-bit Ultimate SP2
Benchmark Scores 20000+ with 3d mark 06 and both radeon hd 4770 oced
It was some sort of worm, I searched Taskmanager couldn't find anything different, chkd taskschedular nothing, routed through the registry and deleted alot of strange number keys and some other stuff. I deleted temp, temperory internet files, cookies manually I also used the virus suite and nothing nothing nothing..... Then bang stread like wildfire and gobbled up files, corrupted startup mbr data then internet usage maxed probably trying to shove more in my computer then infected my USB and corrupted all my software bad bad bad. On my lappy I used a partition tool and migrated my file to another partition incase it did spread to usb. After usb dongle with storage worked fine on my desktop PC bang next time i turned on all errors not on the screen but when i went to read something it would say appcrash explorer all the time when i went to install anything on any drive partition. I had to do a complete re-install three times to get back to normal and still I haven't checked weather it's gone yet and i hope it won't explorer appcrash again I can't install sp1 or sp2 on it BOOOOOOOOO!!!!
I used the origianl Vista Upgrade CD to make a USB bootup and works exellent on my lappy so hopefully it will work if everything's not OK.
My biggest regret is I couldn't find out what it was if anyone has any ideas if it happens again mybe i can use the advice THANKS for reading WAKKIE!!!!

Also it would gobble up files on the way so some programs would complain error missing or corrupted files instead of the normal??
 
Last edited:
Joined
Jun 16, 2009
Messages
5,123 (0.94/day)
Location
North of Germany
System Name Nexus PC
Processor Intel Xeon E3-1231 v3, 3600 MHz
Motherboard Gigabyte GA-H97-HD3
Cooling Thermalright Macho V2
Memory 24GB DDR3, 1400MHZ CL8
Video Card(s) Sapphire Radeon R9 290
Storage Samsung EVO 960 250gb, EVO 850 250gb, Vertex 3 128gb. 2 TB of Rotational.
Display(s) 1xAsus MX299, 2x Asus MX239, Oculus Rift CV1
Case Sunflower Tower
Audio Device(s) C-Media CMI8738/C3DX
Power Supply Corsair TX850
Mouse Cyborg R.A.T. 7
Software Win7 64Bit Ultimate
It was some sort of worm, I searched Taskmanager couldn't find anything different, chkd taskschedular nothing, routed through the registry and deleted alot of strange number keys and some other stuff. I deleted temp, temperory internet files, cookies manually I also used the virus suite and nothing nothing nothing..... Then bang stread like wildfire and gobbled up files, corrupted startup mbr data then internet usage maxed probably trying to shove more in my computer then infected my USB and corrupted all my software bad bad bad. On my lappy I used a partition tool and migrated my file to another partition incase it did spread to usb. After usb dongle with storage worked fine on my desktop PC bang next time i turned on all errors not on the screen but when i went to read something it would say appcrash explorer all the time when i went to install anything on any drive partition. I had to do a complete re-install three times to get back to normal and still I haven't checked weather it's gone yet and i hope it won't explorer appcrash again I can't install sp1 or sp2 on it BOOOOOOOOO!!!!
I used the origianl Vista Upgrade CD to make a USB bootup and works exellent on my lappy so hopefully it will work if everything's not OK.
My biggest regret is I couldn't find out what it was if anyone has any ideas if it happens again mybe i can use the advice THANKS for reading WAKKIE!!!!

Also it would gobble up files on the way so some programs would complain error missing or corrupted files instead of the normal??

can it be, that you somehow catched a low-level hardware virus? i never encountered one, jsut heard of it. must be realllly bad!
 
Top