Welcome Guest ( Log In | Register )

Outline · [ Standard ] · Linear+

 Not A Brontok?

views
     
TSPitt
post Mar 14 2007, 05:13 PM, updated 19y ago

Casual
***
Junior Member
312 posts

Joined: Jan 2003
From: Qoddah


Olaa.........

mad.gif is my brother when he can't clean this one single problem.he ask me to check it and all i can identify is this.

1.i already use brontok cleanner.none of them found whts the problem.
2.the task manager and the folder options (like brontok) hilang already(task manager being unclickable by right click at taskbar>task manager)
3.it has all the brontok file ie csrss,winlogon bla bla.
4.very heavy CPU utilization can be seen from how hard it is for me to do almost anything.
5.regedit n command prompt cant use


so,any guys of u had any idea?is it a new virus?or is there anything that i'm not doing right?i already use cleaner from bitdefender and sophos,none of them manage to find it,so what is happening actually?
victor_hoh
post Mar 14 2007, 05:20 PM

pump my muscles
******
Senior Member
1,191 posts

Joined: Nov 2004
From: Ipoh, now PJ


try this one, from sUBs

http://download.bleepingcomputer.com/sUBs/CleanX-II.exe
Nightfalls
post Mar 14 2007, 05:32 PM

~Hi Baby~
****
Senior Member
521 posts

Joined: Feb 2006
From: ~Oblivion~


or u can use F-Secure or AVG gua... unless it is new brontok type
eXPeri3nc3
post Mar 14 2007, 05:33 PM

It's coming! 3ɔu3ıɹǝdxǝ ♥
*******
Senior Member
9,257 posts

Joined: Aug 2005
From: Not so sure myself Status: 1+3+3=7



sUBs cleanXII should be able to tackle most of the components unless it's really a new variant. smile.gif
TSPitt
post Mar 14 2007, 05:41 PM

Casual
***
Junior Member
312 posts

Joined: Jan 2003
From: Qoddah


so after running this,do i need to do anything else?e.g clean registry or delete sumother files?
Nightfalls
post Mar 14 2007, 05:43 PM

~Hi Baby~
****
Senior Member
521 posts

Joined: Feb 2006
From: ~Oblivion~


check for all the brontok haunting spot for the remains.. if nothing found.. then OK lor... hehe..
yukihatsu
post Mar 14 2007, 06:05 PM

On my way
****
Senior Member
672 posts

Joined: Dec 2006
QUOTE(Pitt @ Mar 14 2007, 05:13 PM)

3.it has all the brontok file ie csrss,winlogon bla bla.

*
csrss and winlogon is a brontok?? shocking.gif shocking.gif i have it in my task manager... O_O;
but i still can access my registry editor and task manager... the folder options is still there also..
TSPitt
post Mar 14 2007, 06:51 PM

Casual
***
Junior Member
312 posts

Joined: Jan 2003
From: Qoddah


yup tats what symantec said.tose are brontok files.i wonder.....
proxiey
post Mar 14 2007, 07:17 PM

Getting Started
**
Junior Member
105 posts

Joined: Feb 2007


QUOTE(yukihatsu @ Mar 14 2007, 06:05 PM)
csrss and winlogon is a brontok??  shocking.gif  shocking.gif i have it in my task manager... O_O;
but i still can access my registry editor and task manager... the folder options is still there also..
*
ehehe.. not la.. for my understand.. brontok also make a new application and was named by the same as "ordinary windows app" mean.. want to hidden or "menyorok"

i remove brontok by manual..delet all the file that have same size with same date created.. then fix the registry by manual..
hue.. must be carefuly because if not all file brontox deleted.. it will copy themself again.
so "leceh" .. but no choice.. because its disable all antivirus software.
folder option , task manager can be set to make it able again..
eXPeri3nc3
post Mar 15 2007, 01:55 PM

It's coming! 3ɔu3ıɹǝdxǝ ♥
*******
Senior Member
9,257 posts

Joined: Aug 2005
From: Not so sure myself Status: 1+3+3=7



QUOTE(yukihatsu @ Mar 14 2007, 06:05 PM)
csrss and winlogon is a brontok??  shocking.gif  shocking.gif i have it in my task manager... O_O;
but i still can access my registry editor and task manager... the folder options is still there also..
*
Having both of those in your pc doesn't mean that you're infected.
In fact if you do research for the two listed files they are legit IF and only IF they are in system32 folder.

Anywhere else that contains that file is malware/foistware. smile.gif

 

Change to:
| Lo-Fi Version
0.0164sec    0.27    5 queries    GZIP Disabled
Time is now: 22nd December 2025 - 03:40 AM