Sorry your browser is not supported!

You are using an outdated browser that does not support modern web technologies, in order to use this site please update to a new browser.

Browsers supported include Chrome, FireFox, Safari, Opera, Internet Explorer 10+ or Microsoft Edge.

Geek Culture / [LOCKED] Virus-Infected :(

Author
Message
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 19:35 Edited at: 14th May 2010 22:27
THE PROBLEM IS NOW FIXED. CAN A MOD PLEASE LOCK THIS?

I apologise for my recent outrage, but I have been put under so much pressure from GCSEs and a number of other problems. I give my sincere apologies to anyone who felt discomforted after reading this previous message.

I am currently going to try a System Restore Point and see whether or not it removes the viruses, albeit if it doesn't, it'll be either disabling the processes, using an Anti-Virus or a complete re-installation (even though I dread doing such a thing like that)


I don't know how, but my PC's infected. I noticed this after downloading Mystic Mod (I think a virus may have crept in on my PC) and I received around 3 viruses: Hriwya, Hzk and another which I can't remember it's name. I can control them by ending their processes via Task Manager but they keep coming back, and I've found Hriwya's root file (guess what it's called?) and don'rt know whether to delete it, since I've heard that they can 'cluster', creating more viruses. Basically, the Hriwya uses 75% of the RAM and sets it's process to high priority, denying any other applications the spare RAM. I'm not sure what the other two do, an I'm not up to keeping them open in case they're a Ticker Virus or Trojan. Should I delete the Hriwya file or not? I don't have any Anti-Virus program because they are usually a waste, and I've never received a virus before. Any help?

-EDIT- I'd also like to make it clear that I am not attaching any file in case the virus jumps onto the attachment, unless you think it's safe to attach an image of the process.

-SSG

--=. ,=--
"Death is a surprise party. Unless, of course...you're already dead on the inside." - John Kramer, SAW III
jeffhuys
19
Years of Service
User Offline
Joined: 24th May 2006
Location: No cheesy line here.
Posted: 7th May 2010 19:43
As far as I know, an image can't carry a virus.

David R
21
Years of Service
User Offline
Joined: 9th Sep 2003
Location: 3.14
Posted: 7th May 2010 19:45 Edited at: 7th May 2010 19:45
Some older OSes (XP ~SP1/SP2) are susceptible to a flaw which allows worms to be embedded in JPEGs etc.

But yeah, in general not a threat

09-f9-11-02-9d-74-e3-5b-d8-41-56-c5-63-56-88-c0
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 20:22
Ok, I'll attach an image then.

Screenshot of Hriwya running in Task Manager.

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
lazerus
17
Years of Service
User Offline
Joined: 30th Apr 2008
Location:
Posted: 7th May 2010 20:24
Spybot search and destroy, Give your pc some TLC

SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 20:24 Edited at: 7th May 2010 20:25
Screenshot of the location of the virus.

@lazerus,
I'll try that in a sec, thanks .

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 20:27
Hzk virus in Task Manager.

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
TheComet
17
Years of Service
User Offline
Joined: 18th Oct 2007
Location: I`m under ur bridge eating ur goatz.
Posted: 7th May 2010 20:34
http://www.symantec.com/index.jsp

I wish you good luck.

TheComet

SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 20:39
Symantec...puah, we have Norton 360 and that lags a bunch on our other PC. I can't install S&D due to a message that it can't access the server and I'll look at the Symantec products. Thanks.

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
Bugsy
16
Years of Service
User Offline
Joined: 24th Nov 2008
Location: another place in time
Posted: 7th May 2010 21:07
symantec IS norton, and both are not trustworthy. nod32 ftw.

imageflock.com/img/1272671763.jpg[/img]
skype = isaacpreston. I want to talk to YOU
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 7th May 2010 21:12
I know they are the same lol xD. I'm searching for the HZJ/HZK trojan and killing the b'tard as soon as I see it .

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
Quik
17
Years of Service
User Offline
Joined: 3rd Jul 2008
Location: Equestria!
Posted: 7th May 2010 22:40
nod 32 = win.


[Q]uik, Quiker than most
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 9th May 2010 14:53
Do you think that it will get rid of the two viruses? If so, I'll install the trial and see what happens .

-SSG

--=. ,=--
"Nobody 'freaking' changes. Nobody is reborn, it's all BS. It's all a 'freaking' lie!" - Amanda, SAW III
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 10th May 2010 21:30 Edited at: 10th May 2010 22:09
UPDATE:

I'm at a crossroads now, and I need user's opinions before I take any action, I have these choices to choose but I'm not sure which one will be most effective:

1). Going to RegEdit and disabling the viruses' processes, therefore leaving the viruses on my system, but taking no effect.

2). Using an Anti-Virus software to see if it can erase them.

3). RISKY: Completely deleting the virus files, albeit if even one of them are cluster viruses, spawning more after being deleted.

4). Perform a System Restore.

Also, is the process 'FUsbDrive', or something like that, recognisable to any of you guys? I don't remember seeing this process before, although it might be for my phone's program (although it wasn't on during the time I had the viruses).

Thanks for the help everyone, I know I'm probably becoming a pain in the backside, but I've never encountered a virus before, and I need professional support, preferably free from users.

And sorry for the DP :S.

-EDIT- I'm on the end of my tether here, I need to revise heavily on my PC for my GCSE exams next week, finish coursework saved on my PC, create a game for the X10 Revival Competition and carry on with my freelance work. PLEASE HELP ME !

-SSG

General Jackson
User Banned
Posted: 11th May 2010 18:28
Add me to MSN or YM.
I can help you, its simple

SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 11th May 2010 21:35 Edited at: 11th May 2010 21:37
Ok, I will do in a sec thanks . Didn't notice your post since you're on moderation lol.

-EDIT-Added .

-SSG

That Guy John
15
Years of Service
User Offline
Joined: 30th Apr 2010
Location: United States
Posted: 11th May 2010 21:37 Edited at: 11th May 2010 21:42
Quote: "NO LONGER INTERVENE ON TGC FOR A WHILE AND SEEK HELP SOMEWHERE ELSE! PLEASE DON'T MAKE ME DO SUCH A THING! "


If you are in such a hurry:

1. Back up your needed files and documents
2. Hunt down the serial and product keys for the software you use and back them up. (copy and paste them to a text file)
3. Do a clean sweep and re-install windows wiping out your entire hard drive.
4. Install avg, malwarebytes, and microsoft security essentials and run their updates.
5. Scan all of your backed up files before re-installing software and moving backed up documents to your pc.
6.Re-install your needed programs with the serial / product keys you copied to the text files.
7. Restore your files / documents you backed up.

It really is that easy, if you can't rectify your virus issue.

I am sure that bolding like this and threatening to Seek help somewhere else!. makes no impact on rather you get help from here or not.

You've never come to my place and given me a back rub, so I for one wouldn't really miss you that much.

But with all seriousness, I hope you get it taken care of.

ThatGuyJohn.com (personal blog)
Proposal for new forum section - The Business End - http://forum.thegamecreators.com/?m=forum_view&t=169868&b=39
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 11th May 2010 21:41
Quote: "Youve never come to my place and given me a back rub, so I for one wouldn't really miss you that much"


. Sorry about that, I got in a rage like that because I was way over-stressed about what's happening for my GCSEs and what not. I'll try System Restore first, then see what happens. Perhaps I'll edit my post there lol xD. I think your method would be a last resort I guess, but I'll keep it in mind . Thanks a bunch .

-SSG

That Guy John
15
Years of Service
User Offline
Joined: 30th Apr 2010
Location: United States
Posted: 11th May 2010 21:45
No problem, I understand that things like this can be really frustrating, but you gotta kinda try and keep your cool when asking for help.

Best of luck to you bud.

ThatGuyJohn.com (personal blog)
Proposal for new forum section - The Business End - http://forum.thegamecreators.com/?m=forum_view&t=169868&b=39
SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 11th May 2010 21:50
Thanks, I hope I can get this fixed, lucky my new nVidia Graphics Card created a restore point 3 days before I got infected by the viruses! I'll try that in a bit. Thank you .

@General Jackson,

I will have a chat with you on MSN in a little while if my System Restore method fails, you said you had a neat trick in mind .

-SSG

SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 11th May 2010 23:18 Edited at: 11th May 2010 23:20
Ok, I now have the location of all the 3 viruses I have (yep 3, Hzj is also on there but never runs). Hzk and Hzj are located in my AppData\Local\Temp folder, nicely titled 'Hzk.exe' and 'Hzj.exe', both added 6ht of May, 2010. The other, hriwya, is found in the C;\Windows\ folder named 'Hriwya.exe'. Huh, I wonder what those files are . System Restore didn't work either. Also, Windows contains 2 Prefetch fiels with the names along the lines of 'HZK_02006Ba991.pf' and 'Hriwya_00197409A.pf'. Shall I remove the Pre-fetches first, then the viruses, the other way round, or neither? SOPHOS Anti-Virus won't find them, even when I was in Safe Mode, so I guess the only option left is to remove them manually, but I can't find their Registries on RegEdit. Any solutions? I deeply appreciate this guys (That's What She Said! a little) and I hope deleting the viruses'll put my PC back to normal.

Could I have an answer quickly please since I need to go soon? Pretty please?

-SSG

--=. ,=--
"Death is a surprise party. Unless, of course...you're already dead on the inside." - John Kramer, SAW III
Bugsy
16
Years of Service
User Offline
Joined: 24th Nov 2008
Location: another place in time
Posted: 14th May 2010 05:26
run combofix. it's all you need to do. if they re-instll themselves, you've got a big effing problemo.

imageflock.com/img/1272671763.jpg[/img]
skype = isaacpreston. I want to talk to YOU
farmkid4
15
Years of Service
User Offline
Joined: 23rd Sep 2009
Location: on my pc :)
Posted: 14th May 2010 16:26
I might have miss understood but You really should be running anti virus software when you get a virus without having one installed it makes it very much more difficult to get rid of them. Oh and btw the Computer repairman I work for(he has been working on computers for more than 15 years) uses symantec and it works fine.

Hope you get it taken care of.

SikaSina Games
17
Years of Service
User Offline
Joined: 5th Dec 2007
Location: Reading, UK
Posted: 14th May 2010 22:26
I've fixed the problem, I just found the paths to the viruses via Task Manager and deleted the .EXEs. Perhaps if my dad decides to free a license for our Norton 360 (we have it on our laptop and main PC) then I should get N360 up.

Quote: "if they re-instll themselves, you've got a big effing problemo."


That's what I was worried about, I bit the bullet and took a dare to erase them manually and they have installed since when I removed them 2 days ago.

Thanks for all your help guys, I really appreciated your effort to help me . Can a mod please lock this now? Thanks!

-SSG

--=. ,=--
"Death is a surprise party. Unless, of course...you're already dead on the inside." - John Kramer, SAW III

Login to post a reply

Server time is: 2025-08-08 10:17:07
Your offset time is: 2025-08-08 10:17:07