Argonath RPG - A World of its own

Argonath RPG Community => Hardware/Software support => Resolved issues => Topic started by: Grovyle on May 17, 2010, 08:21:28 pm

Title: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Grovyle on May 17, 2010, 08:21:28 pm
Ohai.

After *ahem* my usual business (not porn) :poke: I seemed to got this virus.

Problem is if I try to remove it with AVG the whole system freezes and only CTRL+ALT+DEL works. Can't terminate session, block computer, run task manager, nothing. Just the good old menu from Windows 7 CTRL+ALT+DEL. Gotta hit reset, god damn it.

I have done some research and this seems to be the same virus that installs a fake antivirus program, but I didn't get anything, just SLIGHT slowdown from boot up and resident shield from AVG annoying me.

Can someone tell me how the hell am I gonna remove this thing? It's "fine" (notice the damn quotes. THE QUOTES! THEY ARE RIGHT THERE!) that the virus just sits there and AVG is blocking it, but for gods sake Resident Shield is ANNOYING AS... D:

By the way, I just found ways to delete it... in Windows XP. I'm running 7 :neutral:
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Alarba on May 17, 2010, 08:44:38 pm
Malwarebytz anti malware!
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Grovyle on May 17, 2010, 08:49:27 pm
Malwarebytz anti malware!

HOW didn't I remember to use that.

Okay, c.u. later, gonna scan with that 1337 program that I love so much for srs then I'll post results...

EDIT:
lol

MBAMW found 2 viruses, but AVG somehow BLOCKED the program from... what the fuck... seeing them??????????????? Resident Shield from AVG blocked them and said the process that was running them was MBAMW lol
I guess I now know how two anti-viruses don't like to be put together.
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Janar on May 17, 2010, 08:59:50 pm
Safe Mode(F8 before Windows boot screen) and then Anti-Malware program :)
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Grovyle on May 17, 2010, 09:17:37 pm
Safe Mode(F8 before Windows boot screen) and then Anti-Malware program :)

Okay, I'll do it later, as for now I seriously can't be bothered.
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Alarba on May 17, 2010, 09:26:45 pm
MBAMW found 2 viruses, but AVG somehow BLOCKED the program from... what the f**k... seeing them??????????????? Resident Shield from AVG blocked them and said the process that was running them was MBAMW lol
Whenever that happenz, just PWN i mean... shut off the anti virus that's causing probz
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Grovyle on May 17, 2010, 11:46:11 pm
NEWS:

I didn't restart the PC yet after the scan, but I can say I've never got any other warning from the virus.

Cool huh?
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Alarba on May 18, 2010, 08:15:45 pm
NEWS:

Ok
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Grovyle on May 18, 2010, 11:28:15 pm
Forgot the update.

It seems the virus has been completely erradicated.

Thanks Alarba for his tip :D
Title: Re: Nnyzua.exe Trojan Horse FakeAV.BPZ removal help in Windows 7
Post by: Link9rly on May 18, 2010, 11:46:48 pm
Safe mode + SuperAnti Spyware usually work for me. Check to see if it's deeply embedded onto a file.
Title: Re: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Julio. on May 19, 2010, 01:10:04 am
In ctrl alt delete, did the virus process show as av.exe?    I got this virus/malicious ad off artonaths website
Title: Re: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Nexxt on May 19, 2010, 09:42:45 am
In ctrl alt delete, did the virus process show as av.exe?    I got this virus/malicious ad off artonaths website

AV? :p.
Argonath Veterans Trojan Horse!
Title: Re: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Grovyle on May 19, 2010, 03:08:29 pm
In ctrl alt delete, did the virus process show as av.exe?    I got this virus/malicious ad off artonaths website


The virus process was nnyzua.exe and another file called nhl.exe or something and it seems it's really recent, cuz I've googled the name of the file and haven't found anything. Not even without the executable sufix (.exe)

It was being executed but AVG didn't let it continue on; I got Malware Bytes Anti-Malware program and busted both viruses off my system...
Title: Re: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Alarba on May 19, 2010, 08:20:48 pm
Glad to help a fellow Portuguese mate  ;)
Title: Re: -TROJAN HORSE BURNED DOWN (in layman's terms: fixed)-
Post by: Julio. on May 19, 2010, 11:50:11 pm
Mine wouldn't go, it was av.exe.  Search it in google, basically, if you don't get rod of it quick enough, it embers itself into every single link to a program and swaps it.   I even had to find the Internet program for Internet etc

safe mode + 7 antiviruses and 2 antimalwares didn't beat it.

It was gained from this forum website. Maybe a link to a malicious ad.

The only way to beat it wasnto do ancomplete system recovery.

Be warned, in my opinion, do not click ANY adverts from these forums

SimplePortal 2.3.7 © 2008-2025, SimplePortal