1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Resolved Nightmare week with virus

Discussion in 'Security and Privacy' started by Wiry, 2012/07/17.

  1. 2012/07/17
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    I am in the middle of changing a network from xp to win7 and have been having printer access problems so disabled a virus checker on one of my xps and was miserably attacked. After taking it to pros twice to no avail (viruses returned) having run avast, security essentials, malwarebites, ad-aware, you name it, I finally reformated the drive. Here's the rub. Right after reformatting the drive, before loading anything, I loaded avast and ran it and there was a trojan which I eliminated and then ran the boot drive version of avast and finally it seems there is a clean computer. Whew! But how the hell did the virus get into the restore. It seems it must have infected the part of the drive that keeps the restore files. So I am about to set up two new win7 74 bit computers. How do I make a clean copy of the restore program. Where is it? I want to make clean copies that are not infected with viruses that can be used if this ever happens again. The computer was literally fending off a virus every 30 seconds with avast protection enabled. Very nervewracking. The only way I survived this nightmare was to work for three hours, then stop and meditate for 40 minutes, and go back to work. I am still afraid it will come back. But so far so good. I now have the great problem of having to put A LOT of outlook express mail folders into Windows Live mail program as win7 doesn't have outlook express anymore. I downloaded 20 pages of instructions. Not looking forward to it. Any help you can give me on making a copy of the restore operating system would be appreciated.
     
    Wiry,
    #1
  2. 2012/07/17
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    First of all you have to explain what exactly is "restore ".
     

  3. to hide this advert.

  4. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    Sorry ... I meant a reformat. My brain is still fried. Have you found that the partitioned part of the disk that contains the operating system for a complete reformat can be infected with viruses? That seemed to be the case.
     
    Wiry,
    #3
  5. 2012/07/18
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Are you referring to recovery partition?
    If so when you use recovery partition to restore the computer to factory settings it doesn't actually format the drive.
    If the computer was infected with some kind of rootkit affecting MBR that won't be cured by using recovery partition.
     
  6. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    Well then, what is the process to format the drive to eliminate the chance of viruses?
     
    Wiry,
    #5
  7. 2012/07/18
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    There are number of ways to format the drive.
    The easiest way is to use Windows CD/DVD.
     
  8. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    Oh. okay. But then all the lenovo drivers, etc aren't there, right?
     
    Wiry,
    #7
  9. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    Is there a way to copy the brand specific operating system at the time of purchase?
     
    Wiry,
    #8
  10. 2012/07/18
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    Operating system is not brand specific. All Windows are the same.

    As for your other question...
    You can use Windows disk (or some other disk like UBCD: http://www.ultimatebootcd.com/) to format just a partition on which Windows is installed (so recovery partition remains untouched - I've never heard of infected recovery partition; mostly because it's locked) and then still use recovery partition to restore computer to factory settings.

    Another option would be to format a whole drive and order recovery disks from your computer manufacturer.

    However since you're upgrading to Windows 7 I don't see any reason for restoring.
    Format the drive and install Windows 7 on pristine drive.
     
  11. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    I needed a computer because the wrong computer was sent so had to restore the rotten one so we had one working until the other one came. I think the recovery partition was infected. That's what this whole post was about. The minute it was run, it had a virus that had to be wiped off. I had never heard of it either. That's why I wondered if anyone here had heard of it.
     
  12. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    I was using an xp computer that couldn't be upgraded to win7
     
  13. 2012/07/18
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    No, you can't upgrade from XP to 7.

    You can always start a new topic in malware removal forum and we'll take a look.
     
  14. 2012/07/18
    Wiry Lifetime Subscription

    Wiry Inactive Thread Starter

    Joined:
    2002/01/17
    Messages:
    306
    Likes Received:
    0
    Thanks. I think I was just venting about my week.
     
  15. 2012/07/18
    broni

    broni Moderator Malware Analyst

    Joined:
    2002/08/01
    Messages:
    21,701
    Likes Received:
    116
    :)....
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.