Sign in with
Sign up | Sign in
Your question

MBR virus infected

Last response: in Windows XP
Share
October 19, 2011 5:03:35 PM

Bootsector virus available

fixmbr ==*cause* Warning message

Quote:

Using the Recovery Console to Replace the MBR You can use the fixmbr command in Recovery Console to rewrite the MBR to resolve a corrupted MBR on a startup disk. However, running fixmbr overwrites only the master boot code, leaving the existing partition table intact. If the corruption in the MBR affects the partition table, running fixmbr might not resolve the problem.
Caution Use this command with care because it can damage your partition table if any of the following apply:

* A virus is present and a third-party operating system is installed on the same computer.
* A nonstandard MBR is installed by a third-party disk utility.
* A hardware problem exists.

Caution Run antivirus software before you use the fixmbr command.
Quote:

Quote:
http://technet.microsoft.com/en-us/library/bb457122.asp...

RootkitRevealer...,,.McAfee Rootkit Detective...,,SuperAntispyware......
SpywareDoctor.....Trend Micro RootkitBuster.......Sophos Anti rootkit.....
Malwarebytes Anti malware.......norman malware cleaner....kaspersky virus removal tools
new kaspersky anti virus 12.0.0.374 (updated).....No virus.....No threat

I know >> bootable antivirus cd's try

Chkdsk No change
fixmbr *cause* Warning message
Partition recover== No change
partition wipe=== No change
memtest86 == No change
Dban nuke =No change
killdisk= No change

More about : mbr virus infected

October 20, 2011 3:12:33 AM

many years == struggle
many years == working

Everything do

Related resources
October 20, 2011 3:14:42 PM

Okay
one try
October 24, 2011 5:30:47 PM

Quote:
Well, my wife's computer was infected with Rootkit.MBR.Sst.a, so it is MBR infection, right?
http://blog.teesupport.com/manually-remove-rootkit-mbr-...
I followed the guide above to kill it. It seems it is ok for a while, so how am i sure it is complete?


Not only this>>> Virus

Removable media/storage>>> Crash

/dev/sdd
/dev/sda
/dev/sdb
/dev/sdc >>> Crash and finish
resolve>> Not know
!