Question:
I have a virus that I can't delete...?
john smith
2007-11-08 15:33:19 UTC
The file name is C:\System32\file mgm.dll, and I've tried everything to get rid of it, including re-booting in safe mode, using the unlocker assistant (which helped with 2 others but not this one), ending "svchost" processes in task manager (which just reappear a second after I end them), going to "msconfig" and disabling upon re-boot, ...etc.

if I pay someone like the Geek Squad would they fix it? I don't know what damage it can do to my computer, but i do notice little hiccups every now and then and slowing responses. Any help would be appreciated
Seventeen answers:
Who Dares Wins
2007-11-08 15:40:38 UTC
You are right. It is a parasite.

Download this as an extra attack on the beast:

http://www.superantispyware.com/



Load in normal mode but run in Safe Mode. However, before you do - turn off System Restore.



Good luck & stay safe.



wdw
Elsie
2016-08-24 06:44:42 UTC
2
desirememodest
2007-11-08 15:40:50 UTC
Geek Squad over charges for everything they do. Yeah, unless you get a nice virus removal program such as the latest Norton Anti-virus software and buy the full thing, you'll have to back-up your information that you still want on your computer and wipe your hard drive and re-install everything to get rid of it.
Wutz it worth 2 ya?
2007-11-08 15:59:57 UTC
Join the club buddy. I have one too right now with the same problem. Mine is:



C:\SystenVolumninformation\_... Win32/Silly.Dl.DIH



Call your internet provider and b itch a royal fit like I have been doing. Tonight they're supposed to be calling me to get rid of it. I'm through Time Warner cable (Ohio) and running CA for the protection. ( Computer & Associates).



They think it's in a file stuck somewhere which is why I've been unable to delete/quarantine it on my own. This has beena pain in my @zz all week. Don't feel alone!
_I_love_warm_bananas_
2007-11-08 15:40:31 UTC
Be absolutely sure that it's virus and not a system file before you delete it. And you have the rigt idea about the Geek Squad. It's probably better if you get a professional to remove it than to try and do it yourself.
Lilmouse
2007-11-08 15:35:48 UTC
If you can not lose the virus, a full format and restore on your system may need to happen.

Sorry man



There are a couple ideas I thought of.

Check this site

http://www.fix-pc-errors.com/dll-files.asp?file=msi.dll



Make sure you save all of your files if you can.

Then try a restore to an earlier point in the assesories area of your start tab.



Let me know if you need help.



SAVE files first before you do anything else
2007-11-08 15:42:05 UTC
Try to download something that helps your computer get better. I used to have a virus on my laptop, too. Then I downloaded Registry Mechanic and 1-Click Maintenance to help my laptop. The virus went away.
gatorzrule96
2007-11-08 15:38:20 UTC
If it is in your virus softwares quarantine than it cant harm your computer. Your virus software gets new virus codes to help clean your computer of viruses that are new about every four days. My computer also has a virus but it's in quarantine just and I'm just waiting until i can clean it.
soccerfan_001
2007-11-08 15:36:25 UTC
pay to get it removed or save the files u need on like a external hardrive and reinstall windowas again.
2007-11-08 15:48:52 UTC
VIRUS REMOVAL:



this is a realll P.I.A. !!!



there ISN'T any magic "Silver Bullet" to do it all in one step.

this will take time,effort and dLOTS of patience!!





THE 1ST PART YOU NEED TO DO offline:

boot up and press f8 till you get safe mode option

boot up in safe mode



run anti-virus program

run anti spyware program

shut down System Restore

clear cookies

clear temp files

clear history

clear pre-fetch folder

clear out ALL emails starting at 2-3 days ago or when you 1st knew you were infected in:

ALL folders

sent

trash

junk



bookmarks or favorites folder in I.E. or Firefox



as you can see,there's QUITE a bit of work ahead of you.



shut down System Restore:

virus/spyware can hide in your system restore points so we shall delete all previous restore links hiding places by turning system restore OFF.

later,when we finish,we'll turn it back on,set up a new [ CLEAN ] restore to work from in the future.

hopefully,lol,you'll never need it !



XP Home:



start

all programs

accessories

system tools

system restore

settings

drive [c]

settings

check the OFF link



VISTA:



start

control panel

performance and information tools

open disk clean up

select o.s. [c]

select more options

select system restore and shadow copies

select clean up



XP Home & Vista:

start

control panel

internet options

general

clear cookies

clear temp files

clear history

and set history days to keep to 0



clear temp files

not all your temp files will be removed so easily,so we need to do this manually as well.

start

my computer [ or just computer in Vista ]

windows

temp

file

click view

select all

press delete key on keyboard to delete all



Vista:

in those 2 folders,click name,that selects all files

press delete key to delete



Clear Pre-Fetch Files

start

my computer [ or just computer in Vista ]

windows

prefetch

file

select all

press delete key on keyboard



Vista:

check name to highlight all files

press delete key on keyboard to delete all



empty recycle bin



run anti-virus and anti-spyware programs again

Spybot

AVG anti-virus

AVG anti-rootkit

Rootkit Revealer

http://browseraddons.friendpages.com



when your protection programs find any pirates,DELETE them,do NOT quarantine !!



should you NOT have ANY protection programs installed:

Avast--anti-virus

AD Aware--anti-spyware

Spyware Blaster--anti-spyware blocker

Rootkit Revealer--anti-rootkit

Arovax

PC Tools Firewall--firewall to replace MS's deficient firewall [ turn that sucker OFF ! ] and replace with above.



replace windows firewall with PC Tools firewall

install Arovax protection and choose protection for internet explorer if you use it,firefox if you use that or opera if you use that

install spyware blaster and set for internet explorer and/or firefox protection



should you choose to install Firefox web browser [ and you SHOULD ]

here are some Firefox Security Extensions to install

CallingID Link Advisor

Finjan Secure Web Browsing

No Script

Dr. Web

SafeDownloads

http://browseraddons.friendpages.com



now it's time to set up your new [ clean ] restore point



XP Home:



start

all programs

accessories

system tools

system restore

settings

drive [c]

settings

check the ON link



Vista:

start

control panel

back up and restore center

create restore point

create restore points on selected disks

select drive

click create

apply and ok



FINALLY....



SECURE COMPUTER:



NEVER !! :



open an email from:

anyone you do NOT know/trust

anyone purporting to be/from:



Microsoft

your bank

your creditors

your government

your financial company/ies

even your lawyer/s or church UNLESS you have a prior agreement with them

online petition

contains attachment/s



Spy Sites



Stop Web Sites from installing Spyware, Sleazeware and Cookies on your PC



SpySites includes a database of over 4,600

known Spy/Sleaze sites and guides you

through the simple process of including them in

Internet Explorer's Restricted Zone and setting policies

to prevent them from performing intrusive acts on your PC.

By setting the policies for the Restricted

sites zone to a very high level of security,

you can be assured that any web sites added

to the Restricted sites zone cannot do

certain things which could compromise your privacy

and security such as installing and/or running:

Spysites

http://camtech2000.net/pages/spysites_pr...



Pre-Fetch File Cleaning



pre-fetch files are "cached" or stored copies of files/websites you visit each session

after a period of time,these files hog up a LOT of disk space

for this reason,i advocate the deletion weekly of those space hogs

some claim that windows will automatically remove files older than 7 days

I have found MY pc does NOT perform this task so I do it manually

what happens is,when you go to a website,your pc looks into your pre-fetch file/folder

to see if that website is "cached",stored there FIRST

this gives you a faster website load,BUT,you get the "cached" version and NOT the NEWEST version

unless you have "check for newest version" checked in internet options

it may take that website 1/2 a second longer to load

but,you'll get the newest version loading each time



as added security,spyware removers often miss these files,so delete them manually.



My Computer,disk drive [c],windows,pre-fetch,view,select... all,select delete



same situation with Temp files:

Temp File Folder



i use Disk Clean to clean up extraneous files i no longer need

however,every time i use Disk Clean,it DOESN'T clean out c:\windows\Temp Files!

solution?

My Computer,local disk drive [c],windows,temp

you can safely delete each temp file there.

i leave the most current [that day] alone.

also,do not delete any FOLDER there

folders have a folder icon,leave alone

[ Vista,it's Computer ]



Firefox Web Browser:

tools

options

content

check block pop ups



load images automatically:

exceptions:

enter those websites addresses that show up on pop ups that appear AFTER you close a browser window

also add those same urls to

Privacy

Cookies

Exceptions



there are a number of kewl Security add on firefox extensions i use and they are:

CallingID link advisor

Dr. Web [ link checker ]

Finjan Secure Web Browsing

No Script

SafeDownload

http://browseraddons.friendpages.com



Step #1: Remove spyware with Windows Add/Remove Programs utility.



Sometimes all it takes to get rid of spyware say like AntiVirGear, is to remove the program using the Add/Remove Programs control panel in Windows.



In Windows XP Professional, click on Start > Control Panel > Add/Remove Programs

In Windows 2000 Professional / Windows ME / Windows 98, click on Start > Settings > Control Panel > Add/Remove Programs.

In the list of programs, search for the software you want to remove. If you see a program you don’t recognize or don’t recall installing, look it up in Google to learn what it is.

Select the questionable program and remove it with the Remove button.



Step #2: Kill spyware using the Windows Task Manager



To kill any spyware process that has infected your computer, you will need to use the Windows Task Manager to check by process, highlight the process in question, and then end the task. To do this:



Press CTRL+ALT+DEL or CTRL+SHIFT+ESC on the keyboard.

Click on Processes Tab to see all active tasks. For easier detection, left click the process under the heading Image Name.

Find and kill all spyware processes:





Once you’ve identified the spyware process, press DEL on your keyboard or click End Process to kill it from your system.

Step #3: Use PsKill to Kill a Process



Sometimes a parasite can disable your Windows Task Manager so you can use pslist and pskill (a third party application by Mark Russinovich) to list and kill the unwanted processes.



Download PsKill or PsList.

Extract the program from the .Zip archive.

Move pskill.exe to your C: drive.

Open a command window and click Start > Run.

Type cmd and click the OK button.

In the command window, type C:pskill.exe and the name of the process you wish to kill, then press Enter. For example, if you wanted to kill the process for AntiVirGear, you would type: C:pskill.exe AntiVirGear.exe.

If the file was successfully removed, PsKill will say “process spyware.exe killed”.





IF you follow all the above suggestions,you'll not have the Fort Knox of computers,but Dammed close !
2007-11-08 15:37:15 UTC
did u try to use an antivirus atility to remove it?

if u did, then try checking if it is a real virus an not just a harmless blurp the pc spits out
iTaLiAnA
2007-11-08 15:37:13 UTC
Do you have a virus program on your computer? some of those programs also help in erasing the viruses....
charlax.hice
2007-11-08 15:41:54 UTC
Turn the machine off unplug it if you have to then plug it back in and turn the button on again this should clear the computor and the virus should be gone.
Sugar
2007-11-08 15:36:05 UTC
You may need the computer doc.
EviL
2007-11-08 16:01:00 UTC
down load the SmitfraudFix



http://siri.urz.free.fr/Fix/SmitfraudFix_En.php
Godzilla Gal
2007-11-08 15:41:38 UTC
http://www.safer-networking.org/en/spybotsd/index.html



get spybot
2007-11-08 15:36:37 UTC
erase your hard drive


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...