The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.

    My PC got Brontoked

    Discussion in 'Security and Anti-Virus Software' started by Luke1708, May 11, 2011.

  1. Luke1708

    Luke1708 Notebook Virtuoso NBR Reviewer

    Reputations:
    352
    Messages:
    3,799
    Likes Received:
    0
    Trophy Points:
    105
    My computer has become horribly slow. I decided to do a quick scan...and that's the results. If i do a full scan, will my pc become 100% clean? Do you guys think i need to do a format? I have around 500gb worth of data on my hard drive.

    [​IMG]
     

    Attached Files:

  2. Karamazovmm

    Karamazovmm Overthinking? Always!

    Reputations:
    2,365
    Messages:
    9,422
    Likes Received:
    200
    Trophy Points:
    231
    try to remove all the virus, them proceed to back up your data in an external drive.

    Format and reinstall

    update your pc

    plug and scan the external drive

    transfer

    This should take care of it
     
  3. Pirx

    Pirx Notebook Virtuoso

    Reputations:
    3,001
    Messages:
    3,005
    Likes Received:
    416
    Trophy Points:
    151
    Heh, you have that awesome "Proactive Threat Protection" by Symantec, so something like that should have never happened, right? Even though it looks like the last time you updated your virus definitions was in September, right? :biggrin: Let me take a wild guess: You are also one of those people who find UAC "annoying", and have therefore turned it off. If I'm right on this last one, too, then all I have to say is "Good luck."
     
  4. Rodster

    Rodster Merica

    Reputations:
    1,805
    Messages:
    5,043
    Likes Received:
    396
    Trophy Points:
    251
    Wow did you get hit hard. I second what the previous said. If you had a few viruses that's one thing, 15K is another.

    Try Malwarebytes and MSE then backup your data and do a reinstall.
     
  5. MrDJ

    MrDJ Notebook Nobel Laureate

    Reputations:
    2,594
    Messages:
    10,832
    Likes Received:
    363
    Trophy Points:
    501
    update virus scan first or is it out of date? if so get rid and download either avast or microsoft security essentials which are both free.
    boot into safemode F8 on startup and run virus scan.
    also run malwarebytes and might even worth downloading spybot search and destroy and see how you go from there.
     
  6. aylafan

    aylafan TimelineX Elite

    Reputations:
    438
    Messages:
    1,247
    Likes Received:
    1
    Trophy Points:
    56
    Did you just install Symantec Endpoint Protection?

    This is a old virus from 2005 (with some revisions over the years) and you shouldn't have any problems detecting it if you had real-time protection and automatic updates enabled on SEP.

    Symantec released a page on how to remove this virus.
    W32.Rontokbro@mm Removal - Removing Help | Symantec

    Good luck.
     
  7. Luke1708

    Luke1708 Notebook Virtuoso NBR Reviewer

    Reputations:
    352
    Messages:
    3,799
    Likes Received:
    0
    Trophy Points:
    105
    Hey guys, i had endpoint before but i replaced it with NIS(The UI seemed more appealing). It was one of those 6 months free trial which was released last year. I don't know how it didn't catch the virus. I swear it wasn't there a few days ago. Either my subscription ended or brontok messed everything up. i noticed the green tick no longer appeared on task bar. i tried opening it but it wouldn't launch. Tried reinstalling it but as soon as it installed, it would automatically shut down the FW, AW and all services and everything would become greyed again.

    I then decided to install my previous SEP and you know the rest. Auto-protect is scanning everything. I will let it run, then i will run a full system scan. i'll see where this leads me. i'm a bit wary of formatting the machine as it's a very time consuming process with all the reinstalls i'll have to do.
     
  8. MrDJ

    MrDJ Notebook Nobel Laureate

    Reputations:
    2,594
    Messages:
    10,832
    Likes Received:
    363
    Trophy Points:
    501
    run it in safe mode
     
  9. Luke1708

    Luke1708 Notebook Virtuoso NBR Reviewer

    Reputations:
    352
    Messages:
    3,799
    Likes Received:
    0
    Trophy Points:
    105
    Ok will try the safe mode thing. So will the SEP delete malwares or should i install malwarebyte as suggested above?
     
  10. ikovac

    ikovac Cooler and faster... NBR Reviewer

    Reputations:
    872
    Messages:
    1,637
    Likes Received:
    0
    Trophy Points:
    55
    I'd go with Malwarebytes.
     
  11. Hungry Man

    Hungry Man Notebook Virtuoso

    Reputations:
    661
    Messages:
    2,348
    Likes Received:
    0
    Trophy Points:
    55
    I'd suggest restarting in safe mode, running SUPERantispyware or Malwarebytes. Then restart in normal mode and do the same. Then maybe run GMER. Then:

    Download RKill, doesn't matter which:
    RKill - What it does and What it Doesn't - A brief introduction to the program

    AFter running rkill put your external in, back up any documents (no programs) and format the HDD. Don't plug that external back in until you've got a proper set up on your computer.

    A proper set up means a reliable antivirus (I suggest microsoft security essentials) and UAC on Max settings.
     
  12. 3Fees

    3Fees Notebook Deity

    Reputations:
    541
    Messages:
    970
    Likes Received:
    136
    Trophy Points:
    56
    How to Manually Remove Win32.Brontok Virus

    How to Manually Remove Win32.Brontok Virus | eHow.com

    Brontok Removal Tool 1.0 for Windows 7

    Brontok Removal Tool for windows 7 free download

    "Brontok originated in Indonesia. The name refers to Elang brontok, a bird species native to South & Southeast Asia"

    "Brontok can be removed by most up to date anti-virus solutions although there are various standalone tools available;
    Brontok details with link to removal tool released by SRN Micro made by Akshay Gujjar.
    Brontok removal tool released by Sophos"

    http://en.wikipedia.org/wiki/Brontok

    Shussss,,Don't tell anyone okay,, :)

    Cheers
    3Fees :)
     
  13. olyteddy

    olyteddy Notebook Deity

    Reputations:
    468
    Messages:
    1,369
    Likes Received:
    0
    Trophy Points:
    55
    Huh? Picking security software based on looks?
     
  14. Luke1708

    Luke1708 Notebook Virtuoso NBR Reviewer

    Reputations:
    352
    Messages:
    3,799
    Likes Received:
    0
    Trophy Points:
    105
    That was a bad move for me.

    Thanks for your input guys. i was scanning on normal mode but SEP would scan only 300k files and stop. It would show scanning but wouldn't scan more. I will try in safe mode now.
     
  15. Pitabred

    Pitabred Linux geek con rat flail!

    Reputations:
    3,300
    Messages:
    7,115
    Likes Received:
    3
    Trophy Points:
    206
    Honestly, I use Microsoft's virus scanner. It's simple, unobtrusive, effective and free. There's very little reason to use anything else.

    But given the expansiveness of your infection... I'd really suggest a nuke and pave. It's the only way to be sure.
     
  16. theZoid

    theZoid Notebook Savant

    Reputations:
    1,338
    Messages:
    5,202
    Likes Received:
    22
    Trophy Points:
    206
    I got a virus on a family computer just over 10 years ago....I had to manually delete 105 registry entries as well as remove the trojan. It was never quite the same for some reason.

    Yep, Nuke it !

    OH....forgot...AVG was minding the store at the time....LOL