Can't fix computer -- viruses, corrupt system files

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by chayden, Oct 17, 2010.

  1. chayden

    chayden Private E-2

    My sister asked me to help her with her computer because it was doing a number of ‘weird things’ (couldn’t get on the internet; lots of error messages; couldn’t open some programs; etc. etc.) Clearly she had virus issues at a minimum. Her computer is a Dell lapto vostro 1400 with Windows Vista Home – 32 bit. (no service packs)

    I completed all preliminary procedures you have specified; I ran SAS and MBAM; logs attached. I ran ComboFix (log attached) – note that it says some registry keys are locked (what does that mean?) Things looked better and I decided it was time to update Windows – and I was able to update to the System Validation tool. Next was SP1 – it downloaded, but halfway through installation the system crashed and I got a blue screen.

    So then tried to run RootRepeal, but it would not run – I just would get an error message (forget what that was). As an alternative I ran VIPRERESCUE in safe mode from the command line. It ran for more than 6 hours; at the completion it indicated there were 460 errors, but it didn’t delete any of them. Also, the log was empty. Because of this and because I had been getting error messages that system files were corrupted, I ran SFC /Scannow hoping for an easy fix (ha!). At the completion, it stated that some errors were found that it was unable to fix. The resulting log was 201 pages (in Word for Windows).
    Finally I ran MGtools (log attached).

    Clearly this machine has serious problems. I wanted to do a repair installation, but from what I have been reading, because we don’t have a disk, but only a recovery console on a separate D drive, I cannot do this.

    Help!!!
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    This would appear to be a problem with your system, not malware. ( The MBAM file that you attached was not the log from running it, by the way. )

    You could try creating this disc, which will get you into the Recovery Environment where you can run a system repair. ( You will need to change the boot order in the bios to boot to the cd-rom first. ):

    Vista and Win7 Recovery disc

    Since you are not having any malware problems, it is time to do our final steps:

    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real time protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.We recommend them for doing backup scans when you suspect a malware infection.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.


    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.

    10. After doing the above, you should work thru the below link:




    Support MajorGeeks with Geek Wear!
     
  3. chayden

    chayden Private E-2

    Thanks for the reply.

    If I run this disk, will this allow me to do a repair installation -- not a clean installation -- ie allow me to keep my files and programs?

    Awaiting your counsel.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It will give you options to run a System restore or a start up repair. You would need your OS CD to do a repair install, which would keep your files and data.
     
  5. chayden

    chayden Private E-2

    My system starts up so I don't need a start-up repair. And I have a Recovery Console, so I think I can do a clean install from there, right?

    What I want to do is the repair installation so that I can preserve my files and programs; I think what you are telling me is I need the complete OS disk (which we do not have, as it was not provided with the computer). The recovery console would not work for a repair installation, right? Or would it?

    Thanks:confused
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You would need your OS CD to do a repair install. You can either try to borrow one, of the same version, or call the manufacturer and demand a disc. They often will send you one for a very nominal fee.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds