first time user my laptop is infected with a trojan virus

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Tavo1512, Jan 29, 2009.

  1. Tavo1512

    Tavo1512 Private E-2

    Hello, I need help my laptop (Dell Inspiron E1505) has a trojan and I can not do anything with my laptop. I'm new at this so I'm going to try and explain. A couple of days ago my Norton 360 detected a Trojan viruse and it promt me to reboot my system so it can fix the issue. Once I hit the "reboot" button it restarted my laptop. Well once it went through the restart procedures I got a "svhost.exe - Application Error" stating:
    The instruction at "0x00101000" referenced memory at "0x00401000". The memory could not be "written".
    Click on OK to terminate the program
    Click on CANCEL to debug the program

    Well, I tried to click on either "OK or "CANCEL" and my laptop only goes to my desktop with no icon. I have nothing to click on, meaning no Icons or toolbars. I'm not able to do anthing.

    Any help on this issue will be greatly appreciated.
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Can you boot up okay in safe boot mode?

    How about using a different user account if you have one?

    Does Task Manager run after you get logged in an have a blank Desktop? Just hit CTRL-SHIFT-ESC to see if Task Manager runs. If it does, then click File, New Task (Run...) and enter explorer and click OK. Does your Desktop appear?
     
  3. Tavo1512

    Tavo1512 Private E-2

    Hi Chaslang,

    Thanks for the responds, I tried the safe mode and it does the same thing, my desktop does not appear.

    I do not have a different account user on my laptop.

    I also tried the procedure with the Task Manager and when I enter explorer I get an promt stating "Windows cannot find 'explorer'. Make sure you typed the name correclty, and try again. To search for a file, click the Start Button, and then click Search.

    Any continuous help is appreciated.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay then try the below.

    Hit CTRL-SHIFT-ESC to bring up Task Manager. Then click File, New Task (Run...) and enter cmd and click OK. Does a command prompt window appear? If yes, type c:\Windows\explorer.exe and hit enter. Does your Desktop load now or is explorer.exe still not found?
     
  5. Tavo1512

    Tavo1512 Private E-2

    Hello,

    I performed the steps you instructed and when I typed c:\Windows\explorer.exe and hit enter explorer.exe was not found.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What version of Windows are you running?

    Do you have your bootable Windows CD?

    Open the command prompt again like I had you do last time from Task Manager but do not try to run Windows Explorer. This time, type in the below commands. The bold black are the commands. The bold purple is just explanatory info to help you and they have questions you need to answer for me.

    cd c:\Windows <--- There is a space after the cd This should cause the command prompt to change to C:\Windows> Make sure that this does occur. Tell me what happens!!

    dir explorer.* <--- There is a space after the dir Does it show any results for finding explorer?

    cd C:\Program Files\Internet Explorer\

    The above should cause the prompt to change to
    cd C:\Program Files\Internet Explorer> Make sure that this does occur. Tell me what happens!!

    iexplore.exe <-- this should cause Internet Explorer to run. What happens?

    C:\WINDOWS\PCHealth\HelpCtr\Binaries\msconfig.exe

    The above should cause the System Configuration Utility window to appear. Does this happen?
     
  7. Tavo1512

    Tavo1512 Private E-2

    Thanks for your help,

    After researching the issue nothing worked so I ended up rebooting my operating system (Windows XP). It seem to work.
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Since I don't know how much of our cleaning steps you actually ever completed, I will give you our full final instructions.


    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix folder from combofix (if it exists)
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures in step 3 the READ ME for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds