![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
|||
|
|||
|
There is a very similiar post to mine but unfortunately, no resolution was received that I could find. I have a desktop (not name brand, built by a local IT contractor) which had an infection. At the time (about a week ago) it was running XP and lost all desktop icons and Explorer showed no files or folders.
I formatted and installed Windows 7 Pro this afternoon and as soon as I turned on Microsoft Security Essentials (of course, after I had reinstalled everything including all programs and drivers) it alerted me to a threat which was identified as Trojan:DOS/Alureon.E. I received the following error when I attempted to repair it: Error code 0x8000704ec. This program is blocked by group policy. For more information contact your system administrator. I have run TDSS Killer, MBR Check and MGtools (logs attached). The TDSS item that was found during the TDSS Killer scan did not give me the option to cure, only delete, quarantine, or skip. Any help that you can provide would be greatly appreciated! |
| Sponsored links |
|
|
|
#2
|
||||
|
||||
|
Hi and welcome to Major Geeks, Anubis185!
Code:
FALSE Disk #0, Partition #1 2604544 Unknown Partition Disk #0, Partition #1 Partition Size 2.48 MB (2,604,544 bytes) It is also recommended that you back up any data if you haven't already just in case I am unable to get the system to boot again. Let me know before we proceed. Last edited by thisisu; 12-08-11 at 00:38.. Reason: typo |
| The Following User Says Thank You to thisisu For This Useful Post: | ||
Anubis185 (12-08-11) | ||
|
#3
|
|||
|
|||
|
I do have my Windows 7 DVD handy; additionally, this is a clean install so nothing has to be backed up. I am ready to proceed.
|
|
#4
|
||||
|
||||
|
Preferably from a clean computer, I need you to download: gparted-live-0.10.0-3.iso (115.1 MB)
Create the bootable CD for Gparted. You can use ImgBurn do this. Now boot off of the newly created Gparted CD. ![]() You should be here... Press ENTER ![]() By default, "do not touch keymap" is highlighted. Leave this setting alone and just press ENTER. ![]() Choose your language and press ENTER. English is default [33] ![]() Once again, at this prompt, press ENTER You will now be taken to the main GUI screen below ![]() According to your logs, the partition that you want to delete is 2.48 MB Click the trash can icon to delete and then click Apply. You should now be here confirming your actions: ![]() Now you should be here: ![]() ![]() Is "boot" next to your OS drive? According to your logs, the Operating System (OS) drive is 465.75 GB If "boot" is not next to your OS drive under "Flags", right-mouse click the OS drive while in Gparted and select Manage Flags In the menu that pops up, place a checkmark in boot like the picture below: ![]() Now double-click the button.You should receive a small pop up like this: ![]() Choose reboot and then press OK. Boot back into Windows and let me know how things are running now. |
| The Following User Says Thank You to thisisu For This Useful Post: | ||
Anubis185 (12-08-11) | ||
|
#5
|
|||
|
|||
|
Sir, you are a gentleman and a scholar. It appears as though the issue has been resolved with no loss of data. I appreciate it greatly!
|
| Sponsored links |
|
|
|
#6
|
||||
|
||||
|
Good job
![]() Code:
18:00:23.0578 8384 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user 18:00:23.0578 8384 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip |
|
#7
|
||||
|
||||
|
The rest of your logs are clean.
If you are not having any other malware problems, it is time to do our final steps:
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Removing Trojan:DOS/Alureon.E from Win 7 | johnbigbootie | Malware Removal | 5 | 12-09-11 00:11 |
| win32/olmarik.ajl trojan and trojan:dos/alureon a | ktaz | Malware Removal | 5 | 03-21-11 16:46 |
| Trojan:DOS/Alureon.A | Beatrice | Malware Removal | 3 | 11-24-10 20:48 |
| Trouble removing Alureon.H on network computers | bbusch | Malware Removal | 1 | 07-16-10 23:23 |
| Trojan?Win32/Alureon!ing and Alureon.gen!j | tynie | Malware Removal | 1 | 06-02-09 14:50 |