I got to the last step and now will not reboot!

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Vern757, Apr 18, 2012.

  1. Vern757

    Vern757 Private E-2

    Hi, I have a HP touch smart310 pc. I did everything as directed got to the last step for windows 7 and now the thing won't reboot, not even in safe mode. I only tried regular safe mode. I'm on an IPad so I cannot attach anything. Help please!? Veronica
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Please tell us exactly what you mean by "last step"? What exactly have you already finished running? And for whatever you mean by last step, do you mean that you have not started the last step because it was already not booting after running the next to the last step? Or do you mean it stopped booting after finishing 100% of the "last step?"
     
  3. Vern757

    Vern757 Private E-2

    Sorry, I started clicked step 7 started step 1 for windows 7 including the downloads, when instructed to restart I did that. Then the computer started the reboot process. It went to the cannot start normally start recovery etc. it's hard to remember. Now it will go to the blue screen or keep trying to do a recovery. I was not able to run anything I had downloaded. now I am wondering what to do next. Thank you.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Just a little more specific would help. But I'm going to guess, does this mean that the only program you ran was SUPERAntiSpyware and you reset after running it and then could not startup? You did not say you ran anything. You just said you ran step 1 and downloaded programs. You don't run anything in step 1. Step 3 is where they are run.


    Please do the below so that we can boot to System Recovery Options to run a scan.

    For x32 (x86) bit systems download Farbar Recovery Scan Tool and save it to a flash drive.
    For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

    Plug the flashdrive into the infected PC.


    Enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Select US as the keyboard language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.
    On the System Recovery Options menu you will get the following options:
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
      Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please attach this file to your next reply. (See: How to attach)
     
  5. Vern757

    Vern757 Private E-2

    I downloaded the programs in step 1 and was unable to run anything because of the restart, that is when it all went bad. I am going to attempt what you instructed now. Thanks you. I will let you know how it turns out.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I'm sorry but there is no restart in step 1. Step 1 is just download and save the files to your computer. It even said
    You must have run something. What did you run?
     
  7. Vern757

    Vern757 Private E-2

    Ha! I remember now! When I tried to save mgtools is when it happened. I was unable to save to the C drive. And so I was going to save to To the desk top was when the computer shut off.
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    So you are saying your computer crashed? Not that you were asked to reboot after running something. This is totally different. No scans were run and thus no modifications were made to your PC other than you were saving files. Thus the crash of Windows is more likely the reason for your inability to boot and not that something was deleted by the cleaning process. I'm just trying to zero in on what your real problem is.

    Attach the log from FRST when you can.
     
  9. Vern757

    Vern757 Private E-2

    Yes. That is one of the things it was doing before I started this, and I think the alureon.a, I was directed to this sight after I ran the microsoft scan to remove malware.I have norton and previously ran several scans which always said I had nothing. I have to pick ts up in the morning.
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay the log from FRST is the most important thing now as running it the way specified will allow us to find the components of an alureon or zero access infection which may be the reason you cannot boot.
     
  11. Vern757

    Vern757 Private E-2

    i did what you told me and attached what it came up with. now Im am scared to see what you say. but optimistic because at least Iwas able to do this much so far!
     

    Attached Files:

  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    First recommendation, avoid junk like below which you installed on 4/17
    Code:
    C:\Program Files (x86)\Uniblue
    
    Now let's try something to see if we can get your PC to bootup.


    Download this >> View attachment fixlist.txt

    Save fixlist.txt to your flash drive.
    • You should now have both fixlist.txt and FRST64.exe on your flash drive.
    Now reboot back into the System Recovery Options as you did previously.
    Run FRST64 and press the Fix button just once and wait.
    The tool will make a log on the flashdrive (Fixlog.txt).
    Please attach this to your next message. (See how to attach)

    Now boot into normal Windows if possible and let us know if you can.
     
  13. Vern757

    Vern757 Private E-2

    ok i dont know what uniblue is but I will never downlowd it again. i attached the file and it booted into windows!
     

    Attached Files:

  14. Vern757

    Vern757 Private E-2

    i have a microsoft malicious software note. but I am nervous to mess with anything. that is how everything started getting really screwed up in the first place.
     
  15. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    While working with us here, don't do anything that we do not ask you to do.

    Now please follow the instructions in the below link:

    READ & RUN ME FIRST. Malware Removal Guide
     
  16. Vern757

    Vern757 Private E-2

    when following the RUN & READ me guide, I am at step 6. I did the defogger instructions and have done up until this point "•If CD Emulation programs are present and have been disabled, DeFogger will now ask you to reboot the machine. Please allow it to do so by clicking on the OK button." Defogger did not ask me to reboot. it did say finished. I will continue with your guidance. veronica
     
  17. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Then it probably did not find and thing to disable. Just continue
     
  18. Vern757

    Vern757 Private E-2

    i ran the super antispyware I had to save it to the desk top. It found 20 items that needed to be removed immediately. i tried to attatch the files but it wouldnt let me.
     
  19. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please just run all of the scans in the cleaning procedure and attach the logs when you finish all scans.
     
  20. Vern757

    Vern757 Private E-2

    combo fix wouldnt do anything. but I think the others worked fine. I am not sure how to save the files because I dont know where the logs are for the mgtools. I know everything ran except the combofix.
     

    Attached Files:

  21. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    As stated in the instructions >> C:\MGlogs.zip
     
  22. Vern757

    Vern757 Private E-2

    I understand that, I couldn't locate a file with that name.
     
  23. thisisu

    thisisu Malware Consultant

    Hello, try this:

    http://img600.imageshack.us/img600/2693/mgtools.gif Now download the latest MGtools.exe to the root of your c: drive.
    • Replace your existing MGtools.exe with this one (if it is there)
    • Now run this new MGtools.exe by double-clicking it. (Vista/7 right-click and select Run as Administrator)
    • When it is finished, attach c:\MGlogs.zip to your next message. (How to attach)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds