Needs Help Fixing Multiple Problems With Computer

Discussion in 'Malware Help (A Specialist Will Reply)' started by baka2k8, Sep 24, 2009.

  1. baka2k8

    baka2k8 Private E-2

    Hi im sorry to bother you guys but i need help trying to get my laptop back in running condition. I will cooperate and do everything you instruct me to do. Oh and by the way im not a computer genius but not a complete retard either when it comes to computers so try to make things as simple as you can and we can probably get this done a lot faster. OK now to tell you the problems im having.

    1.) I can't hear any music or hear videos that are being played on my firefox internet explorer. I don't even have a video icon on my taskbar. I have tried to get it back by going into control panel but with no prevail. Also, my volume buttons on my laptop keyboard do not seem to work at all but if i go into control panel and put it on mute from there the mute button will light up.

    2.) My windows explorer will not start up automatically when booting up. So i have to do it through task manager and even then sometimes a data execution prevention will pop up and wont let me start it up.

    Run dll as a app has encountered a problem will pop up when im trying to use the control panel options. I have tried malwarebytes, superantispyware, and pctools to try and fix this problem. So if you guys know what might be causing this i would grateful if you can help me out.

    thank you for your time
     
  2. baka2k8

    baka2k8 Private E-2

    ok i have fixed mostly everything by myself but now i cant update anything for some reason and my battery and sound icons are still missing from my taskbar. I'm also thinking that my sound problem might be a hardware problem but not too sure on that part.
    So please if you any of you have any insight on this matter i would appreciate your help.
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Welcome to Major Geeks!

    We can check to see if it may be a hardware issue or a malware issue:

    Please read ALL of this message including the notes before doing anything.

    Pleases follow the instructions in the below link:

    READ & RUN ME FIRST. Malware Removal Guide


    and attach the requested logs when you finish these instructions.

    • **** If something does not run, write down the info to explain to us later but keep on going. ****
    • Do not assume that because one step does not work that they all will not. MGtools will frequently run even when all other tools will not.


    • After completing the READ & RUN ME and attaching your logs, make sure that you tell us what problems still remain ( if any still do )!
    Helpful Notes:


    1. If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode, you can run the steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:

    2. If you have problems downloading on the problem PC, download the tools and the manual updates for SUPERAntiSpyware and Malwarebytes ( links are given in the READ & RUN ME) onto another PC and then burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
    3. If you cannot seem to login to an infected user account, try using a different user account (if you have one) in either normal or safe boot mode and running only SUPERAntiSpyware and Malwarebytes while logged into this other user account. Then reboot and see if you can log into the problem user account. If you can then run SUPERAntiSpyware, Malwarebytes, ComboFix and MGtools on the infected account as requested in the instructions.
    4. To avoid additional delay in getting a response, it is strongly advised that after completing the READ & RUN ME you also read this sticky:

    Any additional post is a bump which will add more delay. Once you attach the logs, your thread will be in the work queue and as stated our system works the oldest threads FIRST.
     
  4. baka2k8

    baka2k8 Private E-2

    ok i tried to go through the steps but when i got to uninstalling Java(TM) SE Runtime Environment 6 Update 1 my uninstaller will not uninstall it.

    it says,
    The Windows Installer Service could not be accessed. This can occur if you are running Windows in safe mode, or if the Windows Installer is not correctly installed. Contact your support personnel for assistance.

    I am not running in windows in safe mode and i also uninstalled some other programs before and after this message popped up.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Just continue on with the instructions....which state that if something doesn't run/work, to continue on and just inform us of it when you make your next post with your logs.
     
  6. baka2k8

    baka2k8 Private E-2

    o i also forgot that the it didnt want to run the updated version of the java either. it will start up for half a second but then nothing happens. i only that because i was watching it in task manager to see if it was even running
     
  7. baka2k8

    baka2k8 Private E-2

    Ok I did everything as told and followed all of the instructions carefully and precisely. So now time to post my logs and the things I'm still dealing with or just appeared.

    1.) Just like is said in the instructions, after i got done running MGtools I got the error message type 4. Which was as follows:

    ProcessDll.exe-Application Error
    The application failed to initialize properly (0xc000007b). Click on OK to terminate the application.

    So I tried to go to the link to install the .NET Framework from microsoft but it just says server not found. This also what it does when i try to visit websites like Malwarebytes.org or SuperAntiSpyware.com. Probably the same reason why i cannot update them either.


    2.) My volume icon still does not want to appear on my task bar. So i went to try to see if I could go do it from control panel but none of the applications within it want to open because i keep getting this error message:

    Control Panel
    Windows cannot find 'C:\WINDOWS\system32\rundll32'. Make sure you typed the name correctly, and the try again. To search for a file, click the start button, then click search.


    Also MGtools did not want to run because an alert message popped which looks as follows:

    Error
    !!Alert!! It is not safe to continue!
    The contents of the Combofix package has been compromised. Please download a fresh copy from:
    HTTP://bleepingcomputer.com/combofix/how0-to-use-combofix

    Note:
    You may be infected with a file patching virus ''Virut''


    Also on another note. When I started up rootreal i got the an error message but it still ran and everything but I figured I should say something about it just in case. Well the error was as followed:

    Rootreel Error
    Error-Invalid PI Image Found!
     

    Attached Files:

  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Let's try doing this.

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    Now download The Avenger by Swandog469, and save it to your Desktop.

    * Extract+ avenger.exe from the Zip file and save it to your desktop
    * Run avenger.exe by double-clicking on it.
    * -Do not change any check box options!!
    * Copy everything in the Quote box below, and paste it into the Input script here: part of the window:

    * Now click the Execute button.
    * Click Yes to the prompt to confirm you want to execute.
    * Click Yes to the Reboot now? question that will appear when Avenger finishes running.
    * Your PC should reboot, if not, reboot it yourself.
    * A log file from Avenger will be produced at C:\avenger.txt and it will popup for you to view when you login after reboot.
    -
    Now run Ccleaner to clean out only temp files and nothing else!

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).

    Then attach the below logs:

    * C:\Avenger.txt
    * C:\MGlogs.zip

    Make sure you tell me how things are working now!
     
  9. baka2k8

    baka2k8 Private E-2

    ok i did everything precisely as told and now i have even more problems now.

    1.) I still cant open any of the files in my control still

    2.) Some application installed itself on my computer and its called Security Tool. It keeps popping up that my computer is infected and that i need to scan it and that it keeps finding infections. And it keeps saying that firefox is a hazard.

    3.) GetLogs.Bat did not run at all.

    Also all of my desktop icons have disappeared!! So please tell me what i need to do next.

    Well here is the log from avenger
     

    Attached Files:

  10. baka2k8

    baka2k8 Private E-2

    Oh and I forgot to tell you that i didn't a success message after running fixME.reg. And yes I copied and saved everything correctly as shown and told. right now i have my firewall put back up to prevent further infection. and just a reminder i am running pctools oon my laptop.
     
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Sorry to give you the bad news but you will have to do a total clean reinstall.

    I can see the reason for your problems. Your logs show that your Windows Operating system files have become infected by a Virut infection and there is no known reliable fix for this. In addition there are many many other infected files. We could spend a lot of time trying to remove this infection, but odds are that it will not work because the nature of the infection has so many executable system files infected that as soon as we fix one file, other files that are infected will almost immediately or upon the next reboot, just reinfect the files. In addition, your PC would still basically be unreliable/untrustworthy even if we manage to fix the infected files that we can see since there could be many more that we are not seeing.

    The safest thing for you to do is backup your personal data immediately since your PC could possibly become unbootable at any point in time. Do not back up any executable files. This includes programs that you have downloaded since any of them could be infected. Anything you may have already backed up that is an executable type file (things you downloaded to install programs....etc) are most likely infected and will cause you to be reinfected if you reuse these files.

    Once you backup, you need to format partitions and reinstall Windows and all other software especially your protection software. Then install all updates for all software. DO NOT reinstall from any executable file backups you made while this PC was infected or you will just be reinstalling the infection.
     
  12. baka2k8

    baka2k8 Private E-2

    I was afraid of that was going to be the problem. Can you at least give me directions on how to do a clean reinstall of windows then? Thank you for all the help you have given me thus far.
     
  13. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You will need to boot into the bios ( usually F2 --> Enter Set Up) and change the boot order to have the cd drive as first boot path. Put your xp cd in the drive, hit F10 to save and exit the bios. Your system will restart and you will have the prompt to boot from CD. Do so. Then follow the prompts.

    If you need more info or directions, you should post in the software forum.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds