Start menu and desktop items gone after a Trojan. How to fix?

jonsidneyb

New member
Member
Local time
8:34 AM
Messages
48
I got a trojan earlier today that resulted in everything on my desktop vanishing and I have empty folders in the start menu.

I can only get to the control panel by doing a search for it and I can't get to the part related to icons.

I understand there is a program that might un-hide them but I read that it also makes visible things that should remain hidden.

Any ideas how I can fix this? The things that where on my desktop are work related so I am in kind of bad shape without them.
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
How did you know there was a trojan and how did you remove it? It's possible it left behind other malware. I'd recommend using Malwarebytes free, updating it, and running a full scan. Or another free tool the Microsoft Standalone System Sweeper.

Malwarebytes : Malwarebytes Anti-Malware is a free download that removes viruses and malware from your computer

http://www.sevenforums.com/tutorials/166445-microsoft-standalone-system-sweeper.html

Once you're reasonably sure there's no malware left, you could try rebuilding your icon cache.

http://www.sevenforums.com/tutorials/49819-icon-cache-rebuild.html

If still no joy you could try using a restore point to go back to a date/time prior to when the trojan first infected your machine. If you can go back to a previous restore point I'd once again run a full scan with either or both Malwarebytes and System Sweeper.

Once a machine is infected there's no guarantee any malware removal tool (or tools) will be 100% effective in removing all traces. Only a reformat and reinstall of the operating system and all programs can do that. Or restoring from a known clean system image.
 

My Computer My Computer

At a glance

Win 7 Pro 64-bitIntel i5 2.4 Ghz8GB DDR3Intel HD 3000
Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
I did run malware bytes and several other things before it.

I did raun malware bytes a could of times and it is showing nothing at all now.

How I knew I had a trojan was it killed security essentials but I did get a message about it. The first things I did was run rkill then downloaded Avast and ran it in regular mode than in safe mode. I then started downloading everything I could think of and ran them.
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
How did you know there was a trojan and how did you remove it? It's possible it left behind other malware. I'd recommend using Malwarebytes free, updating it, and running a full scan. Or another free tool the Microsoft Standalone System Sweeper.

Malwarebytes : Malwarebytes Anti-Malware is a free download that removes viruses and malware from your computer

http://www.sevenforums.com/tutorials/166445-microsoft-standalone-system-sweeper.html

Once you're reasonably sure there's no malware left, you could try rebuilding your icon cache.

http://www.sevenforums.com/tutorials/49819-icon-cache-rebuild.html

If still no joy you could try using a restore point to go back to a date/time prior to when the trojan first infected your machine. If you can go back to a previous restore point I'd once again run a full scan with either or both Malwarebytes and System Sweeper.

Once a machine is infected there's no guarantee any malware removal tool (or tools) will be 100% effective in removing all traces. Only a reformat and reinstall of the operating system and all programs can do that. Or restoring from a known clean system image.

None of my desktop items returned. The only things on the desk top are those things that where put there after the trojan hit. I also need to see how to get items back into the start menu.
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8

My Computer My Computer

At a glance

Win 7 Pro 64-bitIntel i5 2.4 Ghz8GB DDR3Intel HD 3000
Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
I was able to get to system restore but all is still not good. The start menu is repopulated but half of the folders I had on the desktop are gone. At least I got some of them back. Not sure what happened to those items.
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
I am not able to get to the control panel and had it show hidden files and I see them now kind of...faded out. How can I make them into non-hidden files?
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
Dear jonsidneyb,
First of all I would like to remind you and other people to CONSTANTLY back up your system (if you did disregard this point)

Second here is a suggestion to get your folders back, go to C: /users/ (your user), go to desktop properties and go to previous versions, this should show you (if system protection is on) a history of the folders/icons/files in your desktop, pick a date and time before the malware struck and click OPEN and then just drag the items you need

Finally as for the hidden files, go to their properties and in the general tab there should be a checkbox that says hidden, uncheck it

Hope this helps ;)
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64Intel(R) Core(TM)2 Duo CPU T9600 @ 2.80 GHz 6...6 GB DDR3ATI Mobility Radeon HD 4670
Computer Manufacturer/Model Number
Dell Studio XPS 16
OS
Windows 7 Ultimate x64
CPU
Intel(R) Core(TM)2 Duo CPU T9600 @ 2.80 GHz 6MB cache
Memory
6 GB DDR3
Graphics Card(s)
ATI Mobility Radeon HD 4670
Monitor(s) Displays
1
Screen Resolution
1920x1080
Cooling
NZXT Cryo LX
Mouse
Logitech G9X
Internet Speed
512 Kbps
Dear jonsidneyb,
First of all I would like to remind you and other people to CONSTANTLY back up your system (if you did disregard this point)

Second here is a suggestion to get your folders back, go to C: /users/ (your user), go to desktop properties and go to previous versions, this should show you (if system protection is on) a history of the folders/icons/files in your desktop, pick a date and time before the malware struck and click OPEN and then just drag the items you need

Finally as for the hidden files, go to their properties and in the general tab there should be a checkbox that says hidden, uncheck it

Hope this helps ;)

I have a backup of the data on an external drive. I was trying to avoid reloading windows and all the applications. I have them all back on the desktop. I never noticed this on properties before. Getting them unhidden again.

How odd, it thinks these files came from another computer.
 

My Computer My Computer

At a glance

windows 7 pro 32 biti5 2.4 GHz4 gb DDR3 SDRAM (1066 MHzNVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Computer Manufacturer/Model Number
Dell Lattitude E6410
OS
windows 7 pro 32 bit
CPU
i5 2.4 GHz
Motherboard
Mobile Intel® QM57 Express Chipset
Memory
4 gb DDR3 SDRAM (1066 MHz
Graphics Card(s)
NVIDIA® NVS 3100M 512MB gDDR3 Intel® HD Graphics
Sound Card
unknown
Monitor(s) Displays
14.1” WXGA+ Anti-Glare LED External is Samsung unknown model
Screen Resolution
1440x900
Hard Drives
Encrypted 7200 rpm 250GB8
Back
Top