Alureon and my broken laptop

X:\Windows\System32 is that inside the black window Command prompt or when you right-clicked on conhost ?
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
Actually, both. I accidently first selected open file location (location in black box), then realised you had said choose properties - it's listed there (same) also.
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Close Task Manager by clicking on the Red X on the upper right side . Back in the black window Command Prompt . Type

Code:
regedit.exe
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
OK, am in the RegistrybEditor window
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
SarahCali,

This 'other dude' is trying to help you. :)

Since you have the Repair your computer option when tapping F8, etc., found out that you can download a Windows file to a Mac, and, without executing it, move it to the USB flash drive.

You just need to download the file on the Mac using a web browser.
Next, you plug in a USB flash drive that is formatted as a FAT32 drive and copy the file from the Mac to the flash drive.

Then take the flash drive to the Windows machine.

Do you know if the Windows Operating System is 32-bit or 64-bit?
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Ok minimize the registry window for now by clicking on the left button with " _" on it .

Back in the Command Screen Type
Code:
bcdedit | find "osdevice"

   Note
the | pipe symbol is the key above Enter . Hold shift down and press the key with \ on it


Press the enter key after you inputted the command . It will tell you the drive letter of Windows . It might say its os device partition=D:


@Cottonball … she has a x64 bit version
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
Yes, it says exactly that: Partition=D:
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
SarahCali,

This 'other dude' is trying to help you. :)
I know! Super grateful for you all, I'd still be crying and panicking if I were on my own with this!
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
SarahCali,

If VistaKing's approach does not work, let's see if you can do the following...

On your Mac, please do a Farbar Recovery Scan Tool Download
Select the 64-bit option.

Save the program to the >>> USB flash drive.
Remove the drive from the Mac computer.

Next, plug the flash drive into the infected computer.

>>>Restart the computer.

As soon as the BIOS is loaded begin tapping the F8 key until the Advanced Boot Options menu appears.
Use the arrow keys to select the Repair your computer menu item.
Select your language settings, and click: Next
Select your User account and click: OK (If you did not set a password, leave blank.)

On the System Recovery Options menu you get the following options:
Startup Repair
System Restore
Windows Complete PC Restore
Windows Memory Diagnostic Tool
Scan your computer's memory for errors.
Command Prompt

Select: Command Prompt

In the Command window, at the blinking cursor type notepad and press: Enter
In Notepad, under the File menu select: Open
Double-click Computer, find the flash drive letter, remember what letter it is, click on it, and press: Open

Close out of Notepad.

Click the Command Prompt window
Type x:\frst64.exe, and press: Enter
Note: Replace the drive letter x with the drive letter of your flash drive!

The tool starts and prepares to run. Follow the prompts.
Click Yes to the disclaimer.

Press: Scan

When done, the program saves the FRST.txt report, on the flash drive.
Click the Command Prompt window, and type exit, and press: Enter

Back at the System Recovery Options, press: Restart

When the computer boots back into Windows, please provide the FRST.txt in your reply.
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Sarah … we will go with the easier way. On the Mac go to this website

http://media.kaspersky.com/utilities/VirusUtilities/EN/tdsskiller.exe

Place the USB drive to your Mac and once you have the file downloaded copy the file to the flash drive . Unplug the flash drive and plug in the drive to the infected drive .

@Cottonball my approach was to delete the files manually from the registry by loading the hive from the D:\Windows\System32\config
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
Got it. Doing so now
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Sarah here is the link that Cottonball has mentioned Farbar Recovery Scan Tool

http://download.bleepingcomputer.co...ies/f/farbar-recovery-scan-tool/64/FRST64.exe

We don't need to restart the PC . Plug the USB drive in the PC and in the command prompt type the commands and press enter after each command

Code:
Diskpart
press ENTER
Code:
 list volume
press enter

   Note
take note of the letter for your USB flash drive
then type
Code:
 exit
and press Enter . It should say Leaving DiskPart… then type in the driver letter of the USB flash drive with a back slash " \ " and the name of the .exe file .
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
Quick check - I can do so via burning to CD just the same, right? Because the USB won't play ball. Burning TDSS.exe onto CD was a success however. I realize this question probably inane :)

So now insert CD into laptop and ... It should automatically run the .exe, is hat right?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Wait, now confused. I am following the TDSS instructions?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
No for now you should be getting the frst64.exe file. It will not work from a cd . We could format the flash drive to Fat32 if you would like from the command prompt .
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
I cannot get anything onto the USB via Mac, all I was able to do was burn it to CD. It can see mynUSB, but nothing more?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Ah, gotcha - you mean we can use laptop to make it Mac ready?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Or just copy the cd content to the stick - on the PC
 

My Computer My Computer

At a glance

Vista, Windows7, Mint Mate, Zorin, Windows 8from 1.6GHz Duo to i7
Computer Manufacturer/Model Number
HP, Dell, Gateway, Toshiba - 4 laptops and 2 desktops
OS
Vista, Windows7, Mint Mate, Zorin, Windows 8
CPU
from 1.6GHz Duo to i7
Monitor(s) Displays
2x HP w2207
Hard Drives
5x HDD, 7x SSD, 12x Externals
Keyboard
with trackball - no mices
Mouse
Trackball mice
Internet Speed
DSL 6000
What version of Mac is it ? Mac OS X?
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32-Bit & Windows 7 Ultimat...Intel Core i7 CPU 950 @ 3.07GHzOCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 160...ATI Radeon HD 5700 Series
Computer Manufacturer/Model Number
Custom Built
OS
Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
CPU
Intel Core i7 CPU 950 @ 3.07GHz
Motherboard
ASUS P6T DELUXE V2
Memory
OCZ 6GB (3 x 2GB) 240-Pin DDR3 SDRAM DDR3 1600 OCZ3X1600R2
Graphics Card(s)
ATI Radeon HD 5700 Series
Sound Card
OnBoard
Hard Drives
WD6400AACS-00M3B0 (640GB SATA )
PSU
CORSAIR 850w
Case
NZXT LEXA
Cooling
Intel Stock Heatsink Fan
Keyboard
Microsoft Wireless Laser Keyboard 7000
Mouse
Microsoft Wireless Laser Mouse 7000
Or just copy the cd content to the stick - on the PC
This! I am having all sorts of problems with the Mac (not mine, don't use them) - could someone talk me through doing so via the command line thing, I'm afraid I haven't a clue
 

My Computer My Computer

At a glance

Windows 7 Home Premium 64bit@ 2.40GHzRAM 8.00GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavillion
OS
Windows 7 Home Premium 64bit
CPU
@ 2.40GHz
Memory
RAM 8.00GB
Antivirus
AVG
Browser
Chrome, Firefox, IE
Back
Top