Shorcut virus.

remoticboy

New member
Member
Local time
6:33 AM
Messages
47
yesterday, my external hard disk was infected with the shortcut virus. i cleaned it after connecting to my desktop. everything went fine. and through web, i came to know that it only effected usb powered stuff and not hard drives.

but my c was infected. just documents and settings. and some important folders into that. like appdata, roaming, etc.
i went online and searched and ended up deleting something in regedit.exe also I go to task manager everytime and delete the scrip.exe, because i see hidden folders randomly named like 131b popping up from nowhere and creating java script files.

now the problem is i cant run a single exe file. no matter what i click, windows asks me "open with . . ". even if its snipping tool, brower or anything. what should I do?

i had created a thread in general discussion, please ignore it.
 

My Computer

Computer Manufacturer/Model Number
N/A
OS
Windows 7 Ultimate x64
CPU
Intel Pentium D 820 (2.80 GHz)
Motherboard
Biostar G31M+
Memory
ddr2 2 GB
Graphics Card(s)
Sapphire AMD/ATI Radeon HD 6570 1 GB DDR3 Graphics Card
Sound Card
N/A
Monitor(s) Displays
Samsung SyncMaster 740N
Screen Resolution
1280*1024
Hard Drives
WD 80GB ATA Device
Seagate Barracuda 160GB SATA Device
Keyboard
Microsoft Standard MM Keyboard (USB)
Mouse
Microsoft HID-compliant Mouse
I'd suggest running Windows Defender Offline to check for malware.

http://www.sevenforums.com/tutorials/166445-windows-defender-offline.html

Create the disk on a machine that is not infected and is running the same "bit-ness" as the infected machine. In other words, if the infected machine is running a 64-bit Windows 7 then the machine used to make the disk must also be 64-bit. Make sure your computer BIOS is set to boot from the CD/DVD drive as first option and then follow the instructions for running the scan.

I'd also check for any damaged or corrupt system files by running a system file checker scan from an elevated command prompt (option two.) If problems are found, run the scan 3 times and reboot the coputer immediately after each scan.

http://www.sevenforums.com/tutorials/1538-sfc-scannow-command-system-file-checker.html
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
In addition to marsmimar's excellent advice, it might be a good idea to also run the following tools, since not one AV gets everything. Rootkits generally alter Win files, some to the point that there is no option save for a repair install. If SFC is unable to correct the problem, you may wish to consider this option.

How to remove malware belonging to the family Rootkit.Win32.TDSS (aka Tidserv, TDSServ, Alureon)?

AdwCleaner Download

http://www.sevenforums.com/tutorials/3413-repair-install.html
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
remoticboy,

Try the following:

http://www.sevenforums.com/tutorials/19449-default-file-type-associations-restore.html

Let us know how it goes.


Just in case there are any malware remnants, also, download RogueKiller:
http://www.sur-la-toile.com/RogueKiller/

When you get to the website, go to where it says:
(Download link) Lien de téléchargement

Select the version that applies to your system: x64
Click the dark-blue button that applies.
Save to the Desktop

Close all windows and browsers

Right-click RogueKiller and select: Run as Administrator
Press: SCAN

When done, a report opens on the Desktop: RKreport.txt

Please provide the RKreport.txt (Mode: Scan) in your reply.
(Please do not delete anything!)
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
the problem is guys,I CANT RUN ANY EXE FILE.

i tried what marsmimar said, but the bios didnt recognise the pendrive in which i had installed the windows defender.
and also, sfc scannow didnt work as well. everytime i run it, it says it needs to reboot because another a system repair pending.

what borg 386 said is great, but i cant use any exe file. it just wont open up.

and cottonball, I'll let you know.
 

My Computer

Computer Manufacturer/Model Number
N/A
OS
Windows 7 Ultimate x64
CPU
Intel Pentium D 820 (2.80 GHz)
Motherboard
Biostar G31M+
Memory
ddr2 2 GB
Graphics Card(s)
Sapphire AMD/ATI Radeon HD 6570 1 GB DDR3 Graphics Card
Sound Card
N/A
Monitor(s) Displays
Samsung SyncMaster 740N
Screen Resolution
1280*1024
Hard Drives
WD 80GB ATA Device
Seagate Barracuda 160GB SATA Device
Keyboard
Microsoft Standard MM Keyboard (USB)
Mouse
Microsoft HID-compliant Mouse
the problem is guys,I CANT RUN ANY EXE FILE.

i tried what marsmimar said, but the bios didnt recognise the pendrive in which i had installed the windows defender.
and also, sfc scannow didnt work as well. everytime i run it, it says it needs to reboot because another a system repair pending.

what borg 386 said is great, but i cant use any exe file. it just wont open up.

and cottonball, I'll let you know.

You'll probably need to create the Windows Defender Offline bootable media on a disk (my BIOS doesn't recognize pen drives either. :( ) And the SFC probably won't work until after the malware scan has done its thing.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Sony Vaio VPCEB47GM Laptop
OS
Win 7 Pro 64-bit
CPU
Intel i5 2.4 Ghz
Memory
8GB DDR3
Graphics Card(s)
Intel HD 3000
Sound Card
IDT High Definition
Monitor(s) Displays
15.6 WGXA Anti-Glare LED
Screen Resolution
1280x800
Hard Drives
640Gb 7200rpm
Antivirus
MSE
Browser
Opera (primary) with IE9 backup
cottonball, that didnt work. the reg file, everytime i try to merge, windows asks me "open with . . "
and marsmimar, i dont have a cd drive.
 

My Computer

Computer Manufacturer/Model Number
N/A
OS
Windows 7 Ultimate x64
CPU
Intel Pentium D 820 (2.80 GHz)
Motherboard
Biostar G31M+
Memory
ddr2 2 GB
Graphics Card(s)
Sapphire AMD/ATI Radeon HD 6570 1 GB DDR3 Graphics Card
Sound Card
N/A
Monitor(s) Displays
Samsung SyncMaster 740N
Screen Resolution
1280*1024
Hard Drives
WD 80GB ATA Device
Seagate Barracuda 160GB SATA Device
Keyboard
Microsoft Standard MM Keyboard (USB)
Mouse
Microsoft HID-compliant Mouse
remoticboy,

See if this works...

Can you get to a Command Prompt:

Start > All Programs > Accessories > Command Prompt

Right-click the Command Prompt and select: Run as Administrator

At the blinking cursor, type in the following inside the code box, and press Enter:

Code:
cd c:\

Now, at C:\>, type in the following inside the code box , and press Enter:

Code:
assoc .reg

This command should return the following:

.reg=regfile

If not, then, type in the following inside the code box, and press Enter:

Code:
assoc .reg=regfile


Now, try to right-click the .reg file referenced in Post #4 , and see if it works.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Also, on RogueKiller, can you rename its downloaded file to RK.com and try it?

Maybe the comfile association works...
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Back
Top