Operating system problem

Karnjanarat

New member
Local time
4:10 AM
Messages
12
I have everything up on my desktop, but seemingly cannot open any programs that require to go online. When trying to open explorer, I get promted with
"Choose the program you want to use to open this file". "Do you want to run or save this file" then it asks Do you want to run this software. I select run, then it reverts back to "Choose the program you want to use to open this file"
also for example
If I open "Action Centre" and select "troubleshooting" I get
C:\windows\System32\rundll32.exe
Application not found
a lot of times I get
C:\windows\System32\msdt.exe
Application not found
This all started after I was advised my computer is infected with a virus.
I can't download any program that I want to use to fix the problem.
I am using my 2nd old slow laptop to access this forum.
Can any-one offer advise on what to do please
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
If you have access to another computer:

1. Download Malwarebytes:
Malwarebytes

2. Uninstall your current anti-virus software and replace with MS Security Essentials:

http://www.microsoft.com/security_essentials/

Put the installation file onto a USB stick, or CD. If you don't have any of those, you may put it on Windows SkyDrive (if you have a Windows Live Messenger).
 

My Computer My Computer

At a glance

Win 7 Pro x64 SP1 OS X Snow Leopard 10.6.7Intel Core i7 2820QM 2.3GHz (Quad-Core)8GB 1333 MHz PC3-10600 DDR3 SDRAMATI Radeon HD 6750M (1GB, GDDR5)
Computer Manufacturer/Model Number
Macbook Pro 15" (2011) (Matte Version)
OS
Win 7 Pro x64 SP1 OS X Snow Leopard 10.6.7
CPU
Intel Core i7 2820QM 2.3GHz (Quad-Core)
Motherboard
N/A
Memory
8GB 1333 MHz PC3-10600 DDR3 SDRAM
Graphics Card(s)
ATI Radeon HD 6750M (1GB, GDDR5)
Sound Card
N/A
Monitor(s) Displays
1 Display
Screen Resolution
1,680 x 1050 (Matte Screen, Anti-Glare)
Hard Drives
750GB SATA (5400 rpm)
WD My Passport Essential 1TB Portable Hard Drive
PSU
N/A
Case
N/A
Cooling
N/A
Keyboard
Apple Wireless Keyboard
Mouse
Apple Wireless Magic Mouse
Internet Speed
Max - 2.2MB/sec; DSL provided by Telecom NZ
Other Info
MS Office Professional 2010
McAfee Total Protection 2011
On a Laptop Stand (Hand-Built)
After you try DeanP's suggestions, you can also run SFC /scannow from the command prompt to test the integrity of the system files.
 

My Computer My Computer

At a glance

Windows 10 Pro x64 ; Xubuntu x64Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz16GB Corsair Vengance DDR3 @ 661 MHz Dual Cha...EVGA NVidia GTX 560 1024MB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
Sounds like you have a serious infection smart enough to block the very scans which can neutralize it.

If the two course of action proposed above don't succeed, try one of the free Bootable AV CD's like Avira from this list: FREE Bootable AntiVirus Rescue CDs Download List The virus has no ability to block a bootable scan, nor can it hide in any running processes.

This may give you enough functionality to run MSE and Malwarebytes, then check system files to see if any have been damaged: http://www.sevenforums.com/tutorials/1538-sfc-scannow-command-system-file-checker.html

If problems remain, try booting the Win7 DVD Repair console or Repair CD to System Restore back until you get before the infection: http://www.sevenforums.com/tutorials/700-system-restore.html
http://www.sevenforums.com/tutorials/2083-system-repair-disc-create.html

Recovering functionality but having irreparable system files, try http://www.sevenforums.com/tutorials/3413-repair-install.html?ltr=R

If any symptoms of infection remain after repeated scans, you may need to wipe the HD of all infected code and reinstall following these tips: http://www.sevenforums.com/installation-setup/125874-re-install-windows-7-a.html#post1086729
 
Can't run MS Security Essentials
Malwarebytes picked up 18 infections
I am now downloading rescue system program.
Hopefully I can get some functionality back again.
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
I run the scan program and
Windows Resource Protection did not find any integrity violations.
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
So, are you able to open programs now? If not, continue with the boot rescue disc as asked by greg.
 

My Computer My Computer

At a glance

Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTSCore 2 Duo e7400 @ 2.90GHz3GB DDR2Asus Nvidia GTX 560Ti 1GB
Computer Manufacturer/Model Number
HCL
OS
Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTS
CPU
Core 2 Duo e7400 @ 2.90GHz
Motherboard
Gigabyte G31M-ES2L
Memory
3GB DDR2
Graphics Card(s)
Asus Nvidia GTX 560Ti 1GB
Sound Card
On-board
Monitor(s) Displays
HCL eZeeBee 18.5" LCD
Screen Resolution
1366x768 @ 60Hz
Hard Drives
Western Digital 320GB
PSU
Corsair CX500 V2 500W
Cooling
Stock
Keyboard
Stock
Mouse
Stock
Internet Speed
15-25kBps D/L | 10kBps U/L | Hey Don't laugh
Hello!

Could you please post the MBAM log so that we can see what we are dealing with? Thanks!

Richard
 

My Computer My Computer

At a glance

Vista Home Premium x86 SP2Intel Core 2 Quad Q9300 2.50GHz4 gb (DDR2 800) 400MHzATI Radeon HD 3870 (512 MBytes)
Computer Manufacturer/Model Number
Dell XPS 420
OS
Vista Home Premium x86 SP2
CPU
Intel Core 2 Quad Q9300 2.50GHz
Motherboard
Stock Dell 0TP406
Memory
4 gb (DDR2 800) 400MHz
Graphics Card(s)
ATI Radeon HD 3870 (512 MBytes)
Monitor(s) Displays
1 x Dell 2007FP and 1 x (old) Sonic flat screen
Screen Resolution
1600 x 1200 and 1280 x 1204
Hard Drives
1 x 640Gb (SATA 300) Western Digital: WDC WD6400AAKS-75A7B0 1 x 1Tb (SATA 600) Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
Case
Dell XPS 420
Cooling
Stock Fan
Keyboard
Dell Bluetooth
Mouse
Advent Optical ADE-WG01 (colour change light up)
Internet Speed
Varies from 10kb/s to 170kb/s. So unreliable it is not funny
Other Info
ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
MBAM log

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 2
Registry Data Items Infected: 5
Folders Infected: 0
Files Infected: 11
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_CLASSES_ROOT\.exe\shell\open\command\(default) (Hijack.ExeFile) -> Value: (default) -> No action taken.
HKEY_CLASSES_ROOT\pezfile\shell\open\command\(default) (Rogue.MultipleAV) -> Value: (default) -> No action taken.
Registry Data Items Infected:
HKEY_CLASSES_ROOT\.exe\(default) (Hijacked.exeFile) -> Bad: (pezfile) Good: (exefile) -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{25B4EF13-F7A3-47A5-8B29-EE862150BE66}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{39A69A42-31A8-4256-BF7F-64607B3E4741}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{AD0C62B4-8EBF-4331-99D6-C4041B957D3D}\NameServer (Trojan.DNSChanger) -> Bad: (93.188.162.135,93.188.160.15) Good: () -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
c:\Users\Keith\AppData\Roaming\microsoft\svchost.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Roaming\microsoft\Windows\shell.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Local\Temp\1187.7056201924984.exe (Trojan.Agent.Gen) -> No action taken.
c:\Users\Keith\AppData\Roaming\microsoft\stor.cfg (Malware.Trace) -> No action taken.
c:\Users\karnjanarat\Desktop\internet security suite.lnk (Rogue.Link) -> No action taken.
c:\explorer.exe (Worm.AutoRun) -> No action taken.
c:\Users\Keith\AppData\Local\Temp\svchost.exe (Trojan.Agent) -> No action taken.
c:\Users\Keith\local settings\application data\opRSK (Malware.Trace) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\internet explorer\quick launch\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\Windows\start menu\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.
c:\Users\karnjanarat\AppData\Roaming\microsoft\Windows\start menu\Programs\internet security suite.lnk (Rogue.InternetSecuritySuite) -> No action taken.:cry:
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32

My Computer My Computer

At a glance

Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTSCore 2 Duo e7400 @ 2.90GHz3GB DDR2Asus Nvidia GTX 560Ti 1GB
Computer Manufacturer/Model Number
HCL
OS
Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTS
CPU
Core 2 Duo e7400 @ 2.90GHz
Motherboard
Gigabyte G31M-ES2L
Memory
3GB DDR2
Graphics Card(s)
Asus Nvidia GTX 560Ti 1GB
Sound Card
On-board
Monitor(s) Displays
HCL eZeeBee 18.5" LCD
Screen Resolution
1366x768 @ 60Hz
Hard Drives
Western Digital 320GB
PSU
Corsair CX500 V2 500W
Cooling
Stock
Keyboard
Stock
Mouse
Stock
Internet Speed
15-25kBps D/L | 10kBps U/L | Hey Don't laugh
You need to rescan and select "Remove All", please.

Thanks!
 

My Computer My Computer

At a glance

Vista Home Premium x86 SP2Intel Core 2 Quad Q9300 2.50GHz4 gb (DDR2 800) 400MHzATI Radeon HD 3870 (512 MBytes)
Computer Manufacturer/Model Number
Dell XPS 420
OS
Vista Home Premium x86 SP2
CPU
Intel Core 2 Quad Q9300 2.50GHz
Motherboard
Stock Dell 0TP406
Memory
4 gb (DDR2 800) 400MHz
Graphics Card(s)
ATI Radeon HD 3870 (512 MBytes)
Monitor(s) Displays
1 x Dell 2007FP and 1 x (old) Sonic flat screen
Screen Resolution
1600 x 1200 and 1280 x 1204
Hard Drives
1 x 640Gb (SATA 300) Western Digital: WDC WD6400AAKS-75A7B0 1 x 1Tb (SATA 600) Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
Case
Dell XPS 420
Cooling
Stock Fan
Keyboard
Dell Bluetooth
Mouse
Advent Optical ADE-WG01 (colour change light up)
Internet Speed
Varies from 10kb/s to 170kb/s. So unreliable it is not funny
Other Info
ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
Can't run MS Security Essentials
Malwarebytes picked up 18 infections
I am now downloading rescue system program.
Hopefully I can get some functionality back again.
Perhaps after you have removed those previous infections, you can now run Microsoft Security Essentials
 

My Computer My Computer

At a glance

Microsoft Windows 8.1 Pro 64-bitIntel(R) Core(TM) i3-4130 CPU @ 3.40GHz8.00 GBNone
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Asus Build
OS
Microsoft Windows 8.1 Pro 64-bit
CPU
Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz
Motherboard
B85M-E
Memory
8.00 GB
Graphics Card(s)
None
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Asus 23.6" Monitor
Screen Resolution
1920 x 1080 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
INTEL SSDSC2BW180A4
Samsung SSD 840 PRO Series
PSU
Seasonic S12II-380Bronze
Case
Lian Li
Cooling
Fan, Passive
Keyboard
Logitech K120
Mouse
Microsoft Touch Mouse
Internet Speed
4ms Ping, 19.0 Mbps Download, 19.0 Mbps Upload
Antivirus
Eset Endpoint
Browser
Internet Explorer, Chrome
I appreciate your help. I need to focus back on this after some sleep.
Thanks Keith
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
+1 Niemiro

Rescan and Remove All with Malwarebytes.
 

My Computer My Computer

At a glance

Windows7 Pro 64bit SP-1; Windows XP Pro 32bitIntel Core i7-870 Lynnfield 2.93GHz LGA 1156 ...8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GBASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit G...
Computer Manufacturer/Model Number
Hopalong/ Godzilla
OS
Windows7 Pro 64bit SP-1; Windows XP Pro 32bit
CPU
Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core
Motherboard
ASUS P7P55D-E PRO
Memory
8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB
Graphics Card(s)
ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5
Sound Card
VIA Onboard
Monitor(s) Displays
Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws
Screen Resolution
1920x1080; 1440x900
Hard Drives
Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s
PSU
COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular
Case
COOLER MASTER HAF 932 RC-932-KKN5-GP Black
Cooling
Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans)
Keyboard
Logitech K-320
Mouse
Kensington
Antivirus
Avast Inernet Suite
Browser
IE 9 ; Chrome
I removed corruption with malwarebytes.
I then managed to get MSE to run, and I seem to have full functionality back again
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
Well done. It seems as if your PC is behaving normally now. Be sure to do regular scans. I suggest you keep the following resident on your PC:

MSE

and run MBAM (Malwarebytes) regularly.
 

My Computer My Computer

At a glance

Windows 10 Pro x64 ; Xubuntu x64Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz16GB Corsair Vengance DDR3 @ 661 MHz Dual Cha...EVGA NVidia GTX 560 1024MB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
And a decent firewall. Make sure windows firewall is enabled in case malware disabled it.
Also, if i remember right, there was also a DNS changer trojan in your pc. Be sure to password protect your settings in your router configuration.
At last, not least, glad it's solved.
 

My Computer My Computer

At a glance

Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTSCore 2 Duo e7400 @ 2.90GHz3GB DDR2Asus Nvidia GTX 560Ti 1GB
Computer Manufacturer/Model Number
HCL
OS
Winbdows 7 ultimate x64 | Ubuntu 12.04 x64 LTS
CPU
Core 2 Duo e7400 @ 2.90GHz
Motherboard
Gigabyte G31M-ES2L
Memory
3GB DDR2
Graphics Card(s)
Asus Nvidia GTX 560Ti 1GB
Sound Card
On-board
Monitor(s) Displays
HCL eZeeBee 18.5" LCD
Screen Resolution
1366x768 @ 60Hz
Hard Drives
Western Digital 320GB
PSU
Corsair CX500 V2 500W
Cooling
Stock
Keyboard
Stock
Mouse
Stock
Internet Speed
15-25kBps D/L | 10kBps U/L | Hey Don't laugh
Excellent.

Glad you have things repaired.
Mike
 

My Computer My Computer

At a glance

Windows7 Pro 64bit SP-1; Windows XP Pro 32bitIntel Core i7-870 Lynnfield 2.93GHz LGA 1156 ...8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GBASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit G...
Computer Manufacturer/Model Number
Hopalong/ Godzilla
OS
Windows7 Pro 64bit SP-1; Windows XP Pro 32bit
CPU
Intel Core i7-870 Lynnfield 2.93GHz LGA 1156 95W Quad-Core
Motherboard
ASUS P7P55D-E PRO
Memory
8GB@1400MHz Crucial Ballistix DDR3-1600 4x2GB
Graphics Card(s)
ASUS ENGTX460 DirectCU/2DI/1GD5 1GB 256-bit GDDR5
Sound Card
VIA Onboard
Monitor(s) Displays
Asus VS248H-P 24"; Samsung SyncMaster 941BW 19"ws
Screen Resolution
1920x1080; 1440x900
Hard Drives
Samsung 830 120GB SSD
Intel 320 120GB SSD
Western Digital Caviar Black WD7501AALS 750GB 7200 RPM SATA 3.0Gb/s
Western Digital Caviar Black WD6401AALS 640GB 7200 RPM SATA 3.0Gb/s
PSU
COOLER MASTER Silent Pro RS850-AMBAJ3-US 850W Modular
Case
COOLER MASTER HAF 932 RC-932-KKN5-GP Black
Cooling
Scythe "Mugen-2 Rev.B" (2 ScytheKaze-Jyuni PWM fans)
Keyboard
Logitech K-320
Mouse
Kensington
Antivirus
Avast Inernet Suite
Browser
IE 9 ; Chrome
Some viruses may disable some settings, so if you notice something is messed up and your scans don't show any viruses, google your problem. I had a virus once that disabled task manager, and a quick look up gave me the solution. ;)
 

My Computer My Computer

At a glance

Microsoft Windows 8.1 Pro 64-bitIntel(R) Core(TM) i3-4130 CPU @ 3.40GHz8.00 GBNone
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Asus Build
OS
Microsoft Windows 8.1 Pro 64-bit
CPU
Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz
Motherboard
B85M-E
Memory
8.00 GB
Graphics Card(s)
None
Sound Card
Realtek High Definition Audio
Monitor(s) Displays
Asus 23.6" Monitor
Screen Resolution
1920 x 1080 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
INTEL SSDSC2BW180A4
Samsung SSD 840 PRO Series
PSU
Seasonic S12II-380Bronze
Case
Lian Li
Cooling
Fan, Passive
Keyboard
Logitech K120
Mouse
Microsoft Touch Mouse
Internet Speed
4ms Ping, 19.0 Mbps Download, 19.0 Mbps Upload
Antivirus
Eset Endpoint
Browser
Internet Explorer, Chrome
Thank-you

I wish to thank all of you for helping me solve my program problems. Very much appreciated.
I was nearly going to hire a guru to sort it all out, as I'm not much of a computer code type thinker.
Life just about comes to a stop when the computer breaks down.
Keith and Karnjanarat:thumbsup:
 

My Computer My Computer

At a glance

32
Computer Manufacturer/Model Number
Toshiba A500
OS
32
Back
Top