WiredWX Hobby Weather ToolsLog in

 


Trojan

4 posters

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
Sorry about the bumping.

As for the Windows 7 Disk. No I do not have it. I only received 3 disks from Dell.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
When your computer first boots up, press F8 a few times till you get the Boot Options menu, and (if exists) select Repair Your Computer. Access the Command Prompt option, and type in bootrec.exe /fixmbr

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
That didn't work. That is what me and Belazhur tried last time and windows now wont start at all.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
We need to rebuild the Boot sector

This is done by deleting the boot files and rebuilding them.

In the Windows RE environment, re-enter Command Prompt, and type in the following (in order), pressing enter after each line:

bcdedit /export C:\BCD_Backup
c:
cd boot
attrib bcd -s -h -r
ren c:\boot\bcd bcd.old
bootrec /RebuildBcd
fixboot

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
bcdedit /export C:\BCD_Backup
The operation completed successfully

c:

cd boot
The system cannot find the path specified

attrib bcd -s -h -r
File not found - bcd

ren c:\boot\bcd bcd.old
The system cannot find the path specified

bootrec /RebuildBcd
Successfully scanned Windows installations.
Total identified Windows installations: 0

fixboot
'fixboot' is not recognized as an internal or external command,
operable program or batch file

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
no reply for 2 days.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
We are going to be using a Windows Recovery Environment to help disinfect the system so it may boot again.

Download the OTLPE Standard REATOGO Windows Recovery Environment.
  • Place a blank CD-R disc in to your CD burning drive.
  • Download OTLPEStd.exe and double-click on it to burn to a CD using ISO Burner.
  • Reboot your system using the boot CD you just created.

    Note : If you do not know how to set your computer to boot from CD follow the steps here
  • Your system should now display a REATOGO-X-PE desktop.
  • Double-click on the OTLPE icon.
  • When asked "Do you wish to load the remote registry", select Yes
  • When asked "Do you wish to load remote user profile(s) for scanning", select Yes
  • Ensure the box "Automatically Load All Remaining Users" is checked and press OK
  • OTL should now start. Change the following settings
    • Change Drivers to Non-Microsoft
    • Press Run Scan to start the scan.
    • When finished, the file will be saved in drive C:\_OTL\MovedFiles
    • Copy this file to your USB drive if you do not have internet connection on this system
    • Please post the contents of the OTL.txt file in your reply.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
It keeps saying program might not have installed correctly for the otlpestd.exe

I am going to attempt to run the disk cause i do believe it is burned correctly.

None of my screens look even close to the directions so I am unfortunately lost.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
If it does not work on your computer, please try on another.

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
The computer I need help with isn't mine. The disk must have burned correctly because there are burn marks on the back of the cdrom. Is there a more uptodate form to follow when dealing with the BIOS? I can attempt to follow but when I get to a certain part of the directions my interface is different

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
Ok. So you have tried to burn the disc on another computer, but it did not work?

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
It looked like it did cause of the burn marks on the back which take up about 1/2 the disk. But the directions from the link you gave me are out of date for my model. Its a Dell Inspiron 1545

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
Do you have a USB stick drive (flash drive)?

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
Yes I have several of different GB Sizes

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
Driver diagnosis

First, download UNetbootin to the desktop of your working computer.

Next, download xpud-0.9.2.iso from noahdfear.net and save it to the desktop as well.

Once the download(s) have completed, double click the unetbootin-xpud-windows-387.exe file to run the installer.
  • Select the DiskImage option then click the browse button located on the right side of the textbox field.
  • Browse to and select the xpud-0.9.2.iso file
  • Verify the correct drive letter is selected for your usb device then click OK
  • Once the files have been written to the device you will be prompted to
    reboot. However, do not reboot. Instead, just Exit the UNetbootin interface.


Now, download noahdfear's Driver.sh to your USB
  • Remove the USB and insert it in the infected computer
  • Boot the infected computer
  • Immediately press the F12 key and choose to boot from the USB
  • Follow the prompts


A Welcome to xPUD screen will appear
  • Press File
  • Expand mnt
  • sda1,2...usually corresponds to your HDD
  • sdb1 is likely your USB
  • Click on the folder that represents your USB drive (sdb1 ?)
  • Confirm that you see driver.sh that you downloaded there
  • Press Tool at the top
  • Choose Open Terminal
  • Type bash driver.sh
  • Press Enter
  • After it has finished a report will be located on your USB drive named report.txt
  • Remove the USB drive and insert back in your working computer and navigate to report.txt


Copy and paste the report.txt for my review

Please note - all text entries are case sensitive

descriptionTrojan - Page 3 EmptyRe: Trojan

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum