GeekPolice
Would you like to react to this message? Create an account in a few clicks or log in to continue.

GeekPoliceLog in

 


descriptionThinkpoint EmptyThinkpoint

more_horiz
Hello, I really need help with this Thinkpoint thing. I have read a lot about it, but then I get stuck because I have another computer for work, but an unable to download pretty much ANYTHING onto it because it runs through my employer's server and is protected from everything. When I start my personal computer, Trojan will scan the computer and I can't get out of it. What do I do?

descriptionThinkpoint EmptyRe: Thinkpoint

more_horiz
Hi,

Please run hold CTRL + ALT + Delete, and go to Task Manager, once in Task Manager please end the hotfix.exe process.

Then run this:

Please download OTL to your Desktop. (If you already have it downloaded, then just follow the instructions below).
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • Under the Custom Scan box paste this in

    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\system32\*.exe /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\System32\config\*.sav
    %systemroot%\system32\*.sys
    %systemroot%\system32\drivers\*.dll
    %systemroot%\system32\drivers\*.ini
    %systemroot%\system32\drivers\*.exe
    %SYSTEMDRIVE%\*.*
    %PROGRAMFILES%\*.
    %appdata%\*.*
    netsvcs
    msconfig
    safebootminimal
    safebootnetwork
    activex
    drivers32
    /md5start
    eventlog.dll
    scecli.dll
    netlogon.dll
    cngaudit.dll
    sceclt.dll
    ntelogon.dll
    logevent.dll
    iaStor.sys
    nvstor.sys
    atapi.sys
    IdeChnDr.sys
    viasraid.sys
    AGP440.sys
    vaxscsi.sys
    nvatabus.sys
    viamraid.sys
    nvata.sys
    nvgts.sys
    iastorv.sys
    ViPrt.sys
    eNetHook.dll
    ahcix86.sys
    KR10N.sys
    disk.sys
    nvstor32.sys
    ahcix86s.sys
    nvrd32.sys
    symmpi.sys
    adp3132.sys
    mv61xx.sys
    usbstor.sys
    /md5stop
    CREATERESTOREPOINT
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs


  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

    • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
    • Please copy (Edit->Select All, Edit->Copy) and paste (Edit->Paste) the contents of these files, one at a time


Note: in the event that OTL fails to run, please use alternate download links to try again:

http://www.itxassociates.com/OT-Tools/OTL.scr
http://www.itxassociates.com/OT-Tools/OTL.com

descriptionThinkpoint EmptyRe: Thinkpoint

more_horiz
The Task manager (ctrl+alt+delete) is disabled because of this virus. any other suggestions?

descriptionThinkpoint EmptyRe: Thinkpoint

more_horiz
Hi,

Is this your personal computer or a work computer?

descriptionThinkpoint EmptyRe: Thinkpoint

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum