Hi there,
I’m sorry, English - it is not my mother tounge. I’ve got the same problem like many people here, PC can’t start - zero access ,I think. Maybe some may help, pliz. I attach frst.txt
KR
Wojtek
Hi there,
I’m sorry, English - it is not my mother tounge. I’ve got the same problem like many people here, PC can’t start - zero access ,I think. Maybe some may help, pliz. I attach frst.txt
KR
Wojtek
It looks like a failed ransomeware attempt
Download the attached fixlist.txt to the same USB as FRST
Run FRST as before and press FIX
On completion reboot to normal windows
Download OTL to your Desktop
Secondary link
[*]Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
https://dl.dropbox.com/u/73555776/OTL_Main_Tutorial.gif
[*]Select All Users
[*]Under the Custom Scan box paste this in
netsvcs
BASESERVICES
%SYSTEMDRIVE%*.exe
/md5start
services.*
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
/md5stop
dir “%systemdrive%*” /S /A:L /C
CREATERESTOREPOINT
[*]Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
[*]When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
[*]Post both logs
Hi,
I attach olt and extras files. Thanks a lot. U R Great
Wojtek
OK you appear to have a lot of junkware on your system, so we will give that the heave ho next
Warning This fix is only relevant for this system and no other, using on another computer may cause problems
Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot
Run OTL
[*]Download the attached fix.txt to your desktop
https://dl.dropbox.com/u/73555776/OTL_Fix.GIF
[*]Then click the Run Fix button at the top
[*]A dialogue will open asking for the location of fix.txt
[*]Navigate to the file on your desktop and select
[*]Press run fix again
[*]Let the program run unhindered, reboot the PC when it is done
[*]Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.
THEN
Download AdwCleaner from here to your desktop
Run AdwCleaner and select Delete
https://dl.dropbox.com/u/73555776/AdwCleaner.GIF
Once done it will ask to reboot, allow this
On reboot a log will be produced please attach that
Hm, I think that OTL hangs on when working at line with number 03 (delta toolbar). I have waited about 15 minutes, for finish of fixing. Should I wait much more longer ?
In the task manager OTL has got “no response” status.
Wojtek
OK looks like it is being obstinate, stop OTL and proceed to AdwCleaner. once that has completed then run a quick scan with OTL to see what was missed
I run Adwcleaner. It finished cleaning and restarted system. And windows once again hang on when loading aswrvts
I have no power, behind the window 34 C, maybe tomorrow we try once again, if you would like ofkorz. I can’t understand may stupidity, when I push “enter” button on this fuc… pdf file.
Regards
Wojtek
OK when ready run a fresh FRST scan please
Thanks, FRST attached
This may damage Avast, but we will look at that once you are back in normal windows
Download the attached fixlist.txt to the same USB as FRST
Run FRST as before and press fix
Reboot to normal windows and run an OTL scan please
I saw (in fixlist) that you’ve deleted some avast files. If it may help, I can make some simple operations on this virused PC, 'couse I have working on it in Linux Back Track - booting from CD. You may say what I should to do and I’ll do it.
You can make heave ho with everyone files except jpg and office docs 'couse are’t archived.
Are you able to get back to normal mode now ?
Yeah, I can work in normal mode. Is it finish ? PC hangs on in time of booting to the safe mode still
Thanks a lot, maybe you will be in Poland in Wrocław anytimes, I’ll invited for really big cup of beer or few ofkorz :-).
regards
Wojtek
I would like to confirm that all the bad stuff has gone, so could you run OTL and attach the log please