Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Windows Police Pro, Win32/Cryptor, Win32/Heur, rootkit, trojans, a real mess


  • Please log in to reply
10 replies to this topic

#1 girltoast

girltoast

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Smalltimore, MD
  • Local time:03:51 AM

Posted 31 August 2009 - 07:24 PM

I have a bad situation with my ASUS eee netbook that I'm afraid I've made worse by mucking around in files I don't understand, following different sets of directions i found on the interweb. An EPICLY Bad Idea. I know. SIGH.

I hope you can help, kind soul. Windows Police Pro keeps popping up, even though I went to Task Manager and stopped it and then erased it in Add or Remove Programs under the Control Panel. I think I removed Advanced Anti-Virus too, but am not sure.
When I go online I'm getting many pop-ups, an insane number. Internet Explorer opened itself when I opened Google Chrome and has set up 16 windows-- some are Windows Anti Virus Pro and a few of this: hxxp://media2.tmlatn.com/images/defaults41/approved/404.html Often the pop-up relate to things I have browsed, yep. I'm getting a TON of fake malware stoppers telling me I need their product.

Sometimes the whole system freezes up, I have shut it off with the power switch several times. I have installed several Malware busters in an effort to scour my system, but they may be making it worse at this point, or maybe I downloaded a bogus one. MalwareBytes won't even run anymore. I also have Spybot and HijackThis trying to help me out. I have AVG and have run full computer scans -- each time it finds a few problems. Some of the items in the virus vault have been Win32/Cryptor, Win32/Heur, many many Trojans, including something called Rootkit-AgentDX.

I did follow all the prep steps to post here, but my firewall set up didn't look like the site described and it may not be settled properly. I'm not a totally clueless user, but my level of sophistication with the interior world of my system is pretty limited -- I don't know how to interpret these logs at all, I don't know any programming language, and I'm gullible to ads. I really hope my little TinyTiny can be saved, I love this computer.


Help me Obi-Wan Kenobi, You are in fact my only Hope.
Kate





DDS (Ver_09-07-30.01) - NTFSx86
Run by Katy at 19:28:06.64 on Mon 08/31/2009
Internet Explorer: 7.0.5730.13
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2039.975 [GMT -4:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Protection System *On-access scanning enabled* (Outdated) {28e00e3b-806e-4533-925c-f4c3d79514b9}

============== Running Processes ===============

C:WINDOWSsystem32svchost -k DcomLaunch
C:WINDOWSsystem32svchost -k rpcss
C:WINDOWSSystem32svchost.exe -k netsvcs
C:WINDOWSsystem32svchost.exe -k NetworkService
C:WINDOWSsystem32svchost.exe -k LocalService
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.exe
C:WINDOWSsystem32svchost.exe -k LocalService
C:PROGRA~1AVGAVG8avgwdsvc.exe
C:Program FilesCommon FilesInterVideoRegMgriviRegMgr.exe
C:Program FilesJavajre6binjqs.exe
svchost.exe
C:WINDOWSsystem32svchost.exe -k imgsvc
C:Program FilesWIDCOMMBluetooth Softwarebinbtwdins.exe
C:PROGRA~1AVGAVG8avgemc.exe
C:PROGRA~1AVGAVG8avgrsx.exe
C:PROGRA~1AVGAVG8avgnsx.exe
C:WINDOWSsystem32igfxtray.exe
C:Program FilesEeePCACPIAsTray.exe
C:Program FilesEeePCACPIAsAcpiSvr.exe
C:Program FilesEeePCACPIAsEPCMon.exe
C:Program FilesJavajre6binjusched.exe
C:Program FilesElantechETDCtrl.exe
C:PROGRA~1AVGAVG8avgtray.exe
C:WINDOWSRTHDCPL.EXE
C:WINDOWSsystem32ctfmon.exe
C:Program FilesTrend MicroHijackThisHijackThis.exe
C:WINDOWSsystem32igfxsrvc.exe
C:Program FilesSpybot - Search & DestroyTeaTimer.exe
C:Program FilesWIDCOMMBluetooth SoftwareBTTray.exe
C:Program FilesAVGAVG8avgcsrvx.exe
C:WINDOWSsystem32igfxext.exe
C:WINDOWSsystem32NOTEPAD.EXE
C:Documents and SettingsKatyLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
C:Program FilesInternet ExplorerIEXPLORE.EXE
C:WINDOWSsystem32rundll32.exe
C:DOCUME~1KatyLOCALS~1Temp10.tmp
C:Documents and SettingsKatyLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
C:Documents and SettingsKatyLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
C:Program FilesCobian Backup 8Cobian.exe
C:Program FilesCobian Backup 8cbInterface.exe
C:WINDOWSsystem32notepad.exe
C:Documents and SettingsKatyLocal SettingsApplication DataGoogleChromeApplicationchrome.exe
C:WINDOWSSystem32alg.exe
C:WINDOWSsystem32wbemwmiprvse.exe
C:Documents and SettingsKatyMy DocumentsDownloadsdds.scr
C:WINDOWSsystem32wbemwmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page =
uSearch Bar = hxxp://www.mirarsearch.com/?useie5=1&q=
mSearch Bar = hxxp://www.mirarsearch.com/?useie5=1&q=
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
mWinlogon: Shell=Explorer.exe rundll32.exe tapi.nfo beforeglav
mWinlogon: Userinit=c:windowssystem32userinit.exe,c:windowssystem32driverssmss.exe
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:program filescommon filesadobeacrobatactivexAcroIEHelper.dll
BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:program filesskypetoolbarsinternet explorerSkypeIEPlugin.dll
BHO: BitComet Helper: {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - c:program filesbitcomettoolsBitCometBHO_1.1.6.14.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:program filesavgavg8avgssie.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:program filesspybot - search & destroySDHelper.dll
BHO: ICQSys (IE PlugIn): {76dc0b63-1533-4ba9-8be8-d59eb676fa02} - c:windowssystem32dddesot.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:program filescommon filesmicrosoft sharedwindows liveWindowsLiveLogin.dll
BHO: {b29b8ca2-0f47-44ec-81a5-8ad4fc983bed} - c:windowssystem32fisibezu.dll
BHO: MegaSwellAdsForYou: {b8afa6f8-90af-2466-c153-04043912ffbc} - c:program filesmegaswelladsforyouMegaSwellAdsForYou.dll
BHO: Windows Live Toolbar Helper: {bdbd1dad-c946-4a17-adc1-64b5b4ff55d0} - c:program fileswindows live toolbarmsntb.dll
BHO: 1 (0x1) - No File
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:program filesjavajre6binjp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:program filesjavajre6libdeployjqsiejqs_plugin.dll
TB: Windows Live Toolbar: {bdad1dad-c946-4a17-adc1-64b5b4ff55d0} - c:program fileswindows live toolbarmsntb.dll
uRun: [ctfmon.exe] c:windowssystem32ctfmon.exe
uRun: [MyWebSearch Email Plugin] c:progra~1mywebs~1bar1.binmwsoemon.exe
uRun: [Google Update] "c:documents and settingskatylocal settingsapplication datagoogleupdateGoogleUpdate.exe" /c
uRun: [A00F2D334.exe] c:docume~1katylocals~1temp_A00F2D334.exe
uRun: [A00F24BE4.exe] c:docume~1katylocals~1temp_A00F24BE4.exe
uRun: [A00F3EE49.exe] c:docume~1katylocals~1temp_A00F3EE49.exe
uRun: [SpybotSD TeaTimer] c:program filesspybot - search & destroyTeaTimer.exe
mRun: [IgfxTray] c:windowssystem32igfxtray.exe
mRun: [HotKeysCmds] c:windowssystem32hkcmd.exe
mRun: [Persistence] c:windowssystem32igfxpers.exe
mRun: [AsusTray] c:program fileseeepcacpiAsTray.exe
mRun: [AsusACPIServer] c:program fileseeepcacpiAsAcpiSvr.exe
mRun: [AsusEPCMonitor] c:program fileseeepcacpiAsEPCMon.exe
mRun: [SunJavaUpdateSched] "c:program filesjavajre6binjusched.exe"
mRun: [ETDWare] c:program fileselantechETDCtrl.exe
mRun: [AVG8_TRAY] c:progra~1avgavg8avgtray.exe
mRun: [MyWebSearch Plugin] rundll32 c:progra~1mywebs~1bar1.binM3PLUGIN.DLL,UPF
mRun: [My Web Search Bar Search Scope Monitor] "c:progra~1mywebs~1bar1.binm3SrchMn.exe" /m=2 /w /h
mRun: [MyWebSearch Email Plugin] c:progra~1mywebs~1bar1.binmwsoemon.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [13800784] c:documents and settingsall usersapplication data1380078413800784.exe
mRun: [CPM8722a795] Rundll32.exe "c:windowssystem32delidubu.dll",a
mRun: [funefefuga] Rundll32.exe "c:windowssystem32berinege.dll",s
StartupFolder: c:docume~1alluse~1startm~1programsstartupblueto~1.lnk - c:program fileswidcommbluetooth softwareBTTray.exe
IE: &D&ownload &with BitComet - c:program filesbitcometBitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:program filesbitcometBitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:program filesbitcometBitComet.exe/AddAllLink.htm
IE: &Search
IE: &Windows Live Search - c:program fileswindows live toolbarmsntb.dll/search.htm
IE: Send to &Bluetooth Device... - c:program fileswidcommbluetooth softwarebtsendto_ie_ctx.htm
IE: Send To Bluetooth - c:program fileswidcommbluetooth softwarebtsendto_ie.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:program fileswidcommbluetooth softwarebtsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%Network Diagnosticxpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:program filesmessengermsmsgs.exe
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:program fileswindows livewriterWriterBrowserExtension.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:program filesskypetoolbarsinternet explorerSkypeIEPlugin.dll
IE: {dfb852a3-47f8-48c4-a200-58cab36fd2a2} - {53707962-6F74-2D53-2644-206D7942484F} - c:program filesspybot - search & destroySDHelper.dll
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1238562230296
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1238562209000
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
Filter: text/html - {2fff9a5a-da12-41db-a87b-286218bcf3dc} -
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:program filesavgavg8avgpp.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:progra~1common~1skypeSKYPE4~1.DLL
Notify: 841194a6663 - c:windowssystem32chsbrkr32.dll
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxdev.dll
Notify: __c0070670 - c:windowssystem32__c0070670.dat
Notify: __c00771f5 - c:windowssystem32__c00771F5.dat
Notify: __c00bc369 - c:windowssystem32__c00BC369.dat
AppInit_DLLs: c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll c:windowssystem32chsbrkr32.dll,c:windowssystem32chsbrkr32.dll c:windowssystem32delidubu.dll,c:windowssystem32chsbrkr32.dll,c:windowssystem32jorukiyi.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:windowssystem32WPDShServiceObj.dll
SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:windowssystem32delidubu.dll
STS: STS: {ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} - c:windowssystem32delidubu.dll
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, digiwet.dll
LSA: Notification Packages = scecli c:windowssystem32jorukiyi.dll

============= SERVICES / DRIVERS ===============


=============== Created Last 30 ================


==================== Find3M ====================

2009-05-31 18:00 49,664 a--sh--- c:windowssystem32berinege.dll
2009-05-31 18:00 49,664 a--sh--- c:windowssystem32fisibezu.dll
2009-05-31 18:00 49,664 a--sh--- c:windowssystem32jorukiyi.dll
2009-01-08 04:58 32,768 a--sh--- c:windowssystem32configsystemprofilelocal settingsapplication datamicrosoftfeeds cacheindex.dat
2009-03-21 07:46 32,768 a--sh--- c:windowssystem32configsystemprofilelocal settingshistoryhistory.ie5mshist012009032120090322index.dat

============= FINISH: 19:38:21.51 ===============

update --
I turned the computer on and got a pop-up labeled RUNDLL. It says "Error loading tapi.nfo The specified module could not be found"
I can't get rid of it to go to any scan program, open anything, get online -- Ican move the cursor, but that is it, nothing responds. Same thing in Safe Mode, or just a dark screen telling me it's in safe mode. The navigation bar at the bottom of the screen, where the Start button lives, is solid blue, no icons. Contol/Alt/Delete gives me no change.

Oh, i am sad. Near tears, feel totally helpless. I'm worried it can't be repaired.
What is System Restore about, is that my savior here?

thanks for looking at this for me, I appreciate whatever advice you can spare.
Kate

Merge posts. ~ OB

Attached Files


Edited by Orange Blossom, 02 September 2009 - 04:59 PM.
Deactivate link. ~ OB


BC AdBot (Login to Remove)

 


#2 thcbytes

thcbytes

  • Malware Response Team
  • 14,790 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:51 AM

Posted 15 September 2009 - 10:27 PM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE
Proud member - Unified Network of Instructors and Trained Eliminators
Posted Image

I do not accept personal donations for assistance provided. I would ask that you instead consider donating the greatest gift - Organ Donation. Your organs are of no use to you when your gone. You will save a life that would otherwise be lost!

http://donatelife.net/register-now/

#3 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 24 September 2009 - 03:18 PM

Due to the lack of feedback this Topic is closed.

If you need this topic reopened, please request this by sending the moderating team a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#4 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 24 September 2009 - 05:46 PM

Reopened at request of topic starter. :(
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#5 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 24 September 2009 - 05:58 PM

Hello Kate,

Let's see what we can do for Tinytiny. :(

I need for you to go offline completely and disable ALL your protective programs after you download ComboFix, but before you run it. Sometimes those programs interfere with it, and we don't want that! :(

This tool is not a toy. If used the wrong way you could trash your computer. Please use only under direction of a Helper. If you decide to do so anyway, please do not blame me or ComboFix.

1. Download this file - combofix.exe
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
http://www.forospyware.com/sUBs/ComboFix.exe

2. Double click combofix.exe & follow the prompts.
3. When finished, it will produce a log for you. Post that log in your next reply please, along with a new HijackThis log.

Note:
Do not mouseclick combofix's window while it's running. That may cause it to stall.

If ComboFix will not run the first time, then rename ComboFix.exe to girltoast.exe and try it again. :)

To get HijackThis, Please do this:
1. Download HijackThis™ here:
http://www.trendsecure.com/portal/en-US/th.../hijackthis.php

2. Click 'Do a System Scan and Save log'.
The HJT log will open in notepad.

If you have problems downloading these things to the infected computer, then download them onto the computer you've been using since and transfer them with a flash/pen drive. :)

Thanks,
tea
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#6 girltoast

girltoast
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Smalltimore, MD
  • Local time:03:51 AM

Posted 25 September 2009 - 04:21 PM

ok, I downloaded these files onto a flash drive. I'll go home and start playing with it. I'm on my way!

:(
Thank you!
Kate

#7 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 25 September 2009 - 06:52 PM

You're welcome. :(

Post when you're ready. :(
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#8 girltoast

girltoast
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Smalltimore, MD
  • Local time:03:51 AM

Posted 28 September 2009 - 07:37 PM

I'm stuck, I haven't been able to produce a log.
I dowloaded the programs onto a flash drive, but I can't get the drive open on Tinytiny to find the files. I turn the computer on, the startup sequence gets me to the desktop. The bottom bar doesn't have a start button or other icons. An error message appears -- "error loading tapi.nfo the specified module could not be found." I can't move the cursor at all, and hitting Enter makes no change.
I also started it in safe mode, and got slightly further -- I can move the cursor and Enter makes the error message disappear. When I click on any icon, like My Computer, the screen goes to loading-blank and everything stops responding. I've turned it off with the power button and tried it many times.

Any ideas about what I should try next?
Thanks very much,
Kate

#9 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 28 September 2009 - 08:11 PM

Can you open Task Manager? Ctrl+Alt+Del
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?

#10 girltoast

girltoast
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Smalltimore, MD
  • Local time:03:51 AM

Posted 28 September 2009 - 10:57 PM

Nope. I tried to,but nothing happens.

#11 teacup61

teacup61

    Bleepin' Texan!


  • Malware Response Team
  • 17,075 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Wills Point, Texas
  • Local time:02:51 AM

Posted 29 September 2009 - 01:56 PM

You say you can get to more things in Safe Mode......can you click the Start button and choose Run? If not, this isn't looking very good. Can you make a CD on the other computer you use?

tea
Please make a donation so I can keep helping people just like you.
Every little bit helps! :)
You can even use your credit card! Thank you!

Posted Image


Error reading poptart in Drive A: Delete kids y/n?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users