Question about Dell Computers & Internet

2 Answers

Pnsfuck worm has infected computer and left blue icons all over desktop and disabled system restore and search,run functions

Posted by on

Ad

2 Answers

  • Level 1:

    An expert who has achieved level 1.

  • Contributor
  • 1 Answer

I had the same issue. Translating from Indonesian was not very helpful. I began by running A-Squared 4.5 FREE virus remover. This found everything that others did not. TrojanDownloader.Win 32. DElf!k, Virut!K, Crypt!K, Trojan-Banker.Win32.Barbra!K, etc. After that the icons stayed but not activating. Yesterday I tried (after months) the windows tool Clean Up Unused Desktop items. It recognized the files, put them in a folder. I renamed the folder and deleted it. Ran A-Squared again and all is well now...after several months of looking for options and translating Indo languages...pointless. So there u have it. A_Squared FREE, then Remove Unused Desktop Items. Rename file delete, A Squared again. ALL DONE AND CLEAN!!!! I will curtsy now:)

Posted on Sep 17, 2009

Ad
  • Level 2:

    An expert who has achieved level 2 by getting 100 points

    MVP:

    An expert that gotĀ 5 achievements.

    Novelist:

    An expert who has written 50 answers of more than 400 characters.

    Governor:

    An expert whose answer gotĀ voted for 20 times.

  • Expert
  • 154 Answers

Your best option is to find the discs that shipped with your pc and restore your system to its original configuration.

It is possible to fix it without performing a system restore but you need to be extremely familiar with repairing computer problems.

Posted on Aug 01, 2009

Ad

1 Suggested Answer

6ya6ya
  • 2 Answers

SOURCE: I have freestanding Series 8 dishwasher. Lately during the filling cycle water hammer is occurring. How can this be resolved

Hi,
a 6ya expert can help you resolve that issue over the phone in a minute or two.
Best thing about this new service is that you are never placed on hold and get to talk to real repairmen in the US.
New users get 2 Free calls (no credit card required) and instant help on almost anything you can think of (from cars to computers, appliances, handyman, and even pets).
click here to download the app (for users in the US for now) and get all the help you need.
Goodluck!

Posted on Jan 02, 2017

Add Your Answer

Uploading: 0%

my-video-file.mp4

Complete. Click "Add" to insert your video. Add

×

Loading...
Loading...

Related Questions:

2 Answers

I need help my computer has been infected with something and i need help to figure out what to do!!


this is not really something that can be fixed here, I would take it to a certified computer tech. There are people that can do it remotely but I don't know any.

Aug 07, 2010 | Computers & Internet

Tip

How To Remove A Virus From Your Computer


Requirements: On an uninfected PC connected to the Internet, download the following programs to a thumbdrive. We will need this to fix the infected computer.
Instructions:
  1. Shut down the computer as soon as you realize there is a problem. Pop-ups, program errors, dll errors, fake Anti-Virus scanners, and similar are signs there is a problem. Shut down the computer normally, or hold the power button in until the computer shuts off.
  2. Power on the computer, and hit F8 before the Windows Startup screen appears. Select Safe Mode.
  3. Login if asked to, if not select Yes to continue.
  4. Click on the Start menu, select Run, type msconfig and press Ok, or type msconfig into the Start menu search box and press Enter.
  5. Under the General tab, select Diagnostic Startup. Press Apply.
  6. Under the Services tab, check the Hide All Microsoft Services box, and uncheck any services you don't recognize in the window.
  7. Under the Startup tab, select Disable All. Press Apply and Ok.
  8. Don't restart the computer yet.
  9. The System Restore Utility backs up selected files automatically to the Restore folder. Quite often are infected files stored there as backup files, and many Virus Scanners are unable to delete these files. If you suspect your computer may be infected, it is recommended that you disable the System Restore Utility to remove the infected files from the Restore folder.Select your OS for directions on how to disable the System Restore Utility - XP, Vista, 7
  10. While in Safe Mode, insert your USB thumbdrive and open it in My Computer.
  11. Open Combofix.exe, select Ok when it asks. Let Combofix scan and remove any infections it finds. It should restart the computer when it is done. When it restarts, boot up into Windows normally.
  12. Login if asked to, open your thumbdrive in My Computer again, and run Combofix.exe once more.
  13. Open up SmitFraudFix.exe from your thumbdrive. Press any key to continue when asked. Type 2, and press enter. When the scan is complete, restart your computer.
  14. If you had a fake Anti-Virus Scanner infection, open up Remove Fake Antivirus.exe from your thumbdrive. Press Start, and press Yes. When the scan and removal is Complete, restart the computer again.
  15. Install Microsoft Security Essentials, or your choice of Anti-Virus Software when the computer returns back to the desktop.
  16. Restart if asked to, and when the computer restarts, run a Full Scan in Microsoft Security Essentials.

on Feb 25, 2011 | Computers & Internet

1 Answer

I can't logon my toshiba portege m400 - s5032x a error message shows up saying Isass.exe application error the application failed to initialize properly (0xc0000005). Click on ok to terminate the...


Your system is infected by Sasser worm.The Sasser worm infects machines via network connections. It can attack entire networks of computers or one single computer connected to the Internet. The worm exploits a known windows vulnerability that is easily patched, however few systems seem to have this patch installed. It attacks Windows 2000 and Windows XP machines along with Windows NT and Windows Server 2003.


The patch from Microsoft known as the MS04-011 Security Update fixes the following vulnerabilities:
LSASS Vulnerability 
LDAP Vulnerability 
PCT Vulnerability 
Winlogon Vulnerability 
Metafile Vulnerability 
Help and Support Center Vulnerability 
Utility Manager Vulnerability 
Windows Management Vulnerability 
Local Descriptor Table Vulnerability 
H.323 Vulnerability 
Virtual DOS Machine Vulnerability 
Negotiate SSP Vulnerability 
SSL Vulnerability 
ASN.1 “Double-Free” Vulnerability 

Download the Windows patches for this vulnerability.Here is the link below:

http://www.microsoft.com/technet/security/bulletin/ms04-011.mspx



How Can I Remove the Sasser worm?

Follow these steps in removing the Sasser worm.

1) Disconnect your computer from the local area network or Internet

2) Terminate the running program
Open the Windows Task Manager by either pressing CTRL+ALT+DEL, selecting the Processes tab or selecting Task Manager and then the process tab on WinNT/2000/XP machines.
Locate one of the following programs (depending on variation), click on it and End Task or End Process

avserve.exe
avserve2.exe
skynetave.exe
any process running with the "_up.exe" suffix
Close Task Manager

3) Activate the Windows XP Firewall (if running Windows XP) or another firewall to prevent the worm from shutting your system down while downloading the patches. To activate the Windows XP firewall, follow these steps.
Click on Start, Control Panel
Double-click on Networking and Internet Connections, then click on Network Connnections
Right-click on the connection you use to access the Internet and choose Properties
Click on the Advanced Tab and check the box
"Protect my computer and network by limiting or preventing access to this computer from the Internet"
Click OK and close out of the Network and Control Panel

4) Remove the Registry entries
Click on Start, Run, Regedit
In the left panel go to 

HKEY_LOCAL_MACHINE>Software>Microsoft>Windows>Current Version>Run
In the right panel, right-click and delete the following entry

"avserve.exe"="%Windir%\avserve.exe"
"avserve2.exe"="%Windir%\avserve2.exe"
"skynetave.exe"= "%Windows%\skynetave.exe"
Close the Registry Editor

5) Delete the infected files (for Windows ME and XP remember to turn off System Restore before searching for and deleting these files to remove infected backed up files as well)
Click Start, point to Find or Search, and then click Files or Folders.
Make sure that "Look in" is set to (C:\WINDOWS).
In the "Named" or "Search for..." box, type, or copy and paste, the file names:

avserve.exe
avserve2.exe
skynetave.exe
C:\win2.log
Click Find Now or Search Now.
Delete the displayed files.
Empty the Recycle bin

6) Reboot the computer and update your antivirus software, and run a thorough virus scan using your favorite antivirus program.

For Automatic Removal of Sasser, download the Symantec removal tool, you'll still need to download the patches above and install them, however this removal tool will stop the Sasser worm from running, remove the items in the registry, and delete the infected files.

Dec 27, 2009 | Toshiba Portege M400-S5032X Tablet PC

1 Answer

Ytbb.exe is infected with worm Lsas.Blaster.Keyloger can't get any of my desktop icons. It's like my PC is frozen on this blue screen.


You need to get an antivirus program on a CD, boot your computer with the AV in the CD-Rom, and then do a scan. Clean the infection, boot the computer, and run the AV again

Oct 06, 2009 | Microsoft Windows XP Home Edition

1 Answer

Blue screen appears on start up and has no icons on screen cannot do anything does anyone know what this is


How many days you working in you laptop befor coming the blue screen? -- many days, 2 days. or 3 days, then comes blue screen?..

if the blue screen come few days working.. 1) check the programs anti virus.. maybe infected of virus or programs adware.. if yo always connected to the internet posseble happen this case.. or maybe you insert somthing in your system.. like usb flash, mmc. or any device.. be carefall sometime the computer making blue screen if some system error. even you didn't see error before... 2. try make restore system if can.. just go to Start, program., accessories, system tools then, system restor..

May 31, 2009 | Asus Eee Pc 701Sd Notebook

2 Answers

I have a dell latitude d350 it is a great computer but somehow it got spyware and tuns of virusus on it


disable system restore and delete the restore points and then update your anti virus and anti spyware defintions and run a virus and spyware scan in safemode.
How to disable system restore points and delete them
How to get into safe mode
Also what anti virus and anti spyware products are you using - if anything symantec then get rid of that and use avg free or avast ( register it for free and then its free for home use )
Also for anti spyware use spybot search and destroy as well as a squared
If you need specific links to those post back. If you need further info / help post back
Also if this resolves your issue please rate it as a fix.

Apr 18, 2009 | Dell Latitude D530 Notebook

2 Answers

System restore disable


Open your system properties. Check to make sure the system restore feature is enabled. I had to do this on my old computer as you have to tell the restore feature how much hdd space to dedicate to restore functions. Hope this helps & please remember to rate my answer. Thanks.

Dec 30, 2008 | Microsoft Windows XP Professional With...

2 Answers

How do i get rid of a W32.SillyFDC virus


The following instructions pertain to all current and recent Symantec antivirus products, including the Symantec AntiVirus and Norton AntiVirus product lines.
  1. Disable System Restore (Windows Me/XP).
  2. Update the virus definitions.
  3. Run a full system scan.
  4. Delete any values added to the registry.

For specific details on each of these steps, read the following instructions.

1. To disable System Restore (Windows Me/XP)
If you are running Windows Me or Windows XP, we recommend that you temporarily turn off System Restore. Windows Me/XP uses this feature, which is enabled by default, to restore the files on your computer in case they become damaged. If a virus, worm, or Trojan infects a computer, System Restore may back up the virus, worm, or Trojan on the computer.

Windows prevents outside programs, including antivirus programs, from modifying System Restore. Therefore, antivirus programs or tools cannot remove threats in the System Restore folder. As a result, System Restore has the potential of restoring an infected file on your computer, even after you have cleaned the infected files from all the other locations.

Also, a virus scan may detect a threat in the System Restore folder even though you have removed the threat.

For instructions on how to turn off System Restore, read your Windows documentation, or one of the following articles:

Note: When you are completely finished with the removal procedure and are satisfied that the threat has been removed, reenable System Restore by following the instructions in the aforementioned documents.

For additional information, and an alternative to disabling Windows Me System Restore, see the Microsoft Knowledge Base article: Antivirus Tools Cannot Clean Infected Files in the _Restore Folder (Article ID: Q263455).

2. To update the virus definitions
Symantec Security Response fully tests all the virus definitions for quality assurance before they are posted to our servers. There are two ways to obtain the most recent virus definitions:
  • Running LiveUpdate, which is the easiest way to obtain virus definitions.

    If you use Norton AntiVirus 2006, Symantec AntiVirus Corporate Edition 10.0, or newer products, LiveUpdate definitions are updated daily. These products include newer technology.

    If you use Norton AntiVirus 2005, Symantec AntiVirus Corporate Edition 9.0, or earlier products, LiveUpdate definitions are updated weekly. The exception is major outbreaks, when definitions are updated more often.


  • Downloading the definitions using the Intelligent Updater: The Intelligent Updater virus definitions are posted daily. You should download the definitions from the Symantec Security Response Web site and manually install them.

The latest Intelligent Updater virus definitions can be obtained here: Intelligent Updater virus definitions. For detailed instructions read the document: How to update virus definition files using the Intelligent Updater.

3. To run a full system scan
  1. Start your Symantec antivirus program and make sure that it is configured to scan all the files.

    For Norton AntiVirus consumer products: Read the document: How to configure Norton AntiVirus to scan all files.

    For Symantec AntiVirus Enterprise products: Read the document: How to verify that a Symantec Corporate antivirus product is set to scan all files.


  2. Run a full system scan.
  3. If any files are detected, follow the instructions displayed by your antivirus program.
  4. Delete the autorun.inf file from writeable removable devices, if necessary.
Important: If you are unable to start your Symantec antivirus product or the product reports that it cannot delete a detected file, you may need to stop the risk from running in order to remove it. To do this, run the scan in Safe mode. For instructions, read the document, How to start the computer in Safe Mode. Once you have restarted in Safe mode, run the scan again.


After the files are deleted, restart the computer in Normal mode and proceed with the next section.

Warning messages may be displayed when the computer is restarted, since the threat may not be fully removed at this point. You can ignore these messages and click OK. These messages will not appear when the computer is restarted after the removal instructions have been fully completed. The messages displayed may be similar to the following:

Title: [FILE PATH]
Message body: Windows cannot find [FILE NAME]. Make sure you typed the name correctly, and then try again. To search for a file, click the Start button, and then click Search.

4. To delete the value from the registry
Important: Symantec strongly recommends that you back up the registry before making any changes to it. Incorrect changes to the registry can result in permanent data loss or corrupted files. Modify the specified subkeys only. For instructions refer to the document: How to make a backup of the Windows registry.
  1. Click Start > Run.
  2. Type regedit
  3. Click OK.

    Note: If the registry editor fails to open the threat may have modified the registry to prevent access to the registry editor. Security Response has developed a tool to resolve this problem. Download and run this tool, and then continue with the removal.

  4. Navigate to the following registry subkeys:

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
    HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows\"load"

  5. In the right pane, delete any values associated with the worm.


  6. Exit the Registry Editor.

Dec 18, 2008 | Microsoft Computers & Internet

1 Answer

Restting a desktop due to virus or worm


get rid of Macafee, it wont help

restore to the earliest point you can, will minimize the spread of the virus then

use an online scanner like http://www.pandasoftware.com/ActiveScan/
and install
AVG free http://free.grisoft.com
Avast free http://www.avast.com or
FProt
or another av system that works,
Macafee and Norton are definitely counterindicated

system restore should be reset to the maximum disk space allowable, the tweaks espoused by many, of reducing disk space for system restore causes problems like this.
resetting the restore size will not magically replace missing system restore points, they are gone, but will give you more days worth of repair time in future, it will happen again.

my 2c worth

Jul 03, 2008 | Gateway 310S (2900621) PC Desktop

2 Answers

Restting a desktop due to virus or worm


You will have to try to run a removal program on your system before trying to restore it since the bug is probably saved and will reinstall over and over again.
Worst case, you may have to buy an antivirus package or risk losing any or all of your own work.
You absolutely need to install the 'Restricted Sites' list (available at several sites on line) to avoid ending up at dangerous sites such as the one that installed your current problem.
Windows Defender is free (from MS website) and along with an antivirus program will afford you further protection.

Running 'naked' is not an option.

Jun 30, 2008 | E-Machines eMachines Desktop PC

Not finding what you are looking for?
Computers & Internet Logo

Related Topics:

336 people viewed this question

Ask a Question

Usually answered in minutes!

Top Dell Computers & Internet Experts

Les Dickinson
Les Dickinson

Level 3 Expert

18402 Answers

Doctor PC
Doctor PC

Level 3 Expert

7733 Answers

mukhtar21 shaikh
mukhtar21 shaikh

Level 3 Expert

2017 Answers

Are you a Dell Computer and Internet Expert? Answer questions, earn points and help others

Answer questions

Manuals & User Guides

Loading...