Author Topic: Avast found multiple viruses, Windows will no longer start  (Read 5343 times)

0 Members and 1 Guest are viewing this topic.

jmacneil

  • Guest
Avast found multiple viruses, Windows will no longer start
« on: December 29, 2011, 11:38:52 PM »
Since I can't access my files (Only goes to black screen after "Starting Windows" and I get a bluescreen with an error message when I try Safe Mode) I can't access the specific names of the viruses/malware that avast! found. I googled them, and I'm pretty sure these are all of them:

  • Win32:Sirefef-HO in "C:\Windows\assembly\GAC_32\Desktop.ini"
  • Win32:Sirefef-FQ[Drp]
  • win32:malware-gen

(There may have been another one, keep in mind this is all from memory)

After using avast! to try and delete these, one or two of the 9 found said the file could not be found or something. I don't know. I scanned again and no threats were found, but after I restarted my computer, that's when windows wouldn't start and these issues began happening. I've tried using a system restore point from Dec 25, but system restore is unsuccessful every time.

Help please?
« Last Edit: December 29, 2011, 11:40:27 PM by jmacneil »

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast found multiple viruses, Windows will no longer start
« Reply #1 on: December 29, 2011, 11:49:32 PM »
Was one of the files consrv.dll ?

Do you have access to a cd burner and USB stick

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #2 on: December 29, 2011, 11:50:20 PM »
oh right, yes consrv.dll was one of them, and yes i have access to both.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast found multiple viruses, Windows will no longer start
« Reply #3 on: December 30, 2011, 12:06:57 AM »
OK next we will work outside of windows then Please print these instruction out so that you know what you are doing

  • Download the attached scan.txt and save to a USB drive
  • Download OTLPENet.exe to your desktop
  • Ensure that you have a blank CD in the drive
  • Double click OTLPENet.exe and this will then open imgburn  to burn the file to CD
  • Reboot your system using the boot CD you just created.Note : If you do not know how to set your computer to boot from CD follow the steps here
  • As the CD needs to detect your hardware and load the operating system, I would recommend a nice cup of tea whilst it loads  :)
  • Your system should now display a Reatogo desktop.Note : as you are running from CD it is not exactly speedy
  • Double-click on the OTLPE icon.
  • Select the Windows folder of the infected drive if it asks for a location
  • When asked "Do you wish to load the remote registry", select Yes
  • When asked "Do you wish to load remote user profile(s) for scanning", select Yes
  • Ensure the box "Automatically Load All Remaining Users" is checked and press OK
  • OTL should now start
  • Drag and drop this attached scan.txt into the Custom scans and fixes box, or double click the scan box
  • Press Run Scan to start the scan.
  • When finished, the file will be saved  in drive C:\OTL.txt
  • Copy this file to your USB drive if you do not have internet connection on this system
  • Right click the file and select send to : select the USB drive. 
  • Confirm that it has copied to the USB drive by selecting it
  • You can backup any files that you wish from this OS
  • Please post the contents of the C:\OTL.txt file in your reply.

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #4 on: December 30, 2011, 12:47:08 AM »
after reatogo finishes loading and I see the windows XP logo, i get a bluescreen error :S

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: Avast found multiple viruses, Windows will no longer start
« Reply #5 on: December 30, 2011, 01:10:57 AM »
Maybe overinstall Windows. Maybe run sfc /scannow.
The best things in life are free.

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #6 on: December 30, 2011, 01:32:01 AM »
Unfortunately I don't have my Windows 7 disc at home, if that's what you mean, and I don't know what sfc /scannow is

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #7 on: December 30, 2011, 01:44:50 AM »
could I be getting the bluescreen error because I'm using a CD-RW?

DonZ63

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #8 on: December 30, 2011, 02:05:45 AM »
Quote
after reatogo finishes loading and I see the windows XP logo, i get a bluescreen error :S

Can you boot into WIN XP safe mode?

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #9 on: December 30, 2011, 02:09:46 AM »
When I boot from the CD, I don't have any option to boot into safe mode.

DonZ63

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #10 on: December 30, 2011, 02:15:50 AM »
Don't boot from the WIN XP installation CD.

As WIN XP starts up, tap the F8 key. A black sceen will eventually appear with boot options on it. Select Safe mode without networking. XP will then proceed to boot into Safe mode.

When your desktop appears, see if you can do a full Avast virus scan.

jmacneil

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #11 on: December 30, 2011, 02:18:15 AM »
... as my first post stated, I can't access any of my files from Windows 7 (which i forgot to mention is the OS I'm running on) or in safe mode. essexboy told me to burn Reatogo onto a cd and boot from that cd, but that's where i get the rror code (I guess it uses some Windows XP build or something, I don't know).

But yeah I'm not using a windows XP disc.

DonZ63

  • Guest
Re: Avast found multiple viruses, Windows will no longer start
« Reply #12 on: December 30, 2011, 02:23:56 AM »
Quote
essexboy told me to burn Reatogo onto a cd and boot from that cd, but that's where i get the rror code

OK. I can't help you with the Reatogo CD boot issue since I am not familiar with it. You will have to wait until Essexboy replies.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast found multiple viruses, Windows will no longer start
« Reply #13 on: December 30, 2011, 08:47:29 PM »
When it blue screend did it state why or give an error code ?