Restore Windows 7 But Some Malware Is Blocking Software Launch
Sep 24, 2011
My sister's computer is an HP Pavilion dv5t-2200 notebook PC running its native OS, Windows 7 Home Premium x64. In the last 24 hours, Avast found and attempted to remove some sort of malware. After the reboot, it recommended a full scan. After the scan was completed, the computer rebooted again. This is where the real problems began.With the exception of core programs and services, no other program will launch. Not Chrome, not AIM, not even Avast!. The only HP program still installed on the system, HP Support Assistant, will not start. Attempting to use Windows System Restore results in a BSOD as the computer is shutting down to begin the restore process. Upon returning to the desktop, a dialog box recommends that we run chkdsk, but of course that won't even launch.
Internet Explorer will launch, but the campus network requires a third-party client software install. Unfortunately, that's another program that will not launch.The computer has a recovery partition, but HP Recovery Manager is not installed or cannot be found, and attempts to download and install it have failed because 1) we cannot access the Internet to download it to the hard drive, and 2) it could not be installed from a flash drive containing the softpaq from HP.
The malware took most of my programs out and put it in the waste bin, I tried an undelete program, but it only goes so far and freezes. I can't use system restore. I can't even get to my control panel
My computer shut down unexpectedly and when I tried to start it back up it wants to perform a launch repair which fails for some reason. I have tried system restore and keep getting the following error: system restore failed to replace the fileD:\ProgramData\Microsoft\IdentityCRL\production\temp\wlidui_WLIDSVC\BUTTON.J I am not sure if this is some kind of virus and how to remove it. I also cannot start up in safe mode or at the command prompt. Nothing has been working.
I seem to have had a surge of spam. Many supposedly from "techdaily at (various domains)" Any others have this?Whats the specific difference between blocking the sender versus blocking the senders domain?
I am running Windows 7 and am using Verizon DSL to connect to the Internet using an Ethernet cable. I am having an issue with loading content from the Internet. Some sites, such as Google, load but then if navigate from them, nothing happens. Other sites, such as CNN never load and timeout after a couple minutes. I think the problem is with the computer and Windows 7 because if I go wireless using the same router with my iPhone, I have no problem loading these same sites. Everything worked fine a few weeks ago so something changed but I have no idea what. I did have McAfee antivirus on the computer but uninstalled it hoping that might solve the problem - it didn't. Is there some setting in Windows 7 that is blocking these sites from loading.
I have windows-7 and I went on the "JPL small body data base" site and to use one of the features I would have to download some active-x software. When I ok this to download I get a message that says that windows has blocked it because they don't know them. Is there any way to let me make the decisions instead of windows?
We are building an 2 application that connect to 127.0.0.1:30303.They are used to send data from app A to app B, acting as a local p2p connection. On windows XP, everything runs as it should. On windows 7 it doesn't work anymore.We've tried turning off the firewalls, opening ports etc but we cannot get this connection to work on Windows 7. Anyone got an idea of what changed in Windows 7 regarding tcp/udp or socket changes?
I'm currently sharing my internet connection with another computer (both run windows 7). The other computer can only access the internet if the computer holding the dial up connection has windows firewall turned off. I tried to add an exception in windows firewall for port 80 but did not have any effect.The local area connection adapter on the computer that's holding the internet connection has the following settings: [code] the other computer has obtain IP and DNS address automatically Using ADSL modem is a Sagem F@st 800 to connect to the internet no router used, just a simple cat-45 cable (i think that's the name of the cable!)
We are building an 2 application that connect to 127.0.0.1:30303. They are used to send data from app A to app B, acting as a local p2p connection.On windows XP, everything runs as it should. On windows 7 it doesn't work anymore. We've tried turning off the firewalls, opening ports etc but we cannot get this connection to work on Windows 7. what changed in Windows 7 regarding tcp/udp or socket changes?
Windows Security is blocking absolutely everything. I mean everything from downloaded and installed software to Windows core software and programs. The only thing it will seem to run is explorer.exe.Here is a screenshot of trying to open User Account Control from Control Panel. Sorry for the quality but I had to take picture on phone as can't take screenshot and upload as nothing will run.The original, slightly less, strange thing is the lack of running processes in Task Manager. Usually even on a clean new laptop then are half a dozen or more, from Windows own core stuff to manufacturer install rubbish. On this thing there is only the follow core services.
After several days with a very patient and through BleepingComputer Volunteer, I believe my computer is malware-free. However, my computer itself still seems to be having issues. None of these issues occurred prior to the infection. My logs appear clean, but these issues remain:Mouse cursor "stutters" at times.Windows flickerStartup and shutdown take excessively long at times, others it is very fastShortcut icons (but not regular icons) have some sort of "blank" icon in front of them.Here is a link to the malware removal threadMalware Removal ThreadAttached as well is a picture of the icon situation.
After becoming unable to download identified updates in Windows Update, and also being unable to search for new updates, I did a detailed scan with Microsoft Security Essentials which identified and removed some malware (Exploit:Java/CVE-2010-0840.IZ).
Since Windows Update still wouldn't work I restored my settings from last Friday with no improvement. Using Fix problems with Windows Update gets stuck on Fixing problem.
I then tried to do a reinstall as an update, but the installer was unable to find any updates (or rather it was forever* trying to locate any).
On a tip from a friend I looked in the hosts file but it was unaltered. *Forever is a relative term but in this case it's 90+ minutes.
so i recently downloaded a series of windows updates. i guess it's been a while. anyway. ever since i've downloaded and installed the updates, not all content is loading on webpages. also, everytime i try to load aim, it starts to open but randomly closes.for instance on twitter, no matter what link i go to or what i click on, it just goes to the main page. in addition, when i click on a link that should prompt a menu, it won't work. oh and Internet videos aren't loading.
I have a fresh install of Windows 7 Home Premium 64bit on a new hard drive.
I have only installed 5 programs. CorelDraw, Adobe Creative Suite CS3, Jing (screen capture utility) Webroot Antivirus -Anti-Spyware for Windows 7 and WIDCOMM Bluetooth software for Win 7.
I installed Corel and Adobe...rebooted ...everything was fine.
I installed Webroot and WIDCOMM...rebooted...absolutely no internet connection.
I uninstall WIDCOMM then reboot. Still no internet.
I uninstall Webroot then reboot. Still no internet.
I reboot and then turn off Windows Firewall...reboot again. I have internet.
I turn Windows Firewall back on and reboot. No internet.
I turn Windows Firewall back off, reboot. I have internet.
So, I do a System Restore to the point before I installed the Webroot and WIDCOMM software and I have internet and it works fine.
Why would either of these software effect windows firewall in such a way as to disable internet access?
Is there some setting that I need to change / allow or something inside of Windows Firewall? I find it odd that with the firewall disabled I am able to get on the internet, but with it enabled, I can't at all.
Following the removal of some malware [URL], I have not been able to enable my Server Service in Windows 7. I was advised to post this here. This means I cannot share files, use bonjour services, vnc etc. I have encountered Error 1068: The dependency or group failed when I enabled the server service in services.msc.
I have already tried the following (and none worked): - Enabling in safe mode - Enabling all startup services in msconfig - Modifying the registries in folders: Ndisuio, EapHost, and Dhcp (with instructions specified on another site) - Checking the firewall.
I use Firefox 10 on Windows 7 Professional (fully updated). The machine has two drives, each booting to Win 7 and Win XP. This problem is on the Windows 7 side.
Yesterday, I used Google to search "Indian restaurant Fort Worth reviews" In the results page, I went one by one to each link. When I hit one of the links, which I am sure is the domain of a restaurant, I got the famous "You have viruses, click to scan" popup. In a few seconds Security Essentials popped up its warning saying that it found this bad file: C:programdataca0e4fsmca0_8050.exe
I copied its name and saved it to a text file on the Desktop. Then I tried Alt-F7 to close the window, next the X, which gave another popup. I then let Security Essentials delete what it found. I then closed the browser and rebooted the computer.
Both (PS/2) keyboard and mouse were disabled at the login page. I tried a USB Microsoft Keyboard. That too did not work. F8 -> Safe Mode did not help.
I started the XP side of the computer. Ran Security Essentials - 18 hours. In the meanwhile I searched and located the bad file and two other files related to it and deleted them. Security Essentials right then said it found a bad one. (Was it because I touched it?). At the end of the scan, I allowed Security Essentials to delete the two things it said that it found.
Rebooted to Win 7. Still no keyboard, no mouse.
I called Microsoft (you know, long distance to the other side of the globe). Several calls. And I consistently got Kindergarten level support. They tried to blame the manufacturer of the keyboard, then tried to scare me away with a $99 charge. They did a System Restore on the Windows XP side (!), then finally, one tech connected to it over the Internet and ran Malware Bytes on it. We also tried F8 -> Last good boot. Then he wanted the Windows 7 CD. When I read its name, he said he was looking for the Windows 7 re-installation CD! That was the end of M$ support.
how to get the thing to see the mouse and keyboard? I can see the Win 7 drive from Win XP side (as its D: drive).
I used the standard trick of assigning permissions to the "Everyone" group to allow file sharing among all the Windows 7 and winXP computers on my home network. All was working fine until my son took his computer to school and they made him load their security software. When he came home for the summer, his computer could still see the network and file shares, but none of the other computers could see his shared files. This persisted even after I uninstalled the anti-virus software they made him install. I can fix the problem by disabling the windows firewall on his computer. That is probably safe here because of the firewall in my router, but I'm worried that might not be safe when he connects to other networks. Plus I can leave the windows firewall enabled on all my other computers, so I suspect there should be a better way around this problem. If I click "Diagnose" when my computer can't access my son's computer I get a message that says that windows can't find IPC$. So on my son's computer I opened a dos window and typed "net share ipc$" (a command I found from a google search about this problem). The response to this command was "System error 5 has occured; Access Denied".
I am using window 7 pro. with MS office 10 and other non Microsoft programs. On Monday while I was updating my iPhone OS using ITunes, ITunes gave me an error message stating that it lost connection with my iPhone. I rebooted the Laptop and too many problems started to pop up since then. For starters, my iPhone was wiped out, where the only way to restore it was by going to the Apple store. Now, ITunes gives me Error 50?! The Apple Store tech avers that ITunes has nothing to do with the problem.
Since then, the majority of my programs are not working those that run require my permission to execute including Windows components such as control panel, security, uninstall, program install, etc. Excel and MS Word are working, but Outlook, Outlook safe mode, OneNote, ITunes, Skype, Adobe, windows troubleshoot, McAfee, Chrome, etc. are not working. They all missing important files or give me an error message. In contrast, I created a new user account without Administrative right. I can run all programs without any problems using this account, except for having to reconfigure everything all over again and having to provide an administrator's permission virtually after every click. I ran chkdsk, desk defragment and McAfee scans from the new user's account and all ran flawlessly and reported that my system is clean with no virus or bad sectors. I have 180 GB of free space. Note: I broke the screen on my lap top, and I used the HD in an exterior HD shell to retrieve some files while I was waiting on my LCD replacement. I had no issues before hand. The ITunes problem started after I reinstalled the HD in the Laptop.
I buy a data bundle to access the net on my computer from a mobile phone operator.I pay per meg and I get so frustrated when some impertinent background program jumps on the network to download megs of data every time I connect using up my data minutes without my consent!Iv tried turning off automatic Windows and antivirus updates, but still I dont know what is abusing my network connection every time I go online!Is there any way I can block ALL network accesses except from the browser, for instant, so I can enjoy browsing without worrying about what may be raking up my data bill in the background?
I installed Windows 7 RTM 7600 on a new hard disk (previously not partitioned), so I have had the 'system reserved' partition created at Windows 7 initial installation time. I have several of problems with Windows 7, so I would like to reinstall it, but by keeping programs and files. The problem is that the Install file setup.exe looks into 'system reserved' partition rather than checking the C:/ hard drive, and as such does not want to proceed with the reinstall because of a lack of disk space (100 Mo only on 'system reserved' partition)...
- How could I do so making the install looking at C:/ rather than at that partition? - And during the reinstall could I do so that this partition is not created anymore?
so somehow I caught the malware program known as Windows 7 recovery. As per its standard operations it made my computer seem like it was having a bunch of issues, hid all the files on my hard drive, removed my background, etc. I followed a removal guide I found here on bleeping computer and it did rid of me of that annoying malware. A lingering problem I am still experiencing is that all my start menu items are missing. For example there is a folder for Microsoft office, but when you open it it shows as empty, but if I open a Microsoft office file like say a word file the program opens as normal. I have run the unhide.exe file a couple of times, and shutdown my firewall and maleware protection, but to no avail the start menu items still seem to remain hidden.
I am having trouble in installing the printer (Xerox Phaser 3117) driver on my Windows 7 x64 version. It is giving an error "Windows policy is blocking NT 4.0 drivers".
I have never used Windows NT before.
I have tried changing the disallow kernel mode drivers to install to disable but still has not worked for me. I badly need to run my printer.
System Restore will not create a restore point or restore to a previous date & time.The error message was: A restore point could not be created: An error was detected in the Volume Shadow Copy Server (VSS).The problem occurred while trying to contact VSS writers. Verify that the Event System Sevice and the VSS service are running & check for associated errors in the event logs (0x80042318).Volume Shadow Copy is started & running (done in system events).Event System Sevice and the VSS service are started and running. But no cigar, SR still broken.
I searched but couldn't find anyone else with this problem. I'm running 7 Home Premium 64bit. I've tried everything and had a Pro try to solve this also with zero results. Somehow, Media Center has attached itself to every exe. program/file and I'm not able to open Firefox, Chrome, System Restore, regedit, and on and on. IE 8 does work. I managed to run a free Norton scan which showed NO virus. Remote access from Cloudeight to repair was thwarted, so no help there. I cannot run Malware Bytes or any other cleaner, so really need some expert help. This is being typed on my Gateway XP Pro.BTW, I was using MSE.
I am new to Windows 7 and have just come across the Vrtualization featuers. They seem interesting but I am not 100% sure of how they work.There are certain apps out there in my industry that people suspect might not be "clean" but they are very good at what they do. So I want to be protected from them. I used to use, Sandboxie with my Win XP setup.If I install or run a virus/maleware infected application, can I do so in a Virtualized way so that it doesn't infect the rest of my system?
First off Im running Avast and comodo and full malware bytes. But what Im wondering is if there is a way to check deeper for malware or issues? Reason Im asking is I think I may have downloaded an iffy program. My mouse seems to be studdering a bit ( and it didnt do it until now ) Im running a new build of only 1-2 mths old. So is there anything to look for in terms of processes etc? Or would Comodo, Avast and or Malware bytes have said something to me? Comodo kept popping up when I was installing it, but it does that anyway with any program.