Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Problems after virus removal


  • This topic is locked This topic is locked

#31
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Hi Render, there's nothing there only Type, Size and date
  • 0

Advertisements


#32
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
OK. So you have Windows 7 Professional 32 bit without Service pack 1?
  • 0

#33
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
I think so. I don't know what is service pack
  • 0

#34
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
OK. Please follow the steps below:

  • Please download attached file autochk.zip to your desktop. Attached File  autochk.zip   239.95KB   89 downloads
  • Then unzip it by right click on it then select and click Extract All...
  • Click on Extract button.
  • Inside folder autochk on your desktop should be now file autochk.exe.
  • Now open Windows Explorer and navigate to C:\windows\system32\autochk.exe
  • Rename this file from autochk.exe to autochk.exe.old.
  • Now copy autochk.exe from folder autochk on your desktop to C:\windows\system32\ folder.
  • Reboot.

When back in Windows please repeat sfc scan as follow:
Go to Start > All Programs > Accessories
Right click Command Prompt and select Run as administrator
When the prompt opens type the following bolded text and press enter

sfc /scannow (Note: There is a space between sfc and /scannow)

On completion reboot

Let me know the results.
  • 0

#35
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
I got the autochk file, but when I go on it, message pops up :
The C:/Users/asta/Desktop/autochk.exe application cannot be run in Win32 mode
  • 0

#36
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Hi,

And why are you running this file? Just follow the steps above and put it in appropriate folder.
  • 0

#37
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Sorry, did everything.Results are the same ( corrupted files unable to remove...)
  • 0

#38
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
OK. I want to see fresh cbs.log. Please repeat these steps from my #26 post here.
  • 0

#39
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
http://www.2shared.c...zANiJj/CBS.html
  • 0

#40
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Hi,



Currently I have a big problems with posting further instructions from my computer.
  • 0

Advertisements


#41
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Try with this now:

  • Please download attached file Windows6.1-KB975778-x86.zip to your desktop. Attached File  Windows6.1-KB975778-x86.zip   376.94KB   86 downloads
  • Unzip it by right clicking on it and select Extract All... and then click on Extract button.
  • Then go into Windows6.1-KB975778-x86 folder and run Windows6.1-KB975778-x86.msu by double click on it.
  • Follow installation instruction to install it.

  • 0

#42
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Can't open it. Message:"Installer encountered an error:0xc80003f3"
  • 0

#43
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
Hi Render, I installed it after clicking on it multiple times.
  • 0

#44
Render

Render

    Trusted Helper

  • Malware Removal
  • 4,195 posts
Hi,

OK. Please do this now:

  • Double-click SystemLook.exe to run it.
  • Copy the content of the following codebox into the main textfield:

    :filefind
    autochk.exe
    explorer.exe
    winlogon.exe
    userinit.exe
    svchost.exe
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
Note: The log can also be found on your Desktop entitled SystemLook.txt
  • 0

#45
18928

18928

    Member

  • Topic Starter
  • Member
  • PipPip
  • 41 posts
SystemLook 04.09.10 by jpshortstuff
Log created at 14:34 on 14/06/2011 by asta
Administrator - Elevation successful

========== filefind ==========

Searching for "autochk.exe "
C:\Windows\System32\autochk.exe --a---- 668160 bytes [01:22 14/06/2011] [07:17 01/10/2009] 2632B7125E0730E019532CFCFFFFBFC0
C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.16385_none_e1ca436d2314b860\autochk.exe --a---- 668160 bytes [23:15 13/07/2009] [01:14 14/07/2009] 96EFF14A4D0B23EAEB84170D774BC3F8
C:\Windows\winsxs\x86_microsoft-windows-autochk_31bf3856ad364e35_6.1.7600.20538_none_e28cf2983c0715a1\autochk.exe --a---- 668160 bytes [01:22 14/06/2011] [07:17 01/10/2009] 2632B7125E0730E019532CFCFFFFBFC0

Searching for "explorer.exe "
C:\Windows\explorer.exe --a---- 2614784 bytes [22:53 26/04/2011] [05:33 26/02/2011] 2AF58D15EDC06EC6FDACCE1F19482BBF
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe --a---- 2613248 bytes [23:41 13/07/2009] [01:14 14/07/2009] 15BC38A7492BEFE831966ADB477CF76F
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_51e07e31dad00878\explorer.exe --a---- 2613248 bytes [02:44 26/06/2010] [02:44 26/06/2010] B95EEB0F4E5EFBF1038A35B3351CF047
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16434_none_51c00e6ddae85c4b\explorer.exe --a---- 2613248 bytes [02:44 26/06/2010] [02:44 26/06/2010] FC89FACA0473641CB625EDA9277D0885
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_51a66d6ddafc2ed1\explorer.exe --a---- 2614272 bytes [02:44 26/06/2010] [02:44 26/06/2010] 2626FC9755BE22F805D3CFA0CE3EE727
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe --a---- 2614784 bytes [22:53 26/04/2011] [05:33 26/02/2011] 2AF58D15EDC06EC6FDACCE1F19482BBF
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_526619d4f3f142e6\explorer.exe --a---- 2613248 bytes [02:44 26/06/2010] [02:44 26/06/2010] 9FF6C4C91A3711C0A3B18F87B08B518D
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20542_none_523cdab8f40fe558\explorer.exe --a---- 2613248 bytes [02:44 26/06/2010] [02:44 26/06/2010] 00B0358734CAA32C39D181FE6916B178
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_52283b2af41f3691\explorer.exe --a---- 2614272 bytes [02:44 26/06/2010] [02:44 26/06/2010] C76153C7ECA00FA852BB0C193378F917
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe --a---- 2614784 bytes [22:53 26/04/2011] [05:51 26/02/2011] 255CF508D7CFB10E0794D6AC93280BD8
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe --a---- 2616320 bytes [22:53 26/04/2011] [05:30 25/02/2011] 8B88EBBB05A0E56B7DCC708498C02B3E
C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe --a---- 2616320 bytes [22:53 26/04/2011] [05:19 26/02/2011] 0FB9C74046656D1579A64660AD67B746

Searching for "winlogon.exe "
C:\Windows\System32\winlogon.exe --a---- 285696 bytes [02:44 26/06/2010] [02:44 26/06/2010] 37CDB7E72EB66BA85A87CBE37E7F03FD
C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe --a---- 285696 bytes [23:37 13/07/2009] [01:14 14/07/2009] 8EC6A4AB12B8F3759E21F8E3A388F2CF
C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_6fc699643622d177\winlogon.exe --a---- 285696 bytes [02:44 26/06/2010] [02:44 26/06/2010] 37CDB7E72EB66BA85A87CBE37E7F03FD
C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_703394514f56f7c2\winlogon.exe --a---- 285696 bytes [02:44 26/06/2010] [02:44 26/06/2010] 3BABE6767C78FBF5FB8435FEED187F30

Searching for "userinit.exe "
C:\Windows\System32\userinit.exe --a---- 26112 bytes [23:34 13/07/2009] [01:14 14/07/2009] 6DE80F60D7DE9CE6B8C2DDFDF79EF175
C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe --a---- 26112 bytes [23:34 13/07/2009] [01:14 14/07/2009] 6DE80F60D7DE9CE6B8C2DDFDF79EF175

Searching for "svchost.exe"
C:\Windows\System32\svchost.exe --a---- 20992 bytes [23:19 13/07/2009] [01:14 14/07/2009] 54A47F6B5E09A77E61649109C6A08866
C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe --a---- 20992 bytes [23:19 13/07/2009] [01:14 14/07/2009] 54A47F6B5E09A77E61649109C6A08866

-= EOF =-
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP