spysheriff (#2) can't get START to work so can't run winsock o
Posted 24 October 2005 - 02:16 PM
Posted 25 October 2005 - 12:08 AM
We'll need to transport some files from the computer you are now using, to your infected computer.
Download smitRem.exe and save the file to your desktop.
Right click on the file and extract it to it's own folder on the desktop.
So you'll get a new folder called smitrem on your desktop.
I want you to put that folder on cd, floppy or usb-stick.
On your infected computer, boot again in safe mode and open your task manager again.
Now insert the cd, floppy or usb-stick where you saved the smitrem folder in your infected computer.
In your Task Manager, click 'applications' (first tab).
Click the New Task button.
Now browse to the drive where your floppy, usb-stick or cd is present (could be A or D or E or F.. you'll see..)
Search for that smitrem folder.
Right click on the smitrem folder and choose: Copy
Now browse again via Task Manager to My Documents or Program Files.
Right click somewhere in there, right click and choose: Paste
Now open the smitrem folder you just copied and pasted and click the file: RunThis.bat
Then click open.
In the window where it says 'Create new task', click OK.
Normally, you'll have to drag the different windows you'll see to left or to right, because normally they will open on top of each other and you wont see the command window the tool starts that is under it.
You'll see a blue window now.
Follow the prompts on screen.
Wait for the tool to complete.
When done, in Task Manager, click 'shut down' from the menu on top and click restart. Your computer will reboot now.
Reboot to normal mode and post a Hijackthis log in your next reply
Posted 25 October 2005 - 12:23 PM
First. Thanks for sticking with me. I am/was lost. At this point, having left the computer in question (spysheriff owned) on for hours i have a task bar but the hour glass is still sitting there thus can not get to the internet blah blah. I will follow your advice and down load smitrem and go through the procedures. How do I get the Hijack this log. (I really DO need help don't I)?
0 user(s) are reading this topic
0 members, 0 guests, 0 anonymous users