Virus or Malware or What?

Windows XP Computer all of a sudden cannot launch anything.

Any icon or even if I run it out of Windows directory gives me a popup Screen

What Program do I wish to use to launch this program.

No Matter what I do this is all I get.  Some kind of virus attacked and user

deleted most but some remains.

I pulled hard drive out and ran combofix and Trend Micro with drive as slave but no Virus Found????

What could it be?

Cjoego
Joseph SalazarVice President - Senior IT ConsultantAsked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

sweetfa2Commented:
Sounds like your file associations have been corrupted.

http://www.dougknox.com/xp/file_assoc.htm

0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Sudeep SharmaTechnical DesignerCommented:
>>>pulled hard drive out and ran combofix and Trend Micro with drive as slave but no Virus Found????

This is not the good approach these days. You would need to run those tool on the same hard drive by making it primary and booting it in Normal Mode.

Please run the scan again, post the logs and let us know.

Sudeep
0
younghvCommented:
cjoego,

What does that 'pop-up screen' say? If you could post a screen capture, it would help us pin-point the malware variant you have.

In many instances the rogue processes that are infecting your computer are not running unless the system is booted into Normal Mode. For a full discussion of techniques you should or should not be using, please review this EE Article:
Malware Fighting – Best Practices

Based on your description, it sounds as though the malware may have modified some registry entries to cause the malware to run regardless of the program you are trying to start.

This EE Article details the steps and programs that will help you address that:
2012-Malware-Variants]
0
Big Business Goals? Which KPIs Will Help You

The most successful MSPs rely on metrics – known as key performance indicators (KPIs) – for making informed decisions that help their businesses thrive, rather than just survive. This eBook provides an overview of the most important KPIs used by top MSPs.

apollocoCommented:
Its malware for sure and the best fix I have found is Hitman Pro try it at http://www.surfright.nl/en run a free scan and there you go.

Roger

Apollo Computers.ca
0
younghvCommented:
Comment copied from earlier post by 'rpggamergirl':
I would not use HitmanPro, too risky, it's not that good for removing infections specially when system files are patched.
Since last year there has been many reported unbootable PCs after scanning with HitmanPro.

These below are just in one forum.
 
Posted 24 November 2011  
Ran Hitman Pro 3.5 now Windows won't boot
http://www.geekstogo.com/forum/topic/310549-ran-hitman-pro-35-now-windows-wont-boot/


Posted 21 November 2011
Hitman Pro 3.5....Can't Boot. Please HELP!
http://www.geekstogo.com/forum/topic/310433-hitman-pro-35cant-boot-please-help/


Posted 14 November 2011  
Hitman Pro killed my OS...
http://www.geekstogo.com/forum/topic/310084-hitman-pro-killed-my-os/


Posted 08 November 2011
Used Hitman pro 3.5 to remove google redirect virus and now computer won't boot.
http://www.geekstogo.com/forum/topic/309834-used-hitman-pro-35-to-remove-google-redirect-virus-and-now-computer-wont-start/ 
0
apollocoCommented:
Your right about hitman however same thing can be said with spybot and malware bytes or any antivirus that alters key files.. I guess the better solution is the person who posted should have had malware protection and a virus scan program. Its up to them but with this issue it does seem to work.

Roger

0
Joseph SalazarVice President - Senior IT ConsultantAuthor Commented:
Ran the attached file from previous post and it

Saved the day, I was able to run combofix and clean computer

Thanks for putting me on the right Track "sweetfa2"

Cjoego
exefix.reg
0
Joseph SalazarVice President - Senior IT ConsultantAuthor Commented:
Put me on the right track to find Correct
Reg Merge file from previous post.

Worked Fantastic !!!
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Anti-Virus Apps

From novice to tech pro — start learning today.