I have contracted a virus which will not allow me to open any programs whatsoever. I have tried regedit.exe but it will not allow me to open that and have also tried downloading the dougknox.com/xp/file_assoc.htm but that comes up with a message saying "Not all data was successfully written to the registry. Some keys are open by the system or other processes. Any help or input whatsoever would be greatly appreciated.
2. You should now see a window that shows all of your desktop icons, including the rkill.com program.
3. Double-click on the rkill.com in order to automatically attempt to stop any processes associated with the Rogue programs. Please be patient while the program looks for various malware programs and ends them. When it has finished, the black window will automatically close and you can continue with the next step.
If you get a message that rkill is an infection, do not be concerned. This message is just a fake warning given by the Horse when it terminates programs that may potentially remove it. If you run into these infections warnings that close Rkill, a trick is to leave the warning on the screen and then run Rkill again. By not closing the warning, this typically will allow you to bypass the malware trying to protect itself so that rkill can terminate the processes . So, please try running Rkill until malware is no longer running.
As a matter of a fact, if you get messages, it is a sign that the virus is agonizing with excrutiating pain, so you can just grin while it is suffering!:)))
Please, DO NOT REBOOT your computer or the processes will come back to haunt you!
Once on your desktop, we must still outwit the virus.
Right click on the MBAM icon and click on rename. Rename it kioskea.exe.
Install Malwarebyte and launch it. From the second tab, update it.
Pretty please, request a FULL system scan which should take more than hour. Once the scan is finish, delete all of item that were found.
It is very important that you let Malwarebyte run for as long as it takes, in some cases the creators of Malwarebyte suggest that you go do something like watch a rerun of "Gone with the Wind" or read Tolstoy's "War and Peace".
Download the following Adwcleaner created by Xplode
Yes I can do that no problem. I can also open the browser in normal mode. When I start windows it comes up with over 200 dialog boxes saying windows cannot open this file, but I cancel them and my computer runs fine...
Oh, it's more serious than I thought then! Thank you for your help, after running the rkill link, I ended with a notepad with the following information, just wanted to check I've done this correct before moving onto step two:
Ok after running the Adwcleaner by Xplode, it automatically restarted my computer, to which it came back with a dialog box reading :The Recycle Bin on c:\ is corrupted. Do you want to empty the recycle bin for this drive? Yes or no. I have yet to choose an answer. It also opened up the notepad with the following log:
# AdwCleaner v3.012 - Report created 14/11/2013 at 13:47:14
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : TOSHIBA - TOSHIBA-TOSH
# Running from : C:\Users\TOSHIBA\Downloads\adwcleaner.exe
# Option : Clean