kc_Lily
OSNN Newbie
- Joined
- 6 Dec 2005
- Messages
- 8
Okay peoplz, I realize you have much better things to do than help a silly idiotic girl such as myself. But i am going to make the attempt before i explode my mother board so i can at least sday that i asked...
Please excuse my spelling, i have NO TIME to spell check my finger-pecking.
I am delerious, up all night, need to use my computer-ONLINE to complete finals.
and someone....recently downloaded **** to my pc that has exploded.
My background:
I used to know a bit more about running command prompts as my ex-boyfriend is a dba and helped me to remove bastard AOL files from the registry..
since then..
many years later, with an unprotected computer running crappy spyware and anti-virus..
i being the loser i am allowed my machine to become infected, and i DO NOT want to download anymore crap to scan the registry and rid files blah blah..
i want to rip the bastard out myself, but i am not quite sure what i am looking for.
I have been able to remove some aol **** AGAIN.
but am not sure where the latest ass is hiding..i need help with manual removal..
Pertinent info(please excuse my shorthand as i know it is not proper but i hope you get the gist.
files that need to be removed are located:
C:\WINDOWS\system32..
search.html (can remove but reappears upon reboot)
z15.exe
z13.exe
z14.exe
z11.exe
cmd32.exe (yes! i know i am retarded for getting this!)
wpa.dbl
obviously i cannot just click and delte, as the sysytem will not allow me..."access denied"program currently in use blah blah...because **** has encoded itself into my registry..
so, i have gone to
run-command prompt line "cmd"
Now in dos mode:
i type "regedit"
i have located all paths for
HKCU
HKLM
\software\microsoft\windows\current version\ run
and deleted some "cmd" files and cleaned obvious software **** ..but i cannot find these files..
I did notice
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\DevicePath:
REG_EXPAND_SZ\\%systemroot%\inf
is this anything?
i need help? please take pity on me before i explode my machine because i am willing to do it to rid it of this crap. I will borrow a friend's laptop or sit in a lab if i have to...
Please excuse my spelling, i have NO TIME to spell check my finger-pecking.
I am delerious, up all night, need to use my computer-ONLINE to complete finals.
and someone....recently downloaded **** to my pc that has exploded.
My background:
I used to know a bit more about running command prompts as my ex-boyfriend is a dba and helped me to remove bastard AOL files from the registry..
since then..
many years later, with an unprotected computer running crappy spyware and anti-virus..
i being the loser i am allowed my machine to become infected, and i DO NOT want to download anymore crap to scan the registry and rid files blah blah..
i want to rip the bastard out myself, but i am not quite sure what i am looking for.
I have been able to remove some aol **** AGAIN.
but am not sure where the latest ass is hiding..i need help with manual removal..
Pertinent info(please excuse my shorthand as i know it is not proper but i hope you get the gist.
files that need to be removed are located:
C:\WINDOWS\system32..
search.html (can remove but reappears upon reboot)
z15.exe
z13.exe
z14.exe
z11.exe
cmd32.exe (yes! i know i am retarded for getting this!)
wpa.dbl
obviously i cannot just click and delte, as the sysytem will not allow me..."access denied"program currently in use blah blah...because **** has encoded itself into my registry..
so, i have gone to
run-command prompt line "cmd"
Now in dos mode:
i type "regedit"
i have located all paths for
HKCU
HKLM
\software\microsoft\windows\current version\ run
and deleted some "cmd" files and cleaned obvious software **** ..but i cannot find these files..
I did notice
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\DevicePath:
REG_EXPAND_SZ\\%systemroot%\inf
is this anything?
i need help? please take pity on me before i explode my machine because i am willing to do it to rid it of this crap. I will borrow a friend's laptop or sit in a lab if i have to...