Home > Solved How > [SOLVED] How To Remove Load.exe-dontrunold From System.ini

[SOLVED] How To Remove Load.exe-dontrunold From System.ini

This is probably the most infectious virus/worm that I've seen yet. Reboot and see if that helps. A .VXD file is a virtual device driver. Click in the option to "Extract one file from the installation CD" and then type in the filename SHLWAPI.DLL, then click "Start". have a peek here

The source code for a large number of viruses can be found on the internet. (Source code is like design blueprints, in a human readable form, that instruct a compiler program I'll be putting these back on the network next week... (I need to take the weekend off and "reflect" also want to make sure I didn't MISS something (gasp...))Best luck to The current model of writing and distributing anti-virus is insufficient when compared to the model of writing and distributing a virus! I saw the splash screen and ScanDisk and the virus checker doing its thing, but when the initial desktop image appeared, I saw this error message: Error loading explorer.exe. https://forums.techguy.org/threads/solved-how-to-remove-load-exe-dontrunold-from-system-ini.97745/

It is simple really, just use javascript to open an eml file in a new window. Source: Using Internet Explorer 4.0 http://www.dec.ctu.edu.vn/ cit/tailie u/books/in sidewin98/ ch23/ ch23. I can be contacted for help on southern Vancouver Island. Anti-virus is primarily a manual process!

Well, I've just been hit with the W32.NIMDA.A@MM computer worm. This SHOULD correct some problems, but you will probably have to reinstall Internet Explorer, all Windows updates, and certainly DirectX. Now click "OK" and allow it to extract the file. let us know how you get on with this.

It will show abbreviated file names, because it is a program passed down from the old Windows 3.1, but you can find your way around just the same. The whole idea of me suggesting Winfile.exe as the "shell" that loads instead of Explorer.exe was to allow you to do certain things that would be impossible if Explorer.exe loaded as Replace with c:\windows\options\cabs\ba se4.cab if you have them. If you are infected, you will need an up to date Anti-Virus program to remove it, and you will probably have to run the scan using the emergency boot disks created

This does not mean to count the zero file and assume there are four others between it and five for a total of six, not true. does NAV correct those? · actions · 2001-Sep-19 9:33 am · Name Game$join:2001-09-01North Myrtle Beach, SC Name Game$ Member 2001-Sep-19 9:47 am Trend Nimba ···tion.zip2,829 bytes(Trend Nimba definition.txt)nlockin- I have not Lets Talk About How Bell Fired Me After I Asked 4 Mental-Health Leave [BellCanada] by En Enfer312. Stay logged in Sign up now!

Let's look at the key point where anti-virus fails over viruses: Virus's are perpetual and autonomous. http://www.bitdefender.com/site/Search/q2/?query=Application.KeyLogger.PTU+Application.Tool.1586&mod=0&start=5 Finally, none of these anti-virus programs can protect you against new viruses, even similar strains adequately. Flag Permalink This was helpful (0) Back to Windows Legacy OS forum 5 total posts Popular Forums icon Computer Help 51,912 discussions icon Computer Newbies 10,498 discussions icon Laptops 20,411 discussions Always look at the file dates when performing a restore.Caveat: A user may find the presence of a Rbbad.cab file with a date stamp near the date Internet Explorer 5 or

Run a full system scan.4. navigate here I assume you have a functional computer with which you are posting right now. I don't know of any that patched the IIS server, I guess they just continued to clean up the virus as it came in. I figured I'd let it complete and just overwrite what I had.

Turn it back on again, and it should boot without needing to load Explorer.exe. If that doesn't work, then boot to your Win98 boot floppy telling it to "Boot with CD-Rom Support" from the Menu that will show. It got right through my virus software and/or firewall. · actions · 2001-Sep-19 2:51 am · BXiongjoin:2000-07-27Riverside, CA

BXiong to wozzeck Member 2001-Sep-19 4:09 am to wozzeckI noticed the virus first Check This Out Fortunately we had nothing on the server that we needed, so we took it offline and will do a fresh install.I'll post a link here if/when Symantec releases a repair tool.

SHOW ME NOW CNET © CBS Interactive Inc.  /  All Rights Reserved. I believe what solves the problem without a re-install of 98, is editing the system.ini to run winfile instead of explorer then install IE6 as instructed above and since the computer If any files are detected as infected by W32.Nimda.A@mm or W32.Nimda.A@mm (html), click Repair.5.

It can be found on this page:»www.wilders.org/free_tools.htmScroll until you see it.EditAdded strike.Sorry for the confusion.

Zee Comments See all(0) Add comment Anonymous 0 August 16, 2011 Glad the suggestions worked to the extent that you have windows running now, ezradallas, and thank you. By the end of the day we were able to fix the infected computer. When re-started, MS Word simply created a new one and only the changes I had made were lost. This is the system.ini line which loads the worm.

Those files are named by the following pattern: found@email.address.iniIn the same folder as the one specified above, ... I also posted these links for full package IE downloads: How to download Internet Explorer 6 SP1 http://www.broomeman.com/s upport/wsi edown.html Full package download: http://public.planetmirror .com/pub/m icrosoft/i e/6.0sp1/ You can also try Can anyone help? http://webadapt.org/solved-how/solved-how-can-i.php Trojan.Regpat.A...The malware contains a Windows registry (.REG) file encrypted in the overlay of the executable.

sigh)I did all this,, but didn't feel too good about deleting "35MB" worth of W32.Nimda infected files that could not be repaired.. The data for the Path item should point to the location of the executable deploymentTool.exe (by default, this location is C:\Program Files\Bitdefender\Bitdefender Management Server\Bitdefender ... 7. Reboot when finished and test. I managed to stop the virus from spreading but moments after I start the web server it begins again.

Even if it DOES contain this resource, it may not be in the place that it is expected. In some cases, the nimda virus stored only itself as a luring name attempting to bait the user, these copies were simply deleted, as well as any .eml files that contained gwhitmyer, Sep 30, 2002 #1 Sponsor pvc9 Joined: Jul 7, 2002 Messages: 6,427 But, did you run any Antivirus??? About CNET Privacy Policy Ad Choice Terms of Use Mobile User Agreement Help Center Toggle navigation Questions Tags Users Unanswered Ask question Sign In/Up Missing shlwapi.dll and dontrunold Anonymous 0 August

In the "Save File In" field, click the "Browse" button and navigate to C:\Windows\System. Second, right-click and select View from the context menu.c. Two of the Windows Explorer preferences were changed Do not show hidden or system files - was - Show all files Hide file extensions for known file types - was - Once on a network, nimda also scans the local subnet for computers and connects to any computer it can through windows networking in order to proliferate itself.

When somebody uses your email address by mistake [Security] by MacGyver208. 2x4 attic joists [HomeImprovement] by snakerock© DSLReports · Est.1999feedback · terms · Mobile mode

Copyright 2001, Rick Macmurchie - September If no backups are available, Windows tries to make repairs to the registry, equivalent to running the scanreg /fix command from a command prompt.2. I can only imagine the look on a system administrator's face as his network started returning to normal and nimda dissappeared. antivirus 1 Friday, 04 July 2008 04:24 Jiyu Ong Hi!

I read symantec's page and MS's page and none give a way to clean your system, just patch it once it infected.Anyone have a link to a cleaner? · actions ·