Hi I'm a bit of a noob and don't really know where to go from here. It seems I have a virus but my computer won't let me open any .exe files, or let me into control panel, my documents etc. All the thumbnails on the desktop are missing. I originally had an error pop up saying that windows cannot run dslauncher.exe??
I downloaded trend micro hijackthis and it seemed to run but an error came up saying that the system is denying access to a certain part of the system and I need to run the program as administrator (which I can't do because I can't get to the exe file to open it). I really don't know what else to do, please help!

Dani AI

Generated

Symptoms described by (unable to run .exe, Control Panel blocked, missing desktop thumbnails, error mentioning dslauncher.exe and scanners failing to start) are classic for malware that interferes with the shell and .exe handling, and in some cases installs a persistent rootkit. Because many removal tools run as .exe, in-OS cleanup often fails once the infection reaches that stage.

Immediate, ordered actions to limit damage and preserve data:

  • Disconnect the PC from the network and remove any attached USB/media to stop data exfiltration and further spread.
  • From a clean machine, create rescue media (a bootable AV/rescue USB or a Linux live-USB) so the infected disk can be scanned offline and personal files copied safely. Back up important documents to an external drive before attempting repairs. Do not open bank or sensitive accounts from the infected PC.

Practical recovery steps (in order of least invasive to most):

  • Try Safe Mode or "Last Known Good Configuration" (F8 at boot). If Safe Mode allows tools to run, attempt a System Restore to a point before the infection.
  • Run an offline rescue scan from the bootable media created on the clean PC; many infections that block .exe in Windows are detectable and removable offline.
  • If the problem is an altered .exe association, a registry restore can fix it. On a clean machine create a text file named fix_exe.reg with the contents below and transfer it on USB to the affected PC; import only from a safe environment (Safe Mode or WinRE). Back up the registry first; editing the registry can make Windows unbootable.
Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\.exe]
@="exefile"
"Content Type"="application/x-msdownload"

[HKEY_CLASSES_ROOT\exefile\shell\open\command]
@="\"%1\" %*"

If these steps are not possible or the rootkit persists, the safest options are to (a) post the requested logs per the forum sticky so experienced members can help (see ), or (b) image and wipe/reinstall Windows after restoring user data. Note: ’s offer to help privately was removed by the moderator for good reason; do not exchange private contact details here. If bank accounts may have been compromised, contact the bank immediately from a known-clean device.

Recommended Answers

All 4 Replies

I hear you! I was hacked about 4 months ago! I have learned many things. They even hacked my bank account! Would be willing to share and help if I can. I have been putting together some material that will hopefully help other's.

You can contact me on skype or through email.

Best Regards.

Cheryl Ryning

Yes that would be great thank you!! What's your email address? I've tried following all the steps listed on this site but it feels like the virus is always one step ahead. GMER Rootkit scanner wont even run :-S

Thank you!

Try spybot search and destroy. You can download it free from cnet, it found where I was hacked.

You can email me at <snip>

Edit by Mod. NO, you cannot use a public forum for private use. Read the Daniweb rules and follow them.

. Read the sticky at the head of this forum and follow the instructions found there.

Someone will review the logs once you have them posted.

Welcome to Daniweb.

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.