views:

28

answers:

1

Okay I was trying to remove some of those fake anti virus programs from a laptop, I'm trying to avoid reinstalling the OS as this is setup as a multiple boot machine centos and vista with special configs on both sides that took a lot of time to setup. After a tradeshow it came back with the fake antivirus on it. Generally you can task manager it kill those as they start up install malwarebytes and remove it however malwarebytes kept getting killed off when it would go to scan. So I went to msconfig and disabled the multiple rundll from starting up thinking one was a fake and I could reenable them one at a time to find out. So now the machine won't boot up either under safe mode or normal. Just starts to boot and resets itself. The laptop is a toshiba satellite that didn't come with a recovery cd. I'm not sure if there is still a recovery partition on this thing or not, and not sure how to boot to it if it does (might still have it). I brought in my vista cd which is a system builder version and it doesn't give me any repair option, just simply install.

So now I'm trying to figure out how to reenable the rundll so I can get it booting again. I can boot the computer either into centos, or a copy of fedora 12 live desktop and get to the file system.

What file can I edit to reenable the rundll I disabled? or does anyone have any ideas on how to fix this?

A: 

Well I couldn't find enough info about the disabled registry values to create them again and get this back and working so I am reinstalling... the best reference I found was here.. http://www.pacs-portal.co.uk/startup_content.php the cd mentioned above gave me the ability to view and edit the registry but I didn't know enough to make that useful.

Isisagate