Paviilion p7-1010: NO SOUND AFTER VIRUS REMOVAL

I took the PC for Staples to have checked and viruses, spyware, malware was found.  These have been removed and all cleaned up.  Now I have no sound.  I have tried everything I can think of nothing doesn't.

Can anyone help?

@CHUCKL1

Go to Device Manager and uninstall the device.

If he asks me to remove the drivers say yes or OK.

Then run the link I posted.

Then restart.

REO

Tags: HP Desktops

Similar Questions

  • Failed to open all files with the extension .exe in Vista Business SP2. Dialog box appears and asks which program to use. Seems to have lost the info file assoc after virus removal.

    Failed to open all files with the extension .exe in Vista Business SP2.  Dialog box appears and asks which program to use.  Seems to have lost the info file assoc after virus removal.  Any suggestions?

    Hello

    Try the methods provided below and check if the problem persists.

    Method 1:

    Try the fix it or follow the manual for troubleshooting to solve the problem.

    When you run an .exe on a Windows XP, Windows Vista or Windows 7 computer file, the file can start another program

    http://support.Microsoft.com/kb/950505

    Note:

    The link above contains steps that tell you how to modify the registry. However, serious problems can occur if you modify the registry incorrectly. Therefore, make sure that you proceed with caution. For added protection, back up the registry before you edit it. Then you can restore the registry if a problem occurs. For more information about how to back up and restore the registry, click on the number below to view the article in the Microsoft Knowledge Base:

    How to back up and restore the registry in Windows

    http://support.Microsoft.com/kb/322756

    Method 2:

    Download and run Microsoft Safety Scanner and check if the problem is caused by a Virus/Malware.

    Microsoft safety scanner

    http://www.Microsoft.com/security/scanner/en-us/default.aspx

  • No sound after the removal of Norton and Mcaffe installation

    No sound after the removal of Norton and Mcaffe installation

    Most often when a device does not work, it is because the driver is damaged. Re-install a new copy should help

    http://Windows.Microsoft.com/en-us/Windows7/update-a-driver-for-hardware-that-isn ' t-work correctly? SignedIn = 1

  • Ethernet and Wireless NIC inoperative; can not be uninstalled; It comes after virus removal

    After a virus removal, which did not seem to remove the files that would make this kind of problem (in fact he only renamed infected files), my Broadcom network to the ethernet port interface cards (1) and (2) wireless networks and (3) nVidia network controller are inoperative.  (Exclamation point in Device Manager under Network Interfaces error 39 ' no driver not loaded"of course; all implemented by a device MS_PASSTHRUMP driver).  The system is a laptop running WinXP SP2 (with its double chips AMD processor THAT XP SP3 installs successfully not when I tried it).

    Just by the way, the virus scan from a Linux bootable CD based, which seems to be a great idea to prevent some nifty behavior that virii have evolved until today, when they can actually run out of danger.  I wish I knew why the renaming of non-critical files where virus signatures have been found could cause this kind of problem with all the network adapters on the system.  The only linked folder links to networking was in the HP wireless Assistant and I have always used the Windows installation for the control of the wireless connection. (More later on this scanner).

    Additional verification shows that any problem 3 NICs have 'pilot' charged by Windows (if you ask "Driver Details").  For 2 of the 3, there is another very similar device (the exception is the driver of the Mini IP WAN), with their drivers loaded, from which you can determine the driver files.  All driver files are present (especially in the Win/Sys32/Drivers/folder of course).  Non-working devices have all "»" added to their names, to be a unique name, I guess. "  Windows seems to ignore the other copies for use, but does not seem to deal with the extent of their drivers OK loading.

    I tried to disable the problem devices and reboot, but that solves nothing.  If I try to uninstall any of these devices of problem (so that they can be reinstalled?), this operation fails, a message "failed to uninstall; may device is used for the start. "  There is a boot in the BIOS of the ethernet option, but that is disabled in the BIOS.  I wonder if these three devices have been added by the virus as a "shell" around actual devices and drivers for viral use?  If so, just be able to remove the devices of hull could them might solve the problem. with the exception of the hooks, they could have placed in the original device drivers.

    I also tried to reinstall these devices from the files of data recovery of manufacturer (HP) and that seems to unfold, but does not change anything about the netwrok connectivity.

    Things work to the point that a ping to itself (127.0.0.1) succeeds, so stack IP seems to works, but trying to ping the gateway router (which connects the laptop), fails - I used the ethernet (wired) connection in time.

    Tried to go back to a previous restore point, but who also does not work.  The Windows shell commits a violation of memory protection (each time) when you try to restart using (any) previous restore point, so the system restore undoes any changes he might have done could have fixed the issues above.

    Many details above.  I am looking for no idea regarding: (a) what could happen here, (b) how the network problem cards make installable again to get rid of them, (c) any other thing that might apply.

    Thank you.

    =======================

    November 5, 2009

    Problem solved.  Here's how.

    The blackout "Network Interface Cards" were virtual devices, created by the Virus.

    Steps, I made before the previous post (above):
    (1) unplug the machine infected of all access to the internet.
    (2) on another computer, I went to http://www.free-av.com/, click on the download tab and under "Free tools" at the bottom, chosen Avira AntiVir Rescue System.  Then I downloaded it, run, and it burned a bootable "rescue CD".
    (3) has taken the CD for infected people kicked and machine from him.  If you cannot open your CD with power off, another way is to start the system, insert the CD, then restart the system.  Pay attention to all messages early in the boot process before Windows loads.  Depending on your system configuration, you may need to change the boot sequence so that the CD drive is checked before the hard drive.  It's usually pretty easy to do, once you pressed the right key during startup to indicate you want to take control of this small point.
    (4) I forgot the exact option here once the CD boot system, but select that you want to run the virus scan.  It took about 2 hours on my laptop.  The initial default is report results only; I suggest to change that to rename infected files (which will add an XXX at the end of any "infected" file).  The analysis is quite complete, but can be overagressive at times.  It is not a complete scan, given that the big Compact files assessed completely.  Recording on paper for future reference: all of the alerts that were generated, the path and name of the file and the reason for the alert.  Some will probably be partial matches to the viral bosses identified as 'contains a model of detection' (a partial match suspicious), rather than 'contains the threat XYZ' (which means that all paired for identification).  Some of the files "suspicious" may be essential to the operation of your system and you want to UN-rename them back to their original name.  If in doubt, check with someone who knows the PCs.
    (5) now you should have a system contains it a neutralized virus to work for removal.  That's where I was when I filed the report.  My major issue remaining before cleaning the pieces of virus, which was now there is no internet access, no cable, no wireless on the infected system.

    OK, so what next?  My infection cause a virus named ndisvvan.sys driver.  If you also have this bad actor, then you may want to read in detail.  If not, then the following may, or do not apply to your case.

    (6) first, in Windows Explorer (let us remember that we are in Win XP), click on tools, then Folder Options... and select the view tab.  Go to the bottom of the list and select "Show the hidden files and folders" and uncheck "hide the file Extensions known Types.  We will need to go into the hidden folders and know exactly the type of file that we deal with.  I guess it goes without saying that yu has to be a system administrator for what to do next.  Win Vista it makes it much more difficult, since sometimes the administrator has no access to all the files that have been installed by a different administrator ID.  It must mess with you give permission, or appropriate, the files you need to access.  I suggest to make a new folder ("VirusParts") to store all the files that you find on the virus, until you are ready to delete them forever.
    (7) first of all, open the file C:\Windows\system32\drivers\etc\HOSTS (now called HOSTSXXX) and move this file to your VirusParts folder.  This part of your internet access is now unlocked.
    (8) then go to C:\WINDOWS\inf, and browse for the files netsf.inf, netsf. PNF, netsf_m.inf and netsf_m.PNF.  These are the files that most likely loading drivers virus in your system.  Having a peek inside .inf files can help you identify some of the changes made by the virus to your registry.  The virus probably also created a new service on your machine.  In my case, the service was named Passthru, and device to implement ms_passthrump (Microsoft Passthru Miniport).  These names are actually from a document from Microsoft that explains how to develop programs of virtual device to filter the data goes or network devices.  If these are directly related to your virus, the program driver specified inside them will be none other than our ndisvvan.sys enemy.  Research in .inf files (these are files text; the.) The PNF files are binary, not text) can help identify the service or services that the virus added to your system, which are now (essentially) a part of the operating system that starts automatically with Windows.  Since there is no virus in the .inf or the. The PNF files, they will not be detected by an antivirus.  All .inf files sort in order of the date and time of creation.  Suspect not with a close date of one of the files netsf.inf and netsf_m.inf.  Windows compile .inf files in the. PNF files, which can occur a few days later, when windows moves to this task.  If you find these files, move them to your VirusParts folder where they can not be recharged.
    (9) to start the Panel (from the start menu), double-click 'System', then select the Hardware tab, then click the Device Manager button.  Expand the category of Network Interfaces, and some of them should have an exclamation point in a yellow circle showing.  If you right-click on each one and select Properties, you should see an error 39 (driver not found; the antivirus program renamed their ndisvvan.sys file).  If you click on the other tabs in the properties, you can find the device is something like ROOT\MS_PASSTHRUMP\0000.  Now, you know that you are very likely to something.  I had three devices affected with numbers 0000, 0001 and 0002.  Carefully note the names of the Network Interfaces.  Two of my friends were identical to the names of other Interfaces of network but with "»" added.  The interface of third-party network with a problem was named 'Miniport network EXPANDED (IP) -'.  But there is no corresponding legitimate network interface of the same name.  Common Council to recharge a bad driver is uninstall, no new hardware detection and let windows reload from .inf file specifications.  However, if you try to uninstall these interfaces (those with here in exclamation points) Windows tells you that they can't be uninstalled and "perhaps it is used to start" or other similar term.
    (10) this part is a bit tricky.  Ask someone who knows how to work with the Windows registry, if you're not on this topic.  Mistakes here can have disastrous results.  Enough said?  If you search the registry for "passthru", you will get several matches, mostly related in one way or another for the virus and his new 'service '.
    Under a path like HKEY_USER_MACHINE\CurrentControlSet\Enum\Root\MS_PASSTHRUMP\0000, you will find information as the name of the interface (make sure it matches the name that you noted earlier) and manages a definition of tha of the pilot program.  For example {4D36E972-E325-11CE-BFC1-08002BE10318} \0014.  Do the same for MS_PASSTHRUMP\0001 (probably {... (10318} \0015) and \0002 (probably {... (10318} \0016).  The string of numbers and letters within the {...} identifies a particular program for windows, and the \0014 a particular use of the program {... 10318} is actually a standard part of windows and not a part of the virus.  However, uses \0014 \0015 and \0016 of this program have probably added by the virus.  Save the links: MS_PASSTHRUMP\0000 related to {... 10318} \0014.  Now, go to HKEY_LOCAL_MACHINE\CurrentControlSet\Class and you will find a long list of class programs identified by their number {...}.  I suggest from the end of the list and the expansion of each occurrence of our {... 10318} in the list, one by one.  If you select the subitems in the extension of this list, each device has a name.  You are looking for Netwrok Interface devices.  Under the instance of our {... network interface devices 10318} it will be to the less 0014 points and probably at least 0016 (based on the links that we just recorded). 0014 resembled a legitimate wireless LAN interface, so I don't mess with this definition.  However 0015 and 0016 looked like they have been added by the virus.  Inside of each specification, you will find a key named "characteristic".  Its value is what prevents us from uninstall the network interface in the Device Manager.  Its value is a hexadecimal value that integrates several indicators for Windows.  In particular, the value 0 x 20 is the bit that specifies that the device cannot be uninstalled by the user, and 0x08 tells windows ' hide ' this device of the user.  Almost all of my devices had characteristics codes 0 x 29, including those created by the virus.  (I don't know; others might have been modified by the virus, but that seems a bit unlikely).  In any case, for the interfaces added by the virus, network we need to change their characteristic values of 0 x 29 something like 0 x 1 (you can also display the device).  Note that changing the characteristic value is a reversible operation that is likely to harm anything in the system.  We can always go back and change it back to 0 x 29, if we have not uninstalled the device.  In my case, I put the characteristics values on 0 x 1 for 0015-0016 devices, which looked like, they were added by the virus.  I did this in the CurrentControlSet control set and for good measure repeated it in ControlSet001 and ControlSet002 registry.  (Windows retains backups of critical information in the registry, in the different ControlSets and creates the CurrentControlSet Control at the system startup set.)
    (11) now return the Control Panel, then system, then the Hardware tab and then the Device Manager button.  Now you should be able to uninstall the network with exclamation points interfaces in the yellow circles, those we checked earlier was connected to the ndisvvan.sys driver of virus, using the MS_PASSTHRUMP interfaces for Passthru Windows service.  Since it's virtual devices, and we removed their .inf and. The PNF files, they're not coming after we uninstall them.
    (12) now, we have removed the network interface drivers that are added by the virus, but legitimate real pilots are not connected in the system correctly, so our internet connection still does not work.  We need to re - install the drivers of legitimate network interface.  To do this, in the device, right-click Manager and uninstall the device controller network legitimate.  On my HP laptop, it was named "nVidia nForce Network Controller".  After uninstallation, in the window menu in Device Manager, click Actions, and then select "Scan for hardware changes".  Windows should report that she has found a new network interface device and that it is set up, and in a minute or two, it is ready for use.  At this point, on my system, both the wired ethernet port and wireless LAN bustled again.

    I still have to go around cleaning the files renamed by the antivirus program and get them out of the PC, but at least the PC is now working without virus.  The virus may also have damaged the process of restoration of the system, which still fails to restore the previous system configuration.  (Windows Explorer always creates an exception address on reboot).  I still need to work on this problem.  The virus 'off' system restore for all drives by using a parameter, however the TWEAKUI tool (I think it was what I used) allowed me to override this setting and control of group policy.

    There are a lot of viruses out there who adopts this method to take control of low level of connections from the PC to the internet, while allowing to download more viruses and keyloggers in the future in respect of the remote control.  Some of these viruses attach also to the many many files the user program.  In this case it has little alternative except to wipe the drive and start over with a clean, install since often these files cannot be cleaned.  Fortunately, my infection was not serious, and it was possible to remove the virus as described above.  I hope this description helps somebody out there.

    This answer is just a formality to change the resolved state.

  • Basic functions and issues related to the Internet after virus removal

    I hope someone can help with my daughter's laptop.  I think this is the right forum.

    Back in March she got a rogue virus on his laptop computer. It has been removed successfully, but the programs on his personal user account have still some problems. She tries to open any program by double-clicking its icon, a screen will appear asking you to choose a program from a list to open it with. If instead, she clicks on the icon of the program and chooses to start, it opens fine (but is very painful to have to do so every time). In addition, some basic on this user account functions do not work (it does not receive some pop-up windows to the top when it should, the scroll bar on its mouse pad no longer works, programs configured to start at startup must be started manually, etc.). Finally, after being and deletion of another rogue virus a few weeks ago, the internet on his personal user account stopped working, only display a "Cannot display the Web page" page even if network connections show that it is connected to the internet. NOTE: None of these problems exist on the administrator account or if she is invited to log on as an administrator.

    A gifted friend computer has helped to ensure that the computer is free of any virus or malware but was not able to understand how to fix this user account.  It was suggested to delete this account and create a new user, but she doesn't want to have to do that, if possible, since she spent a lot of time customizing.

    The laptop is a HP Touchsmart PC with Windows Vista Edition Home Premium (x 64), AMD Turion X 2 Dual - Core Mobile RM-75.

    Thanks in advance!

    Ok.

    Here's a little advice for her on the copy of files on new accounts:

    http://windowshelp.Microsoft.com/Windows/en-AU/help/769495bf-035C-4764-A538-c9b05c22001e1033.mspx

    Difficulty of a corrupted user profile

    After creating the profile, you can copy the files from the existing profile. You must have at least three user accounts on the computer to perform these operations, including the new account that you created.

    See you soon.

    Mick Murphy - Microsoft partner

  • Quosmio G20-110: no sound after I removed SoundMax

    I accidentally deleted the soundMAX to my G20-110 Quosmio program and I lost the sound on my computer. Does anyone know what I need to do? How can I restore or re - download soundMAX?.

    Hello

    I wonder how it of possible to remove the SoundMAX program accidentally?  :|
    However. The XP operating system supports the System Restore tool. Use it and roll back the OS to the beginning (before removing the Soundmax)

  • Adobe flash player not working after virus removal

    My computer has the AVGantivivirus2011. I removed it by order of bleepingcomputer.com everything works very well and seems to be the free virus except my flash drive does not work. I uninstalled it, reinstalled, restarted, etc.  When I try to access a program requiring flash player it says that I need the updated version. I've went to the Adobe site and downloaded. It is said that it is loaded successfully. I reboot and then the program says the same thing. I'm not a computer expert, but (I think) Im a pretty smart person and can follow directions (if in plain English) LOL any help/advice would be so appreciated. I am very frustrated! ;-) Have a great day!

    Hi sbwheeler,

    You have a user account on the computer? Check if the issue follow the other user account.

  • Windows XP does not correctly initialize after virus removal

    I am running Windows XP Home SP3 with FF 5.0.  I had a virus (Backdoor.RBot) the Avast program not found. Nor have programmed the MRT of Microsoft, or the online scanner. Used Malwarebytes and the virus has been removed. Installed Microsoft Security Essentials, uninstalled all the AV programs, cleaned the registry and descended from MSE. Found another virus (HackTool:Win32KeyGen) removed. At the verification by disk, removed 4 corrupted files associated with e-mail, uninstalled and reinstalled Yahoo Messenger program, because I had problems with it.

    When booting, I get a black screen with the icons of the bureau shows that the white circles, and then the screen flickers and returns to normal.

    My Windows Media Player gets up into pieces, the screen comes first with half of the taskbar, then it wobbles, and the other half rises.

    Problems with FF. Sometimes freezes when I have more than one tab open. Uninstalled and reinstalled. Makes no difference.

    IE8 did the same thing.

    Also, with FF or IE8, when you open a new tab, I get a white screen that loads very slowly and sometimes not at all. I get error messages telling me that the page has been reset by the server (no numbers).

    MSC is prompting me every 4 hours or more to scan, and when I run a full scan, it takes at least 5 hours to run. Yesterday, the scan took 10 and a half hours to run!

    The fan of my computer is almost constantly running.

    I'm afraid, I have damaged more files / programs.

    Any help would be appreciated. I'm pretty new with a PC, so please be as simple as possible.

    Thank you.

    No emails? I guess that if you use Web-based e-mail, you don't have them on your PC.

    At the very least, copy your favorites of IE from here:

    C:\Documents and Settings\ [user] \Favorites

    You can copy them to a USB flash drive, a CD or a floppy disk (if you have a floppy drive and floppy!).

  • Activate the copy of windows for Windows not genuine error after Virus removal

    Hello

    About 2 weeks back, I had to contact my business anti-virus software to help me with a problem of PC viruses presumed and it turns, 3 files on my pc were infected - 1 being a registry key. As part of their process of cleaning, they have deleted all 3 files (I don't know what registry key has been infected) but since then my machine acted strange... first of all, my laptop had an activated version of Windows 7 professional since late March / early April of 2012, but given that these 3 files were deleted , it gives me the message "this computer is not running genuine windows. Also I am not able to open the windows sound mixer.
    A deletion of registry keys could cause this scenario? Is there a way to fix things to make my PC work as before WITHOUT a format/reinstall everything? Note When I open the properties of the system, windows confirms the OS has been activated.
    Thank you

    You're welcome-good luck.

  • Menu start empty after virus removal

    Original title:

    After restarting my computer, I click on the Start button so that I can you my word program.  All these shortcuts on pop up had disappeared.  I want to get back them

    Thank you

    Mike Dunn

    Click Start then Winword.exe (the executable file of Microsoft Word) in the search box, when it appears, you can right click on it to create a shortcut, or PIN to the Start Menu as you wish.

  • How can I fill right side of the menu of the orb after virus removal?

    I have my machine partly recovered from a nasty virus (trojan grb) thanks to free software of Malwarebytes.

    But a problem is that the right side of the menu orb is mostly missing.  Upstairs, I have "Recent items" (empty) and below this "computer" and then nothing of other.  I don't remember what everything was there but miss me at least 'Control Panel', 'help and Support' and 'network '.  How to restore the Scriptures?
    Thank you, Bob

    If you right click on the start Orb, properties, tab , button, are all checked in the list of menu choices?

    This is an example of the menu to give an idea of what's there.

  • My .exe files are not open as they should after a virus removal and some do not work right.

    Here's the problem. I did a scan for viruses with AVG and deleted viruses from my computer. One of those annoying virus seems to be a program called Vista Antivirus that I had never downloaded or installed. I had a feeling that it was not good when she appeared all first. After that AVG has found to be a threat, he removed. This is where the problems started.

    After the removal of Antivirus Vista, my programs refuse to open without a right click and run as administrator. In some cases, like my WMP, the music and the Zune program, they do not work properly. Whenever I try to open a song in WMP or Zune, it won't play them or videos. Instead, as with all other programs, the 'Open with' window as if it does not recognise .exe files. So now you can see my aggravation.

    There is one more problem. After that I restart and login to my account and open the Task Manager to close unnecessary programs that I don't need or want to open, there are usually a whole list of them. However, as I did this virus removal, only a few main Basic programs that are needed to power the computer are open. Since most of those who opened before were .exe files, I can see where is the problem.

    Honestly, I'm stuck for what to do to solve this problem. I'll do a system restore and see if it works (and I hope it will be). If this isn't the case, I need little help and instructions to fix this annoying problem.

    Thank you for taking the time to read this and help out me.

    -iggy

    Edit: System Restore has been a success. Is there anyway I can stop this from happening in the future?

    Hi ignite444,

    Glad to hear that the problem is solved!

    Unwanted programs or virus downloaded on the computer without the user's knowledge.

    Important Antivirus software must be updated regularly to stay effective against new viruses. Most of the antivirus software are designed to update automatically, but you can also update your software manually.
    You should also keep during the virus scan regularly.

    Update your anti-virus software
    http://Windows.Microsoft.com/en-us/Windows-Vista/update-your-antivirus-software

    check the link below for the number of Windows vista-compatible antivirus software.
    Windows Vista consumer security software providers
    http://www.Microsoft.com/Windows/antivirus-partners/Windows-Vista.aspx

    I hope this helps!

    Halima S - Microsoft technical support.
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • lost product key and can not access computer - after the removal of virus; Then restart laptop that has requested that the product key

    I removed the virus using malbytes and AVG. I was invited to restart the laptop in order to remove the virus.  When restarting a laptop that asked that the product key, the problem is that I have lost. Can anyone suggest anything?

    I removed the virus using malbytes and AVG. I was invited to restart the laptop in order to remove the virus.  When restarting a laptop that asked that the product key, the problem is that I have lost. Can anyone suggest anything?

    Probably what you see is a fake windows alert activation. Please read the article on the link below to see if it applies to you.

    http://www.bleepingcomputer.com/virus-removal/remove-fake-Windows-activation

  • hidden files after you remove the virus from windows recovery.

    Original title: cannot open files by users, but can search for them.

    Hello.

    I have a Sony Vaio model VGN-AR71E running Vista Home premium. He recently got infected with a fake trojan of the anti-virus/malware, which was successfully deleted.

    The virus initially seems to have erased all the etc. documents/photos/music on my laptop. Users, there is only an empty file "public". However when I search for a file by using the start menu, I can find and open a file and the location is listed as it was before the virus (for example C:/users/me/images etc.). Also when I run itunes all my music is still listed as usual and plays.

    Has anyone advice on how to restore my user profile, so that I can access my files easily again?

    Thank you.

    Hello

    do you remember the name of the malicious software?

    If it's "Windows Recovery" read the information contained in the link

    read the information at the bottom of the below link about what makes this malware hide your data files and the cure for it regarding

    Read article 17

    http://www.bleepingcomputer.com/virus-removal/remove-Windows-Recovery

  • Satellite L350D - 12 M PSLE0E - no sound after installing Win XP

    Hello

    I installed Win XP SP3 on my Tosh laptop.
    I have everything works except the sound.

    We know of a compatible for this model sound card driver in XP.
    I downloaded the bucket full of HD and AC97 Realtek drivers, but none seems not to work.

    I'm really struggling with this one and do not want to go back to Vista.

    Reall any help is appreciated. Robbie.

    Hello

    I had the same problem with sound after installing XP everything seemed fine but no sound!

    I found a solution;
    You need to install the MS patches; KB835221 and KB888111
    These hotfixes must be installed before installing driver sound!

    But I put t know how it works with SP3. I think that you need to remove the SP3 first and then you could install the patches mentioned.

    However, once the patches have been installed, you must follow with the Realtek HD audio driver installation. The latest driver should be placed also on the Realtek page too.

    Well, in my case it worked so it should work on your laptop too!

Maybe you are looking for