Guide | How To BoraMurdar's Fix Tools

The associated guide may contain user-generated or external content.

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
I wrote similar article long time ago, so now it's time for updated one. :rolleyes:

This article I wrote in hope it could help you guys for solving different problems affecting your PC and in order to fix it, update it, restore it, clean from infections etc. Note : I know that almost everyone which computer has been infected and is more or less knowledgeable will try to clean infection manually, by himself, but again, I strongly recommend to ask for help in our Malware Removal section from our expert @TwinHeadedEagle

This story is much/less about one 8gb usb flash drive where I have pretty much everything I need.

Backup and Recovery from image, malware removal, deletion of undeletable files, format recovery, data recovery, checking disk for errors, changing admin password you forgot, installing-reinstalling OS, recovery of broken master boot record, ntldr is missing, wrong driver load, system restoration, etc...

As well as showing how to create and enter bootable environment (where you can do pretty much everything), I will show you my set of tools (all free) that I am using also.

Preparing :

For the creation of bootable usb drive you'll need :

  1. USB Flash Drive [8gb minimum]
    Fvnb0Xl.png
  2. YUMI [direct download link]
  3. Set of bootable ISO's and some tools [will have a word of that later]
______________________________________________

Creation of bootable usb drive

USB boot is the process of using a USB storage device to boot or start a computer’s operating system. It enables computer hardware to use a USB storage stick to get all essential system booting information and files rather than the standard/native hard disk or the CD drive. All popular operating systems support the creation of a bootable USB drive that can be plugged into a USB slot to boot a computer, server or laptop. USB boot works much like the legacy floppy disk drive (FDD) booting capability. It is mainly used to recover, repair and install an operating system. It provides users with an alternative method to boot a system. Typically, to perform a USB boot, a bootable USB device must first be created. The bootable USB drive can be set up using a native operating system component or through various third-party utilities. The software/utility will copy all the operating system files and boot sequence into the USB drive to enable the USB boot.

YUMI

Unlike Rufus, UNetbootin and other tools, YUMI is capable of creating the multiboot environment, where you can create a bootable USB that can boot several boot images that are stored on a single USB. It can be used to create a Multiboot USB Flash Drive containing multiple operating systems, antivirus utilities, disc cloning, diagnostic tools, and more. YUMI uses syslinux to boot extracted distributions stored on the USB device, and reverts to using grub to Boot Multiple ISO files from USB, if necessary.
YUMI-Boot-Menu.png

HOW?
Well, simple. You insert your USB Flash Drive, run YUMI, it will show you this window
YUMI-Multiboot-USB-Creator.png

So in 3 simple steps you can create your bootable USB Flash Drive.

  • Step 1 - Shows your USB Flash Drive [I recommend you to untick option "Showing All Drives" as that way it will show you your partitions of your hard disk, and so to avoid formatting your data by accident, untick this option and it will show you only your USB Flash Drives]
  • Step 2 - Choosing your ISO, your distribution
  • Screenshot (2).png
    Screenshot (3).png
  • Step 3 - After selection you browse to the ISO (you've previously downloaded on your HDD), search and select it for opening, and click "Create". Wait for process to finish.
That's it :eek:
Example you have selected to create bootable usb containing Kaspersky Rescue Disk. Go for "Select Distribution" and select Kaspersky from the falling window, find ISO you've downloaded and click "Create" Your USB is still pluged in. Restart your computer, press F8 or F12 (or whatever key is associated for entering the Boot Menu on your machine) while the system tries to find bootable drives connected to the machine (CD, HDD, USB), maybe you'll need to enter BIOS first to give computer an option to start from the USB drive (every motherboard nowadays supports booting from USB drives). Choose option "Boot From USB Drive". It will show you this menu (well not exact the same :p )

YUMI-Boot-Menu.png

S
o you can use your keyboard to browse to the menu of the YUMI Multiboot USB environment. So called GRUB [syslinux also]. Go to "Antivirus Tools" and select to boot your Kaspersky Rescue Disk to clean infection, for example.
That's not all. Like I said, YUMI allows you to put as much number of ISO files to be booted, as long as size of your flash drive limits you. After successful creation of Kaspersky Rescue Disk you can add whatever you want : Windows 8.1 Installation Setup ISO, Comodo Rescue Disk, Ubuntu.... whatever.
And after you unplug your USB Flash Drive, and want to add something you forgot, YUMI will automatically detect that bootable Flash Drive exists and it will just add new ISOs you select to the list of existing ones.

Common questions and problems.
  • What if ISO image I want to boot, is not listed in YUMI falling window? Well, you can use last 3 options from a falling window
    Screenshot (4).png
    . That way, ISO will not be extracted on your USB, but YUMI will give a command that ISO you want to boot will be booted into memory [RAM] and extracted there. Note : example, if your system has 2GB of RAM, you cannot boot ISO image using this method that is larger than 2GB. You'll get an error "not enough memory for operation". I recommend you to use option "Try Unlisted ISO (GRUB)"
  • No bootable usb/image error shows in boot menu after you select "boot from usb". - OK, one thing is that your USB flash drive need to be formated in FAT32 file system. YUMI has build in option for that. Just tick it.
______________________________________________

My USB Flash Drive

  • Windows 8.1 with Update x86, my original ISO from Microsoft
  • Hirens Boot CD
  • Kaspersky Rescue Disk
  • Comodo Rescue Disk
  • Lazersoft Recovery Suite Free (Created ISO from it and add it to the boot menu)
  • Minitool Partition Wizard Bootable ISO
  • Acronis Rescue Media
  • + BoraMurdar's Fix Tools
    BM Fix Tools.jpg
I needed to merge screenshots into one, sorry for my awesomeness in photoshoping [level over 9000]
Some folders have subfolders, or multiple files like Kaspersky folder has Kaspersky TDSS Killer, RahniDecryptor, almost every portable removal tool from Kaspersky...
Malwarebytes has offline virus database included with setup. Most of these repair tools (except setups) are portable and 7zip-ed to maximum, to save space. Etc etc etc.


All the cleaning unremovable junk, backup, restore, malware removal I am doing from Hirens Boot and Acronis Rescue Media (for my PC only), Macrium Reflect for other machines.
I like Hirens because it is Preinstallation Environment, MiniXP... Windows in fact, so you can run all these tools (portable or not) from there. Everything runs from RAM so there's no worry about reinfection if you have already infected machine. Emsisoft Emergency Kit runs smoothly from Hirens. You can even go online through WiFi (if you have situation where the only connection to the internet is through WiFi), as Hirens has most of wireless drives build in to be autodetected if selected.
Lazersoft Recovery Suite can help you if Windows broke it's boot files, boot manager, master boot record or similar. It has some awesome tools and it's free :)

Lazesoft-Recovery-Suite-Home_1.png


Kaspersky Rescue Disk, Comodo Rescue Disk and Minitool Partition Wizard doesn't need an intro.
They are well known already.

Just wanted to share this with you guys, maybe some of you may find this article useful...
Stay safe ;)
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,356
Comodo Disk Rescue - useless
use Dr.Web LiveDisk & Kaspersky Rescue Disk the only software, that qualitatively cure
I recommend, for example:
Backup and restore
Acronis True Image Premium 2014 Build 6673
Active Disk Image Professional 5.6.2
R-Drive Image 5.3 Build 5305 Technician
Ghost 11.5.1.2269
Paragon Hard Disk Manager 14 Premium 10.1.21.471
TeraByte Image For Windows 2.91
AOMEI Backupper Technician Edition 2.0.2
Drive SnapShot 1.43.17087

Hard disk
Disk Management, System
Acronis Disk Director 12.0.3223
EaseUS Partition Master 10.1 WinPE Edition
Paragon Hard Disk Manager 14 Premium 10.1.21.471
MiniTool Partition Wizard Professional 8.1.1
AOMEI Partition Assistant Professional 5.5.8
Defraggler 2.18.945 Professional
HDD Low Level Format Tool 4.40
HD Tune Pro 5.50
Check Disk GUI
Victoria 4.47
HDD Regenerator 2011
HDDScan 3.3 (Run through MInstAll)
Hard Disk Sentinel Pro 4.50.5 Build 6845

Other programs
AIDA64 Extreme Edition 4.50.3000 (Run through MInstAll)
BlueScreenView 1.52
Active Password Changer Professional 5.0
Reset Windows Password 4.1.3.450
UltraISO Premium 9.6.1.3016
Total Commander 8
Registry Editor
FastStone Capture 7.7
IrfanView 4.38
STDU Viewer 1.6.284
BOOTICE 1.3.2.1
Recovery Wizard download Windows
Installing the drivers manual
Unlocker 1.9.2
7-ZIP
WinNTSetup 3.6.5
Double Driver 4.1.0
Imagex
GImageX 2.1.1
Opera 11
PENetwork 0.58.2
Media Player Classic 1.7.4.13
EasyBCD 2.2
SoftMaker Office
MInstAll 1.0.1.20
BurnInTest Pro 7.1 Build 1017 (Run through MInstAll)
DiskCryptor 1.1.846.118
USB Safely Remove 5.2.3.1205
MSDaRT Explorer
BitLocker

Data Recovery (Unpacking if necessary from the Start menu):

R-Studio 7.3 Build 155233 Network Edition
Active File Recovery 13.0.15 Enterprise
Active Partition Recovery 10.0.2
O & O DiskRecovery 9.0 Build 252 Tech Edition
MiniTool Power Data Recovery 6.8.0.0
Runtime GetDataBack for NTFS 4.33
Runtime GetDataBack for FAT 4.33
DM Disk Editor and Data Recovery 2.10.0


DOS programs:
HDD Regenerator 2011
MHDD 4.6
Victoria 3.52
Memtest 5.01
HDAT2 5.0
GoIdMemory PRO 7.85
Active Password Changer Professional 5.0
link remove :D
+
Dr.Web LiveDisk & Kaspersky Rescue Disk ~ another ^portable^ software for security
+
Special programs for IT professionals
 
Last edited:

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
Comodo Disk Rescue - useless
use Dr.Web LiveDisk & Kaspersky Rescue Disk the only software, that qualitatively cure
I recommend, for example:

+
Dr.Web LiveDisk & Kaspersky Rescue Disk ~ another ^portable^ software for security
+
Special programs for IT professionals
Strelec USB is kinda illegal bro :D

I just pointed out that you have freedom to add whatever you want to... I just shared mine usb that covers pretty much every problem you can encounter :)
Also, I use Comodo Rescue Disk, as sometimes I need a Linux environment and Comodo is one of the smallest (~50mb)...
 

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
Emsisoft Emergency Kit not disinfect files(cure), it is useless against challenging infections
Well that's partially true, but actually no AV can cure what's been broken. Kaspersky and DrWeb actually have repair options, but that works only when Kaspersky AV or IS, or DrWeb is installed on the actual system, so the copy of original file has been created. Otherwise it will just try to rename the file and it's extension, when you run a "cold" scan using Boot Disks (I ask @Malware1 to confirm this).
Again, if infection is serious better ask TwinHeadedEagle for help.
 

Petrovic

Level 64
Verified
Honorary Member
Top Poster
Well-known
Apr 25, 2013
5,356
Well that's partially true, but actually no AV can cure what's been broken. Kaspersky and DrWeb actually have repair options, but that works only when Kaspersky AV or IS, .
This is not true
Always better and recommended to cure of ^Linux-based^ live cd, so there is no active infected files that may interfere with the disinfect in the windows environment( infected memory modules, drivers, etc///)
They can clean malware from outside the infected Windows system, so the malware won’t be running and interfering with the clean-up process.
If Windows won't start or if the computer won't start in safe mode, using an antivirus rescue CD. An antivirus rescue CD allows you to scan an infected computer without having to start Windows. Many antivirus companies provide free rescue CDs. They are extremely effective at removing malware from a computer.
A rescue disk is helpful when the malware infection is at such level that it is impossible to clean the computer using regular anti-malware applications.
The malware won’t be running while the antivirus tries to remove it, so the antivirus can methodically locate and remove the harmful software without it interfering.
 

Malware1

Level 76
Sep 28, 2011
6,545
Well that's partially true, but actually no AV can cure what's been broken. Kaspersky and DrWeb actually have repair options, but that works only when Kaspersky AV or IS, or DrWeb is installed on the actual system, so the copy of original file has been created. Otherwise it will just try to rename the file and it's extension, when you run a "cold" scan using Boot Disks (I ask @Malware1 to confirm this).
Again, if infection is serious better ask TwinHeadedEagle for help.
AVs don't create copies of the original files, "replace" and "cure/disinfect" is not the same.
 

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
This is not true
Always better and recommended to cure of ^Linux-based^ live cd, so there is no active infected files that may interfere with the disinfect in the windows environment( infected memory modules, drivers, etc///)
They can clean malware from outside the infected Windows system, so the malware won’t be running and interfering with the clean-up process.
If Windows won't start or if the computer won't start in safe mode, using an antivirus rescue CD. An antivirus rescue CD allows you to scan an infected computer without having to start Windows. Many antivirus companies provide free rescue CDs. They are extremely effective at removing malware from a computer.
A rescue disk is helpful when the malware infection is at such level that it is impossible to clean the computer using regular anti-malware applications.
The malware won’t be running while the antivirus tries to remove it, so the antivirus can methodically locate and remove the harmful software without it interfering.

That's why I am having Kaspersky Rescue Disk in the first place. I didn't say anything that boot disks are useless in cleaning,and of course, like I mentioned in my post that the you'll need to boot outside of Windows to clean what cannot be cleaned from within the Windows. I just wanted to say that I am not so sure that boot disk can actually repair what is broken. Not removing. I mean, from Hirens boot, just tell me what the viruses are and I'll delete it manually. :p

AVs don't create copies of the original files, "replace" and "cure/disinfect" is not the same.
I watched some review of Dr.Web LiveCD in the past (I am not sure but maybe it was PC Security Channel, not sure tho). That tester infected the system - booted into LiveCD and all detected malwares set to be cured.
After that he booted back into Windows, scanned with MalwareBytes and Hitman Pro, and both actually found the exact same files (just renamed without extension) that Dr.Web just renamed/cured. Of course, those were not dangerous, as they didn't run in memory anymore. They were just files.
Just wanted to ask if rename actually is disinfect concerning Dr.Web curing procedure? (Kaspersky is much more complex I think :) )
 

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
for example: rootkit,bootkit, virut,sality other File viruses......etc(challenging infections)
-
-NO:D
Again partially true :p But mostly wrong.
Bootkits infects your master boot record (for example), first bytes, boot sector of your partitioned space on HDD. It doesn't have direct correlation with RAM, from which Rescue Disks and Hirens are loaded. So it can be cleaned within them. Linux based environment or not.
Don't take my words out of context @Petrovic :p
 
S

Sr. Normal

I got it !!!

I've been able to make a usb multibootable with 9 tools closer ,: want to have Windows 7 , Xubuntu , Manjaro , Gparted , Supergrub , specific my Backups , Karpesky Rescue ...

Thanks , did not know that something so useful could be done . It has been a real find for me
 

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
I got it !!!

I've been able to make a usb multibootable with 9 tools closer ,: want to have Windows 7 , Xubuntu , Manjaro , Gparted , Supergrub , specific my Backups , Karpesky Rescue ...

Thanks , did not know that something so useful could be done . It has been a real find for me
I am glad I could help :)
 

Purshu_Pro

Level 29
Verified
Honorary Member
Aug 3, 2013
1,879
Hi @BoraMurdar , I have come with a new problem. Can u help me resolve it? Well it starts here, I was reading ur thread on Using Multiboot with YUMI, I was interested and want to make one such kind. But i am facing a problem with my boot with USB, when i try to boot it says "Select Boot Device Failed. Click Enter to continue". I have a USB flash drive of bot 8 and 16gb, it hapenning the same way with both. I have tried disabling Secure Boot, Fast Boot, changed BIOS menu order of booting; but nothing worked . Any specific reason for this error?
 
  • Like
Reactions: Deleted member 2913

BoraMurdar

Super Moderator
Thread author
Verified
Staff Member
Well-known
Aug 30, 2012
6,598
Hi @BoraMurdar , I have come with a new problem. Can u help me resolve it? Well it starts here, I was reading ur thread on Using Multiboot with YUMI, I was interested and want to make one such kind. But i am facing a problem with my boot with USB, when i try to boot it says "Select Boot Device Failed. Click Enter to continue". I have a USB flash drive of bot 8 and 16gb, it hapenning the same way with both. I have tried disabling Secure Boot, Fast Boot, changed BIOS menu order of booting; but nothing worked . Any specific reason for this error?
Is your USB Flash Drive formatted as FAT32?
 
  • Like
Reactions: Deleted member 2913

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top