Windows Thread, Weird drive mapping issue in Technical; Hi there,
we are experiencing a strange drive mapping issue that a) random and b) happens to existing and new ...
13th May 2011, 11:18 AM #1
Weird drive mapping issue
we are experiencing a strange drive mapping issue that a) random and b) happens to existing and new users.
Basically from the image you can see that the mappings are made but appeaqr to be losing there association to 'Explore'. You can do start / run and unc to the destinations no problem.
This issue is effecting random users and happens all the time to them.
17th May 2011, 09:43 PM #2
right we have run Malwarebytes and Kaspersky Virus Removal Tool across the 2 DCs and NAS and despite both products detecting and removing items, we're still getting the issue.
My account was new as of last week and I get the weird issue. After the scans the servers were restarted and my profile was reset and the local profile was removed from the workstation.?
Any other avenues we should be looking at
17th May 2011, 09:51 PM #3
You forgot to blank out the details on the left.
17th May 2011, 09:56 PM #4
Cheers, I take it I can't replace the bugger either!?!
17th May 2011, 10:04 PM #5
Have you tried the command prompt on the workstation?
How are the drives mapped? Login script, group policy, local mapping, rm software?
I'd try clearing the mappings "net use /del *" and re-mapping manually.
17th May 2011, 10:08 PM #6
It's an RM CC3 job.
Logged into the same OC as SystemAdmin the drive mappings all work fine.
17th May 2011, 10:13 PM #7
Is there a rouge Autorun.inf in the root of these drives?
17th May 2011, 10:27 PM #8
There were and Kaspersky picked them up and removed them. Also it picked up something called downloadme.vbs which contained some dodgy stuff!
Originally Posted by Gatt
Last edited by bodminman; 17th May 2011 at 10:30 PM.
17th May 2011, 10:48 PM #9
Often, modifications are made to the entries in the registry:
Particularly if your drives start losing their standard icons, actions etc.
Have you tried resetting the profile of the affected user?
17th May 2011, 10:51 PM #10
My user profile was reset immediately after the servers were restarted after the Kaspersky scans but the problem still appeared.
Originally Posted by AXE
8th July 2011, 01:54 PM #11
- Rep Power
Im having the exact same problem, were you able to get this working?
I suspect the autorun.inf virus but scanned the server and there is nothing detected
11th July 2011, 12:02 PM #12
- Rep Power
As i suspected its the autorun.inf virus, however RMVP4 does not pick the virus up (what crap!), I am having to clean the server using Sophos, but now have issues with local profiles. Hard work but its gotta be done
11th July 2011, 12:29 PM #13
why not add a software restriction policy on the mapped drive.
11th July 2011, 12:33 PM #14
This is a typical example why on every network I support, I enable:
User Config > Admin Templates > System - Turn off Autoplay (All drives)
It makes it impossible for the virus to spread anymore and only requires a user to open up My Computer manually.
One school I support had the Conflicker virus (autorun virus) before I started and although the virus was removed, it still created a lot of damage. I ended up re-installing the one server from new and the problems then disappeared.
11th July 2011, 12:53 PM #15
- Rep Power
What happens when autorun is disabled but the users double click the drive in My Computer - does it not do the same thing, the virus will still get onto the computer etc?
By chrisjako in forum Windows Server 2008
Last Post: 15th September 2010, 10:01 AM
By Rawns in forum Windows
Last Post: 10th May 2010, 04:41 PM
Last Post: 18th December 2009, 12:15 PM
By LeonieCol in forum Wireless Networks
Last Post: 20th May 2009, 01:35 PM
By Nozza in forum Network and Classroom Management
Last Post: 7th April 2009, 05:26 PM
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)