All printing functions stopped (due to malware?)

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by rafa, Jan 18, 2014.

  1. rafa

    rafa Private E-2

    [Plodr asked me to post here from:

    http://forums.majorgeeks.com/showthread.php?p=1856103#post1856103

    ORIGINAL PROBLEM:

    Win 7 - 64 computer.

    After failed installation of Epson XP-312, all printing functions are now impossible - I can't open Devices and Printers, or "Add Printer". "Print" on progs like Notepad and Paint either crashes the prog. or shows nothing, and Word won't open at all.

    I have tried to remove all traces of Epson - nothing shows now on Programs.

    The installation failed both from the CD - on InstallNavi.exe, and, separately, when I tried to install the printer driver file d/l from the Epson site. The installation/unzipping just stopped after the blue line had gone a bit across the page - perhaps immediately after the files had been unzipped.

    The Epson Scan program *succeeded* in installing, and I was able to scan a page into the computer. But I have now removed every trace as far as I can of Epson.

    One early symptom, which no longer appears, was that I got: "The Active Directory Domain Services is currently unavailable" box, when fiddling with Print functions, I think.

    Another pos. symptom is that Procexp currently shows:

    GUI.exe
    ouc.exe
    csrss.exe
    winlogon.exe
    lsm.exe

    running but with " [Error opening process] "

    I also tried stopping Print Spooler in Local Services - but it didn't make any difference to anything.

    I managed to do a system restore to BEFORE Epson installation - by disabling AVG -

    but the above non-printing symptoms *still* occur

    I did a Malwarebytes scan *and* Ccleaner *and* AdwreCleaner scan -

    that eliminated many Conduit malware - and have successfully disabled it from Startup

    but all non-printing symptoms still there

    PLODR REPLY:
    Before you try installing the printer again, head to the malware removal section to be sure the computer is really free of malware.
    Start here:
    http://forums.majorgeeks.com/showthread.php?t=35407

    When you have all the logs from running the MGTools, start a new thread here:
    http://forums.majorgeeks.com/forumdisplay.php?f=35
    post that you removed Conduit malware and want to be sure nothing else is on the computer.

    MY REMOVAL ACTIONS:


    5 main reports per your removal guide uploaded by mistake to:

    http://forums.majorgeeks.com/showthread.php?p=1856103#post1856103

    {System here won't allow me to re-upload them in this thread]

    Please note - while MGTools running, Hijack This box popped up, so I let it run, and it GOT STUCK at Printer information. I then cancelled it, and MGTools, no longer stuck, proceeded to complete and produce MGTools.zip file.

    Many thanks for your kind attention
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your printer issues are not related to malware. Your logs are clean. I suggest you continue in the software forum.
     
  3. rafa

    rafa Private E-2

    Many thx for clearing that up. That sounds right
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are welcome.

    Since you are not having any malware problems, it is time to do our final steps:

    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.


    After doing the above, you should work thru the below link:

     
  5. rafa

    rafa Private E-2

    Many thx. Seems clear of malware. Printing probs persist - hopefully can be cured on other forum Best
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Good luck. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds