Google Chrome Attach

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by SuperiorBuff, Jun 18, 2010.

  1. SuperiorBuff

    SuperiorBuff Private E-2

    I think I have some sort of malware problem that attached to Google Chrome.

    I am not able to open Outlook 2003 in standard or safe mode; Windows XP OS. I get the following message "Microsoft Office Outlook has encountered a problem and needs to close." I then get a message stating that Outlook failed to start last time and asks if I would like to start in safe mode. I get the first message again. If I try again I get the following message, "Outlook failed to launch in safe mode. Would you like to start 'Detect and Repair'? I click yes and get the Windows Installer box with the progress meter at the bottom. After several minutes the installation crashes.

    I found scanpst.exe and repaired both my outlook.pst and archive.pst files. Did not work.


    Internet Explorer also will not open. I get a notice from Google Chrome asking if I want to save the destination page. If I click no Explorer closes. If I click yes, Explorer closes and the page is opened in Chrome.

    I uninstalled Chrome but the problem persists.


    In running CCleaner the following two entries keep coming up under the registry cleaner:

    InProcServer32\c:\Program Files\Norton Security Suite\Engine\4.0.0.12RScan.dll
    IBackup LocationsShellFolderImpl - {00020424-0000-0000-C000-000000000046}

    I have run it at lease 10 times with the same result.

    I have also found that sending E-mail through other applications, such as Quickbooks and our hosted CRM, produces the Chrome save as pop up and then fails. Program help menus are doing the same thing.

    I have attached my logs, however, MGTools will not run. I tried to delete it and re-download with the same result. I did successfully run it a few days ago and attached that log.

    I originally thought this was a corrupt .pst file issue after working through the read me page first. Since a few days have passed, I ran the scans again.
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi there and welcome. I am currently reviewing your logs and will get back to you with a set of instructions in the next post I make to you.
     
  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes you have an older version of MGTools. However I am not seeing any signs of malware in any of your logs. Please visit the software forum to resolve any outstanding, non malware related problems. :) Also you can do this and see if it finds anything else:

    Important Notice: A new version of SUPERAntiSpyware is available.
    • Please uninstall your current version (this is necessary).
    • Then download this SUPERAntiSpyware
    • Install this new version. It may tell you that you need to reboot to complete the installation. You must reboot at this time.
    • After the reboot, run SUPERAntiSpyware and immediately click the Check for Updates button to get more updates for the database.
    • Now run a new full scan of your system.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds