just ran all steps for malware removal and cleaning

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by lmhjcr, Oct 18, 2014.

  1. lmhjcr

    lmhjcr Sergeant

    I got a message yesterday and this morning when I started the computer and clicked to go online from my anti-virus program and something about a bad browser add-on called CBrowserHelper Object.

    I have been having issues with the computer suddenly shutting down on me (sometimes after it has been on for less than an hour and other times when it has been on for a few hours). But when I turn the computer back on there is no message about the computer having been shut down improperly.

    I was thinking that perhaps is is getting too hot since I know that hard drive is good (brand new one in fact and it passed all the hard drive tests) and since the battery on this laptop is really old I do not use it anymore and just keep it plugged into an outlet. I do keep the laptop elevated and the stand it is on has a fan running to help keep airflow to the underside of the laptop. I have eneded up getting a small fan and putting it behind the laptop and keep that running as well to keep the laptop cool and then it does not shut down on me (at least not yet) which is why I was thinking that there might be an issue with the cooling of the laptop. It is a Gateway M1629 running Vista Home Premium 32 bit operating system with 3GB of RAM and an AMD processor.

    However, After getting that message yesterday and this morning I figured I had better run the Malware steps here. I already run spyware and malware scans a few times a week and they found nothing. Unless the last step found something - none of the other scans found anything when they were done.

    I have attached all of the logs for your review. I then tried to use the Defogger to re-enable my CD Emulation Drivers but after clicking the re-enable the same screen was there so I clicked it again and got a message saying unable to open a file ???

    I am not sure if there was some sort of malware that these steps found or not but I did not see anything from the logs that I could read.

    Any help or suggestions would be greatly appreciated.

    Thank You
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Before we continue I would like for you to use MSConfig to put this machine back into normal start up mode.


    Search-Results Toolbar
    <<< Uninstall this.


    Re run Hitman Pro and have it remove everything APART from:


    And the entry on the Repairs tab is okay too I believe.



    [​IMG] Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.


    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this.

    Let me know of any problems you may have encountered with the above instructions and also let me know how things are running now!
     
  3. lmhjcr

    lmhjcr Sergeant

    Okay, I went to msconfig and changed it back to normal startup

    As for Search-Results Toolbar
    Where do I find that to uninstall it?

    In the meantime, I will use the Defogger and disable that again.

    Will wait to hear back before going on to re-run Hitman Pro again.

    Thanks So Very Much :)
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Control panel > Programs > Uninstall a program. :)
     
  5. lmhjcr

    lmhjcr Sergeant

    well, I now can't get windows to start. I just switched the startup back to normal and used the Defogger and then when to disable the UAC and restart the computer and all I keep getting the the Gateway with the F2 bios setup and F10 for boot menu; then the screen goes black and restarts and does the same thing again.

    If I click on F2 I can get into the bios and F10 will take me to the options for the order to boot but that is all. I can't even get into safe mode now.
     
  6. lmhjcr

    lmhjcr Sergeant

    Finally but the operating system disc in the computer and ran the startup repair option and I am now back in the computer. When I clicked to view the problem it said something about the boot file.
    Anyway, I am now back into the computer.
    I just went into the control panel and uninstalled Search-Results Toolbar and will now re-run hitman pro.
     
  7. lmhjcr

    lmhjcr Sergeant

    Hitman Pro is now running and once that is done and I let it remove everything but the files you listed I Will then download that other program and run it. Do I let it do anything or just get the log file afterwards?


    After that is done I will re-run the GetLots.bat file and will attach the logs to the next message (unless I have another problem or question.

    Once all of that is done, can I go back to selective startup and get rid of all of those items that I really don't need starting when windows starts up (and get rid of all of those icons in the sys tray)
     
  8. lmhjcr

    lmhjcr Sergeant

    The only thing that Hitman Pro found was Scheduled Update for Ask Toobar\
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree

    the items you mentioned are even there.

    I did click to delete it but it is asking for a product key to activate it. I clicked the Activate Free License option and removed that one item.

    I did not get an option to save a log this time ???

    Am now going to run the Junkware Removal Tool
     
  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You should not be using MSCONFIG to control start ups! You should look at using some third party software to do the job instead. Something like:

    http://www.majorgeeks.com/files/details/startup.html

    Just attach all of the logs that you DO have once everything is complete. Don't keep posting mini updates on what is happening. Things are getting cluttered.
     
  10. lmhjcr

    lmhjcr Sergeant

    Well, I have now done as instructed and came back to try and post using that computer but I cannot access any webpages. I keep getting an error message telling me that the DNS lookup failed. And I now have no internet connection, but I am on the same internet with my other computer so I know it is not the router. I am not sure what those steps did but it has now messed up my internet connection on that computer and clicking to Diagnose and repair is not working to fix the issue.
     
  11. lmhjcr

    lmhjcr Sergeant

    after trying to flush the dns and even doing ipconfig and getting all the correct results it took 3 reboots to get an internet connection again. I have now attached those files
     

    Attached Files:

  12. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Is your antivirus alerting you about a bad browser add on etc? Or has that now stopped?
     
  13. lmhjcr

    lmhjcr Sergeant

    sorry for the delay, wasn't feeling very well yesterday so never turned on the computer.

    I am not getting the alert anymore from the Anti-Virus about the Browser Helper Object but..... the computer is still shutting itself off. When I go to turn it back on I never get a message about it having been shut down improperly.

    That was the original issue and then I got that browser helper object message so I was thinking that perhaps the issue was malware. But the pc just shut itself off again after only being on for not quite 2 hours.

    I was thinking that perhaps I needed to clean out the pc fan more thoroughly than what I have been doing with making sure it is elevated, air circulation underneath and that there is no dust in the vents. But I am not certain as to what I would need to do or if perhaps there is something else I should be considering.
     
  14. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You can clean the fan as you say, over heating would be a likely suspect for shutting itself down. Topic for other forums though. Are you happy to be given final steps at this point?
     
  15. lmhjcr

    lmhjcr Sergeant

    absolutely :) Which forum section would you recommend I post the question regarding the overheating problem?

    Thanks Again for Absolutely Everything :)
     
  16. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Would you agree Hardware forum seems appropriate?

    You are most welcome for the assistance. :)


    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     
  17. lmhjcr

    lmhjcr Sergeant

    Will follow those steps and then I will go and post in the hardware section regarding the possible overheating problem.

    Thanks again. I greatly appreciate all the help :)
     
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You are most welcome. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds