Old Laptop. Can't Run Malwarebytes Anti-malware Software. Suspect Malware Inhibits It

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by sakoul, Jul 16, 2016.

  1. sakoul

    sakoul Private E-2

    I have an old laptop (2003 bought and rarely used).
    Today i tried to run the RED AND RUN ME FIRST MALWARE REMOVAL GUIDE for it.
    The CCleaner run was smooth and get rid of some junk.
    HOWEVER when i tried to run the Malware bytes software i got the message :

    mbam.exe Application Error
    The application failed to initialize properly(0xc000001d). Click on OK to terminate the application.

    I suspect that my laptop has a malware that does not let it run the Antimalware software...
    Can you please help me?
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Are you able to run ANY of the tools, sakoul?

    • RogueKiller
    • Hitman Pro
    • TDSSKiller
    • MGTools
     
  3. sakoul

    sakoul Private E-2

    I will try to run them in the order you provide
     
    Kestrel13! likes this.
  4. sakoul

    sakoul Private E-2

    From the 4 tools you mention above i was able to run Hitman Pro and MGTools.
    Here are the relevant file
     

    Attached Files:

  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Re run Hitman Pro, enable/activate the free trial and have it remove all that it finds.
    Afterwards, see if the below programs will run:

    • Malware Bytes
    • RogueKiller
    If they run, upload logs from each.
    If they do NOT run, just continue on and do this:

    Run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this.
     
  6. sakoul

    sakoul Private E-2

    When i reboot my PC i get the message
    "Malwarebytes Anti-Malware has encountered a problem and needs to close. We are sorry ofr the inconvenience. Please tell Microsoft about this problem BLA BLA BLA..."

    I run hitman pro and had it remove many things. Rogue killer did not run.
    I was also able to run MGTools. Here is the zip file
     

    Attached Files:

  7. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Before we continue I would like for you to use MSConfig to put this machine back into normal start up mode. Any other mode is primarily used for troubleshooting and diagnostic purposes. You should look into some third party software to control start up's.

    Also you are using Windows XP which is out of date and no longer supported by Microsoft and it is prone to having security issues now.

    If you do not use Windows Messenger Run this Disable/Remove Windows Messenger to remove Windows Messenger. Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.


    Please download the latest version of Farbar Recovery Scan Tool and save it to your desktop.

    Note: Make sure you download the correct version for your PC. Only the correct version will work.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  8. sakoul

    sakoul Private E-2

    I put my PC back to normal mode.
    I had to download and run Autoruns in order to deter some programs from running at start up.
    I removed Windows Messenger.
    I also downloaded the Farbar Tool.
    Here are the 2 files asked
     

    Attached Files:

  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    NOTE: This script was written specifically for this user for use on this particular computer. Running this on another machine may cause damage to your operating system.
    Download Fixlist.txt

    Save fixlist.txt on your Desktop. Make sure you save it as a txt file.

    • You should now have both fixlist.txt and FRST.exe on your Desktop.
    • Now I want you to disconnect your PC connection to the internet by unplugging the cable ( if it is wireless then temporarily shutdown the wireless network ).
    • Run FRST.exe by right clicking on it and selecting Run As Adminstrator
    • Click the Fix button just once and wait.
    • Your computer should reboot after the fix runs.
    • Reconnect your internet connection after reboot so you can come back here to continue.
    • The tool will make a log on the Desktop (Fixlog.txt) please attach this new log to your next reply (attach or paste)
    Then attach the below log:


      • Fixlog.txt

    Will Malware Bytes run now?
     

    Attached Files:

  10. sakoul

    sakoul Private E-2

    Here is the Fixlog.txt you asked
     

    Attached Files:

  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I had asked about Malware Bytes? Will that run now?
     
  12. sakoul

    sakoul Private E-2

    No it does not :(
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    What about RogueKiller?
     
  14. sakoul

    sakoul Private E-2

    Neither RogueKiller...
    Do you see something suspicious in the files uploaded?
     
  15. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Well FRST removed some restrictions which I thought could have solved the running of Malware Bytes and RogueKiller, but obviously not.
    Run a fresh scan with FRST like you did in post#7 and upload the latest log.

    ALSO... do this: Run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this.
     
  16. sakoul

    sakoul Private E-2

    here they come
     

    Attached Files:

  17. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No, you did the fix again, I just want you to run FRST normally, as I said, like in post#7. Do this:

    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  19. sakoul

    sakoul Private E-2

    Here are the 2 files you asked.

    I also downloaded chameleon. I was finally able to run chameleon#11.
    During the run my desktop files disappeared.
    When the run finished the DOS window closed however i could not see the desktop files neither had access to start button, lower toolbar etc. So i had to force restart (pressed ope/close button).
    Then i tried to run Malwarebytes but couldn't.
    Everytime i start my laptop i get a message that Malwabytes cant run etc...
    Rogue killer doesn't work as well...
     

    Attached Files:

  20. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi, I think I'm seeing what the problem might be. Give me a little while and I'll post back with a fix...
     
  21. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    NOTE: This script was written specifically for this user for use on this particular computer. Running this on another machine may cause damage to your operating system.
    Download Fixlist.txt

    Save fixlist.txt on your Desktop. Make sure you save it as a txt file.

    • You should now have both fixlist.txt and FRST.exe on your Desktop.
    • Now I want you to disconnect your PC connection to the internet by unplugging the cable ( if it is wireless then temporarily shutdown the wireless network ).
    • Run FRST.exe by right clicking on it and selecting Run As Adminstrator
    • Click the Fix button just once and wait.
    • Your computer should reboot after the fix runs.
    • Reconnect your internet connection after reboot so you can come back here to continue.
    • The tool will make a log on the Desktop (Fixlog.txt) please attach this new log to your next reply (attach or paste)
    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator).

    Then attach the below logs


      • Fixlog.txt

      • C:\MGlogs.zip

    Is Malware Bytes now able to run? What about RogueKiller?

     

    Attached Files:

  22. sakoul

    sakoul Private E-2

    Neither works :(
     

    Attached Files:

  23. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Part of th big problem I see is that the PC while bing old, just does not have enough memory nor enough free hard disk space. From the logs, you can see the below:
    Code:
    Time Zone	US Eastern Daylight Time	
    Total Physical Memory	512.00 MB	
    Available Physical Memory	95.82 MB	
    	
    	
    Drive	C:	
    Size	37.25 GB (39,999,500,288 bytes)	
    Free Space	5.09 GB (5,469,413,376 bytes)	
    
     
    Kestrel13! likes this.
  24. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Would this affect the running of RogueKiller, Chas?

    From what I read with XP, at least 256mb of RAM is needed to run Malware Bytes. This user doesn't have enough for that... I'm not sure about RogueKiller...
     
  25. sakoul

    sakoul Private E-2

    So what should i do next?
     
  26. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Uninstall Malware Bytes using Revo Uninstaller

    Now reinstall and see if it will run. Let me know.
     
  27. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    satrow and Kestrel13! like this.
  28. sakoul

    sakoul Private E-2

    Kestrel13 i uninstalled Malware Bytes with the software provided.
    What should i do next? Install it again or redirect and follow the above link?
     
  29. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Use the link Chaslang provided.
     
  30. sakoul

    sakoul Private E-2

    I was finally able to run MalwareBytes with the method provided by Chaslang :)
    Here is the log file created.
    Should i worry about Rogue Killer?
    What else should i do?
     

    Attached Files:

    Kestrel13! likes this.
  31. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Re run Hitman Pro, please (just a scan) and upload latest log.
     
  32. sakoul

    sakoul Private E-2

    Here is the log.
    What do you think?
     

    Attached Files:

  33. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hitman log looks great.
    When you re run Malware Bytes yet again, the way you did following Chaslang's link, does it still find anything when the scan is finished or not?
    Is RogueKiller able to be run in Safe Mode? (It could just be as Chas says, this pc could be old and incompatible with the software) Let me know.
     
  34. sakoul

    sakoul Private E-2

    MalwareBytes run smoothly and found no traces!
    RogueKiller was unable to run even in Safe Mode
     
  35. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Run FRST one more time:

    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  36. sakoul

    sakoul Private E-2

    Well, what do you think?
     

    Attached Files:

  37. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    The logs are clean. :) Whatever is preventing RogueKiller from running I'm certain it isn't malware.
     
  38. sakoul

    sakoul Private E-2

    So Kestrel13 this is the end then?
     
  39. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes, I am satisfied that malware is not the cause of RogueKiller not running...

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     
  40. sakoul

    sakoul Private E-2

    Ok kestrel.
    I did all these.
    Thanks for your help
     
  41. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You are most welcome. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds