SAS failed to load

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by tm711, Aug 30, 2009.

  1. tm711

    tm711 Corporal

    Tried to run SAS today for a routine scan. It would not start - it would pop up, then stop. Read about some simlilar problems in this forum that sounded like malware. Ran all the steps in read me first. Got SAS to run finally, but by then figured I may as well go thru all the step in Read Me. (Got SAS to run by running as User rather than default user - it has now reset itself back to default user - never had this problem before - not sure what is up).

    Logs attached - mg logs will be in next post
     

    Attached Files:

  2. tm711

    tm711 Corporal

    Re: SAS failed to load part 2

    Tried to run SAS today for a routine scan. It would not start - it would pop up, then stop. Read about some simlilar problems in this forum that sounded like malware. Ran all the steps in read me first. Got SAS to run finally, but by then figured I may as well go thru all the step in Read Me. (Got SAS to run by running as User rather than default user - it has now reset itself back to default user - never had this problem before - not sure what is up

    MG logs attached in this psot.
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Still need the other requested logs:
    MBAM
    Combo
    RootRepeal
    And the SAS log.
     
  4. tm711

    tm711 Corporal

    Tim:

    Other logs are the first post in this thread. I could only load 4 logs at a time.

    I just tried them and they opened. If they do not open for you I do not what is wrong with them.
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Beats me as to how I missed that.

    However, you are going to have numerous problems because of the amount of RAM you have installed:
    Total Physical Memory 256.00 MB
    Available Physical Memory 55.65 MB

    You should have 4 times that amount.

    You are way out of date with your version of SUPERAntiSpyware.

    • Please uninstall your current version (this is necessary).
    • Then download this SUPERAntiSpyware
    • Install this new version. It may tell you that you need to reboot to complete the installation. You must reboot at this time.
    • After the reboot, run SUPERAntiSpyware and immediately click the Check for Updates button to get more updates for the database.
    • Now run a new full scan of your system. And attach this new log.

    Now run Malwarebytes and click the Update tab. Then click the Check for Updates button so you update to the current version of the program and database. Then run a new scan with it too. Attach the new log.

    It also appears as if you may have at one point had a cracked version of ZoneAlarm installed. Remnants of this may be causing some issues.
     
  6. tm711

    tm711 Corporal

    I reinstalled SAS just as you said. It works fine now! :) Log attached. I updated mbam and ran that too. Log attached. I thought about running MGtools and Combo fix because SAS found some stuff, but after a google search I decided I better wait for you to tell me if that is necessary. Far better to listen to the experts I think!

    A question: SAS told me to restart computer and I did, but of course I could not toggle system restore. So, has this stuff been fixed or not?

    I installed ZA from their site two times. The second one was an update or newer version. Right now I cannot remember why I updated it. How it ever got cracked I have no idea. How do I remove the remnants?
     

    Attached Files:

  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Those logs are clean. The only thing left is to do the final clean up:

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real-time protection. They are useful as backup scanners.They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    5. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Go to add/remove programs and uninstall HijackThis.
    7. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    8. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures in step 3 the READ ME for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore ato create a new clean Restore Point.
    9. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds