XP machine, seems better but lots of problems

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by ithryn, Dec 16, 2010.

  1. ithryn

    ithryn Private E-2

    1.5ghz, 448 ram?, Windows XP machine that belongs to my inlaws. Booted and loaded the user desktops extremely slow. Seems to be zippier since running through the README. However I noticed the logs came up with a lot of things - what do I need to remove?

    If it doesn't show up in the logs, I was able to update Sun Java (it kept erroring out before I ran through all the scans!). I removed Yahoo Toolbar.

    Thanks!
    Chris
     

    Attached Files:

  2. ithryn

    ithryn Private E-2

    mglogs
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    First off, it is a very bad idea to allow all users to have Admin. privileges!! You need to run both SAS and MBAM on each user account. Then attach the logs that show infections, be sure to name them so we know which account the come from.

    Second, why am I not seeing any AV software on this machine?

    Let's just have you do this:

    Copy just the bold text below to notepad (Do not include any space above the word REGEDIT). Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    Let me know what issues you still are having, if any.
     
  4. ithryn

    ithryn Private E-2

    I ran that regedit file and got a success message.

    I uninstalled AVG just before doing the README process. Now I installed Avira. I was also able to updated to Service Pack 3 (something that was blocked before).

    Booting times and running times are much improved, but I'll run SAS and MBAM on the other user accounts. The ones posted come from the account named HAL. Thanks!

    Chris
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Well, that sounds promising. Let me see any logs that are infected and we may have you run some other scans on those accounts.
     
  6. ithryn

    ithryn Private E-2

    Service Pack 3 finished installing and I was able to enter into the same user account I was using to run the scans. However I logged out and logged into the computer owner's user account (Tom) and it was completely hosed. It said there was an error loading the local user account and it gave me a default Windows XP account. I panicked and thought all of his photos, etc were gone, but they were still on the HD. Just the desktop was gone. But that would not be tolerated very well by the owner, so I cycled back a System Restore point. What do you think would cause that? Malware - or are there bigger problems here? I'm also not sure it's a Genuine Advantage (i.e. legitimate) copy of Windows XP - I'm not sure, but I think they messed up their OEM version and instead of restoring, had someone install their copy.

    Forgoing SP3 doesn't seem like a good idea, but I'm at a loss.

    I have to wait to get into one of the user accounts because it's password-locked. However, I'm running a scan on a second user account now (Tom) and it's not coming up with anything. A good thing I assume? It is running through all the user's files just like it did the first time through - so is this redundant or is it scanning memory resident things?

    Chris
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    More than likely it is a problem with windows as far as the account becoming corrupted. Let me know what the scans find.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds