MajorGeeks Support Forums

Go Back   MajorGeeks Support Forums > ----------= PC, Desktop and Laptop Support =---------- > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 09-18-12, 03:44
iSheesh iSheesh is offline
Private E-2
 
Join Date: Sep 2012
Location: Singapore
Posts: 4
Thanks: 1
Thanked 0 Times in 0 Posts
Default Browsers Stopped Working Properly. Help!

It was yesterday 17 of September 2012, when i was downloading a song from "http://www.2shared.com/" clicked on the link and then it automatically downloaded a software instead it was dxDownloader or something i can't remember as i unistalled it, when i am done installing it,
Google Chrome that was still running crashed so i closed & open to access to the net eventually prompts from Microsoft Windows kept popping out saying "Google Chrome has stopped working", same goes to my Internet Explorer & Firefox ever since.

This are the scan logs that i did as following:
  • RKreport.txt from RogueKiller
    Malwarebytes Anti-Malware log
    TDSSKiller log - : No threats found(i will post when requested)
    HitmanPro log
    MGlogs
Attached Files
File Type: txt RKreport.txt (3.7 KB, 3 views)
File Type: txt Malwarebytes.txt (1.9 KB, 3 views)
File Type: txt TDSSkiller.txt (58.4 KB, 1 views)
File Type: log HitmanPro_20120918_1455.log (3.0 KB, 2 views)
File Type: log MGlogs.log (10.2 KB, 2 views)
Reply With Quote
Sponsored links
  #2  
Old 09-18-12, 15:57
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Browsers Stopped Working Properly. Help!

Welcome to Major Geeks!

We need to correct log from MGtools which is C:\MGlogs.zip as stated in the instructions. What you attached is a hijackthis log that you renamed to MGlogs.log

Also you need to attach the correct log from RogueKiller.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter
Reply With Quote
  #3  
Old 09-18-12, 23:52
iSheesh iSheesh is offline
Private E-2
 
Join Date: Sep 2012
Location: Singapore
Posts: 4
Thanks: 1
Thanked 0 Times in 0 Posts
Default Re: Browsers Stopped Working Properly. Help!

I hope this the right one, by the way i am running on a Windows Vista, 32 bit
Attached Files
File Type: zip MGlogs.zip (373.3 KB, 4 views)
File Type: txt RKreport[1].txt (5.2 KB, 1 views)
Reply With Quote
  #4  
Old 09-19-12, 16:10
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Browsers Stopped Working Properly. Help!

Quote:
Originally Posted by iSheesh View Post
It was yesterday 17 of September 2012, when i was downloading a song from "http://www.2shared.com/" clicked on the link and then it automatically downloaded a software instead it was dxDownloader or something i
Do you mean the below which I see on your PC? I need to know exactly before continuing:

http://www.portablefreeware.com/?id=1217


I do see the below in your RogueKiller log:

[TASK][SUSP PATH] WxDFastUpdaterTask{45BCB617-994D-431D-9837-38BDF6650BA1}.job : C:\ProgramData\Premium\WxDFast\WxDFast.exe -> FOUND
[TASK][SUSP PATH] OptimizerPro1UpdaterTask{9E8F7B10-91C8-4FE7-887E-4D232701C2C0}.job : C:\ProgramData\Premium\OptimizerPro1\OptimizerPro1.exe -> FOUND

And the below shows in your installed programs list
WxDFast

And I see the below was recently installed. Why and are you sure it is not the cause of your problem?
sprotector 1.62


See things it can do >>http://grvq.com/showpad.php?title=Network%20Security%20Protector&company=Getfreefile


Also Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista or Win 7, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

O4 - HKLM\..\Run: [SearchSettings] "C:\Program Files\Common Files\Spigot\Search Settings\SearchSettings.exe"

After clicking Fix, exit HJT.

Then delete the below folder
C:\Program Files\Common Files\Spigot
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter

Last edited by chaslang; 09-19-12 at 16:20..
Reply With Quote
  #5  
Old 09-19-12, 20:55
iSheesh iSheesh is offline
Private E-2
 
Join Date: Sep 2012
Location: Singapore
Posts: 4
Thanks: 1
Thanked 0 Times in 0 Posts
Default Re: Browsers Stopped Working Properly. Help!

I followed the steps as instructed but problems isn't resolved:


Yes it's the WxDFast that is seen on my PC and while it was installing somehow OptimizerPro1 also automatically installs
there's another Microsoft Windows prompt which i am getting is :
Windows host process (RUNdll32) has stopped working

And as for sprotector 1.62 i don't remember installing it any any point of time, it's a malware shown when i scan my PC with HitmanPRO but i don't know how to deal with it

This two were identified treats to HitmanPro:
sprotector.dll
C:\Program files\Sprotector\
sprote~1.dll
C:\progra~1.dll\sprote~1\

Last edited by chaslang; 09-20-12 at 00:15.. Reason: Removed lack of quoted fix !!!
Reply With Quote
Sponsored links
  #6  
Old 09-20-12, 00:19
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Browsers Stopped Working Properly. Help!

So go to Add/Remove Programs and uninstall each of the below:
OptimizerPro1
sprotector 1.62
WxDFast

Then reboot your PC. After reboot, do the below.

Rerun Hitman and allow it to fix anything it finds from the above programs. If it does find anything to remove, reboot afterwards and then run a new Hitman scan to and save a new log to attach.

Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator).

Then attach the below logs:
  • the new Hitman log
  • C:\MGlogs.zip
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter
Reply With Quote
  #7  
Old 09-20-12, 21:56
iSheesh iSheesh is offline
Private E-2
 
Join Date: Sep 2012
Location: Singapore
Posts: 4
Thanks: 1
Thanked 0 Times in 0 Posts
Default Re: Browsers Stopped Working Properly. Help!

Done as instructed, everything seems to be normal now all browsers worked perfectly
my google homepage was back and the stubborn automatic gadgetbox homepage was gone!

Here are the logs :
Attached Files
File Type: log newHitmanLog.log (18.6 KB, 3 views)
File Type: zip MGlogs.zip (374.6 KB, 1 views)
Reply With Quote
  #8  
Old 09-21-12, 15:14
chaslang's Avatar
chaslang chaslang is offline
MajorGeeks Admin - Master Malware Expert
 
Join Date: Feb 2004
Location: Northern New Jersey USA
Posts: 80,440
Thanks: 62
Thanked 7,687 Times in 4,146 Posts
Default Re: Browsers Stopped Working Properly. Help!

Excellent news.

I would also delete the below folder:
C:\ProgramData\SpeedyPC Software


If you are not having any other malware problems, it is time to do our final steps:
  1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. You can uninstall RogueKiller and HitManPro.
  2. Go back to step 6 oof the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
  3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
  4. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
  5. Go to add/remove programs and uninstall HijackThis.
  6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
    related to MGtools and some other items from our cleaning procedures.
  7. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
    • Refer to the cleaning procedures pointed to by step 7 of the READ ME
      for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
    • Then reboot and Enable System Restore to create a new clean Restore Point.
  8. After doing the above, you should work thru the below link:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't."


Support Majorgeeks on Facebook:

Majorgeeks Newsletter
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
VPN not working properly BayWalker Hardware 3 04-01-11 06:08
Audio stopped working in browsers after running malware removal albertpancakes Software 9 06-30-10 13:49
Sonic Solutions Shared Driver Component (SSRTLN.SYS) has stopped working properly Grunnie Software 5 04-13-10 13:15
ASP .NET not working properly. roshan_lanwala Software 0 08-22-08 12:39
AVG not working properly topazchugbug Malware Removal 1 12-14-04 13:05


All times are GMT -5. The time now is 15:29.

MajorGeeks.Com Menu

MajorGeeks.Com \ All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ NEW! PC Games \ System Tools \ Macintosh \ Demonews.Com \ Top Downloads

MajorGeeks.Com \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds


All content Copyright MajorGeeks.com source code Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger