Another HiJack log

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by cwintz, Sep 17, 2005.

  1. cwintz

    cwintz Private E-2

    For awhile I've been trying to get rid of spyware on my computer. I have went from 2568 problems down to 26 problems. I run Spybot and it says these problems cannot be fixed.

    Of course, it seems coolweb is the major fugitive, but I just can't catch it.

    Can someone please help me rid my poor PC of this nuisance once and for all?

    Thanks
     

    Attached Files:

  2. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Please follow the steps below:

    - Run ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

    Make sure you check version numbers and get all updates.

    - Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps below:

    - Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).
     
  3. cwintz

    cwintz Private E-2

    I have done everything as directed.

    I also ran spybot again, the same 26 problems could not be fixed.

    Here is my log.
     

    Attached Files:

  4. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    There are no indications in the HJT log that any of the requested online scans where run. Also you must close any browsers before running HJT. Is this log from Normal Mode or Safe Mode?

    Also your Operating System is seriously out of date, and represents a security risks. Update your OS after we are done.

    According to your log you are running no Anti-Virus or Firewall.

    Download
    - Pocket Killbox

    In HJT Choose Open the Misc Tools Section choose Process Manager, Highlight
    Choose Kill Process

    Now scan and have HJT Fix the following lines:
    Now run Pocket Killbox:
    Choose Tools > Delete Temp Files and click OK.

    Run Killbox.exe. Paste the below filenames into KILL BOX one at a time. Check mark the box that says "Delete on Reboot" and checkmark the box "Unregister DLL" (If available) Click the RED X and it will ask you to confirm the file for deletion…say YES and when the next box opens prompting you to reboot now...click NO...and proceed with the next file. Once you get to the last one click YES and it will reboot. Note many of the file list below may not exist but we need to check for them anyway.
    If Killbox does not reboot or you get a Pending Operations type error message just reboot your PC yourself.

    Now boot into SAFE MODE open Windows Explorer navigate to and DELETE the following files:
    Now run Ccleaner (installed while running the READ ME FIRST). Now if running Win XP goto c:\windows\Prefetch and delete all files in this folder.

    Now we need to Reset Web Settings:
    1) If you have an Internet Explorer icon on your Desktop, goto step 2. If not, skip to step 3.
    2) Now right click on your desktop Internet Explorer icon and select Properties. Then click the Programs tab and then click "Reset Web Settings". Now go back to the General tab and set your home page address to something useful like www.majorgeeks.com. Click Apply. Click Delete Cookies, Click Delete Files and select Delete all Offline content too, Click OK. When it finishes Click OK. Then skip step 3.
    3) If you do not have an Internet Explorer icon on your Desktop, click Start, Control Panel (for some systems it may be Start, Settings, Control Panel), Internet Options, Programs tab and then click "Reset Web Settings". Now go back to the General tab and set your home page address to something useful like www.majorgeeks.com. Click Apply. Click Delete Cookies, Click Delete Files and select Delete all Offline content too, Click OK. When it finishes Click OK.

    Now reboot in normal mode and post a new HJT log. And tell us how things are working.

    Read this thread: How to Protect yourself from malware!
     
  5. cwintz

    cwintz Private E-2

    I have downloaded, deleted, and re-booted till my fingers bled.

    All of it is 100% worth it. The problem is solved and I am forever in debt.

    Here is my new and improved hi-jack log.

    Thank you.
     

    Attached Files:

  6. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    That log looks good. You need to bring your system up2date by running windows update and installing SP2. Also you need to install an Anti-Virus Program and software firewall.

    Have a look at this thread How to Protect yourself from malware!.
     
    Last edited: Sep 17, 2005
  7. cwintz

    cwintz Private E-2

    Again, thanks for your help.

    I will run the updates and include an anti-virus.

    Any suggestions for the firewall?
     
  8. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    I use Sygate Personal Firewall.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds