MajorGeeks Support Forums IOBit Software

Go Back   MajorGeeks Support Forums > Majorgeeks.Com - Support Forums > Malware Removal
Register FAQ Members List Calendar Casino Mark Forums Read

Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient.


Reply
 
Thread Tools Display Modes
  #1  
Old 07-19-12, 23:09
coldeve coldeve is offline
Private E-2
 
Join Date: Jul 2012
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default READ ME logs

So after getting a second case of Security Shield malware... I was getting Firefox/Google forwarding issues. I ran MBAM and combofix and combofix seemed to have fixed the problem for 2 days. Security Shield no longer pops up..... Then Windows Security Essentials stopped working. Then my wireless router stopped working. I had to connect directly without wireless for it to connect. Here are my logs.
Attached Files
File Type: txt RKreport[1].txt (1.9 KB, 1 views)
File Type: txt mbam-log-2012-07-19 (21-50-16).txt (1.8 KB, 0 views)
File Type: zip MGlogs.zip (390.9 KB, 0 views)
File Type: zip hitmanlog.zip (281 Bytes, 0 views)
Reply With Quote
Sponsored links
  #2  
Old 07-20-12, 13:33
TimW's Avatar
TimW TimW is offline
MajorGeeks Administrator - Jedi Malware Expert
 
Join Date: Jan 2005
Location: The recesses of my mind!
Posts: 44,603
Thanks: 377
Thanked 4,195 Times in 3,985 Posts
Default Re: READ ME logs

Please re-run ComboFix and attach the log.
__________________
Major cake licker.
YCLAHTW, BYCMHD!!

Major Geeks on Facebook

Major Geeks Newsletter
Reply With Quote
  #3  
Old 07-22-12, 19:21
coldeve coldeve is offline
Private E-2
 
Join Date: Jul 2012
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default Re: READ ME logs

I ran combofix again and now MS Security Essentials works.
Attached Files
File Type: txt combofix.txt (14.1 KB, 1 views)
Reply With Quote
  #4  
Old 07-22-12, 20:30
coldeve coldeve is offline
Private E-2
 
Join Date: Jul 2012
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default Re: READ ME logs

Cancel that. Rebooted and MS SE is not running again. It wont let my router connect to the internet either. I had to go direct in from the modem. I tried resetting router to factory, and firmware upgrade. no go.
Reply With Quote
  #5  
Old 07-23-12, 13:12
TimW's Avatar
TimW TimW is offline
MajorGeeks Administrator - Jedi Malware Expert
 
Join Date: Jan 2005
Location: The recesses of my mind!
Posts: 44,603
Thanks: 377
Thanked 4,195 Times in 3,985 Posts
Default Re: READ ME logs

Sorry for the delay, I lost internet service on Sat. and just got it back.

* Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
If it is not on your Desktop, the below will not work.
* Also make sure you have shut down all protection software (antivirus, antispyware...etc) or they may get in the way of allowing ComboFix to run properly.
* If ComboFix tells you it needs to update to a new version, make sure you allow it to update.
* Open Notepad and copy/paste the text in the below code box into it (make sure you scroll all the way down in the code box to get all lines selected ):
Code:
ClearJavaCache::
KILLALL::

File::
c:\users\owner\AppData\Local\Temp\0053DB5.tmp

Registry::
[-HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\X6va005]
* Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
* At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
* You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
If it asks you to overide the previous file with the same name, click YES.
* Now use your mouse to drag CFscript.txt on top of ComboFix.exe

* Follow the prompts.
* When it finishes, a log will be produced named c:\combofix.txt
* I will ask for this log below

Note:

Do not mouseclick combofix's window while it is running. That may cause it to stall.

Note: If after running Combofix you discover none of your programs will open up, and you recieve the following error: "Illegal operation attempted on a registry key that has been marked for deletion". Then the answer is to REBOOT the machine, and all will be corrected.

Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).

Then attach the below log:
  • C:\MGlogs.zip

Make sure you tell me how things are working now!
__________________
Major cake licker.
YCLAHTW, BYCMHD!!

Major Geeks on Facebook

Major Geeks Newsletter
Reply With Quote
Sponsored links
  #6  
Old 07-23-12, 16:38
coldeve coldeve is offline
Private E-2
 
Join Date: Jul 2012
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default Re: READ ME logs

same situation after reboot
Attached Files
File Type: zip MGlogs.zip (383.2 KB, 1 views)
File Type: txt ComboFix.txt (17.1 KB, 1 views)
Reply With Quote
  #7  
Old 07-24-12, 12:20
TimW's Avatar
TimW TimW is offline
MajorGeeks Administrator - Jedi Malware Expert
 
Join Date: Jan 2005
Location: The recesses of my mind!
Posts: 44,603
Thanks: 377
Thanked 4,195 Times in 3,985 Posts
Default Re: READ ME logs

I am not seeing any issues in your logs. Tell me what problems you are still having, if any.
__________________
Major cake licker.
YCLAHTW, BYCMHD!!

Major Geeks on Facebook

Major Geeks Newsletter
Reply With Quote
  #8  
Old 07-24-12, 14:22
coldeve coldeve is offline
Private E-2
 
Join Date: Jul 2012
Posts: 5
Thanks: 0
Thanked 0 Times in 0 Posts
Default Re: READ ME logs

Ms security essentials wont start ever. Even with manual attempts. My wireless router stopped connecting to internet. I uninstalled and re upped firmware and reinstalled and no go. Direct connection modem to pc connects fine. Web forwarding very occasionally
Reply With Quote
  #9  
Old 07-24-12, 14:31
TimW's Avatar
TimW TimW is offline
MajorGeeks Administrator - Jedi Malware Expert
 
Join Date: Jan 2005
Location: The recesses of my mind!
Posts: 44,603
Thanks: 377
Thanked 4,195 Times in 3,985 Posts
Default Re: READ ME logs

Sounds like issues you need to address in either the software or networking forums.
__________________
Major cake licker.
YCLAHTW, BYCMHD!!

Major Geeks on Facebook

Major Geeks Newsletter
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Logs from READ AND RUN ME FIRST bikerack11 Malware Removal 17 02-23-10 14:29
Logs For Read & Run Me First bb4now Malware Removal 3 02-04-10 00:22
did read and run first...here are my logs... jeremia18v4 Malware Removal 2 08-25-08 21:13
Read and Run....The logs jad31 Malware Removal 11 06-20-08 12:51


All times are GMT -5. The time now is 18:19.


MajorGeeks.Com Home Page
| Admin Tools | All In One | Anti-Spyware | Anti-Virus | Appearance | Backup | Benchmarking | BIOS | Browsers | Covert Ops |
Data Recovery | Diagnostics | Drive Cleaners | Drive Utilities | Drivers | Driver Tools Ergonomics | Firewalls | Games | Game Tweaks | Graphics | Input Devices | Internet Tools | Macintosh | Mail Utilities | Memory | Messaging | Monitoring | Microsoft | Multimedia | Networking | Office Tools | Process Management | Processor | Registry | Security | System Info | Toys | Video | Miscellaneous
|

-->
Powered by vBulletin® Version 3.8.4
Copyright © 2009 vBulletin Solutions, Inc. All rights reserved.
Ad Management by RedTyger