running hijackthis

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by twodogs, Oct 1, 2007.

  1. twodogs

    twodogs Private E-2

    I need help. I have renamed hijackthis and ran it. I can not fin a message window or reply button.
     
  2. twodogs

    twodogs Private E-2

    I think it is here.
     

    Attached Files:

  3. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Welcome to MajorGeeks.com, please follow our standard cleaning procedures:

    [​IMG] Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support

    • Make sure you check version numbers and get all updates.
    [​IMG] Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    [​IMG]After doing ALL of the above and you still have a problem, make sure you have booted to normal mode and run the steps in the below thread to properly use HijackThis and attach the log:

    [​IMG] Downloading, Installing, and Running HijackThis
    • Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around..
    [​IMG]When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
    • CounterSpy Log - only for Windows XP, 2K, & NT users
    • AVG Antispyware Log - ONLY IF NEEDED you were not able to run CounterSpy. - only for Windows XP, 2K, & NT users
    • Bitdefender Log - from step 6
    • Panda Scan Log - from step 6
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • HijackThis Log
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  4. twodogs

    twodogs Private E-2

    It looks like I need to start over at the beginning again. The red desktop screen is back with vengeance! I didn't see anything listed to check when I ran hijack this in the safe mode. I did not see anything listed in the smitrem.exe either. I did see, however, the privacy_guard demon that has a hold on my computer. Also I saw (OD5227BF-OC5B-4EA8-833C-FE09F1496F39) that seems to have something to do with this privacy_guard and deep dive, smitfraud-c that is on my computer. I will try to attach files. After restarting, I had the blue desktop for a brief time, I went to the internet using IE and had my home page, went to Panda security and could not do the scan. It seemed like my computer was locked. I read that I needed to be in the normal mode so I closed out, went back to msconfig to check and noticed my red desktop was back. I am so confused and frustrated.:cry
     
  5. twodogs

    twodogs Private E-2

    Third attempt to reply. I am so frustrated:cry
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I understand your frustration however you must complete the steps in order for my to assist you. Run as many steps as possible and attach the requested logs and we will begin fixing some issues.
     
  7. twodogs

    twodogs Private E-2

    I started over again and followed the steps to the letter. As you can see I have 3 viruses and 20 files infected as the BitDefender found. It appears it was not able to delete them. I was not able to get online in the afe mode so I had to go into the normal mode. After I ran BitDefender, I tried to scan with Panda Active Scan again but no luck. Nothing happens. I hope you can help with the file I have sent. Thanks.
     
  8. twodogs

    twodogs Private E-2

    It is after midnight and I am exhausted. I have read several threads and wonder if I should lose everything and take the cpu back to a virgin state and build it back. Please tell me we can get rid of these viruses. I am planning my daughter's wedding and working full time. I have tomorrow off and then back to the grind. I really don't want to lose everything I have on my computer but I just can't rid the computer of these demons.
     
  9. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    We can remove anything, but you must runs all the steps and attach the logs. I'm not at your computer nor can I see what's on your computer. If you do not attach the logs there is no way I can assist you.

    If you can't run Panda that's ok for now, just attach the other logs.

    • AVG Antispyware Log - ONLY IF NEEDED you were not able to run CounterSpy. - only for Windows XP, 2K, & NT users
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • HijackThis Log
     
  10. twodogs

    twodogs Private E-2

    I ran Counter Spy. It didn't show any problems and I could not click on the result tab. The Run Key Bat didn't have a report either. I have attached a hijack this I did this morning before going into the safe mode again. I named it analyse 10-3 log. Then I have the hijack this log in the safe mode. Then the show new bat log. I will send another reply with more reports I have run.

    I ran the CCleaner agin today in the safe mode. Then I ran the Counter Spy. Then I ran the HS Remove
    Then the Hijack this. I even did Kaspersky online from your website. The Kaspersky showed I had 1 virus, Smitfraud and 2 objects, but no option to clean or delete them. It also showed many files locked or not scanned so I am not sure what the scan accomplishes.

    The red desktop is gone. Some reports show I have 0 viruses and objects and others show I still have something. I still could not run the Panda Scan.

    I still am afrraid I have something somewhere in here. Is there one program you trust more than another. It gets frustrating when some show something and others do not.

    Thanks for your help. I will send the other files.
     

    Attached Files:

  11. twodogs

    twodogs Private E-2

    Here they are.
     

    Attached Files:

  12. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I need a log from GetRunKey and also you should rename HijackThis to "analyzethis.exe" and run it again and attach the fresh log.

    That log appeared to have been taken from Safe Mode, if so please attach the new log from normal mode.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds