![]() |
IOBit Software
|
|
|
||||||
| Malware Removal Malware removal forum. Please see the READ ME FIRST thread before you post. Forum is staffed by a small number of volunteers, please be patient. |
![]() |
|
|
Thread Tools | Display Modes |
|
#1
|
||||
|
||||
|
Hello.
A friend asked me to have a look at his PC as he was no longer able to access the internets. Malwarebytes and super-antispyware were both semi effective in finding and cleaning some of the troublemakers, but still no net. I ran through the process, with combofix finding the tcp/ip stack thing. Rootrepeal finds only hyberfil.sys. Logs are attached. Thank you in advance for your time and effort.
__________________
Want an orange? |
| Sponsored links |
|
|
|
#2
|
||||
|
||||
|
Here is the Root Repeal log
__________________
Want an orange? |
|
#3
|
||||
|
||||
|
You have some required Windows files that having been deleted/corrupted. Also the registry has been modified. Both of these are why you cannot access the internet.
We need to run a couple additional scans before getting started. Goto the below link and follow the instructions for running TDSSKiller from Kaspersky
See the download links under this icon
Now please download Farbar Service Scanner and run it on the computer with the issue.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-09-12) | ||
|
#4
|
||||
|
||||
|
Thank you much Chaslang.
Here are the reports from those programs.
__________________
Want an orange? |
|
#5
|
||||
|
||||
|
You're welcome.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-10-12) | ||
| Sponsored links |
|
|
|
#6
|
||||
|
||||
|
Thank you. Logs are attached.
__________________
Want an orange? |
|
#7
|
||||
|
||||
|
That looks much better. Are you still having any problems? If so, exactly what?
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-11-12) | ||
|
#8
|
||||
|
||||
|
Thanks, I am still unable to connect to the internet.
It says I am connected, but I cannot reach any websites in either IE or Chrome.
__________________
Want an orange? |
|
#9
|
||||
|
||||
|
Also after a restart I am getting an error:
RUNDLL Error in C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCJtime.doo Missing entry:RunDLLEntry
__________________
Want an orange? |
|
#10
|
||||
|
||||
|
Quote:
Does that connect you?
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-11-12) | ||
| Sponsored links |
|
|
|
#11
|
||||
|
||||
|
Quote:
This is a printer software driver issue. You may need to reinstall the software for the printer.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-11-12) | ||
|
#12
|
||||
|
||||
|
Thank you again Chaslang.
Typing in the IP Address did the trick, but I am unable to navigate beyond there. Yes, I meant DLL.. sorry.
__________________
Want an orange? |
|
#13
|
||||
|
||||
|
Please run C:\MGtools\FixNet.bat
This will run a few commands and then reboot your computer. After your computer reboots, see if there is any changed to your ability to connect via DNS names.
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-11-12) | ||
|
#14
|
||||
|
||||
|
No joy. I am still unable to connect via DNS names.
I thank you for your continued assistance.
__________________
Want an orange? |
|
#15
|
||||
|
||||
|
You're welcome.
Download Windows Repair by Tweaking.com and unzip the contents into a newly created folder on your desktop.
Any change for the better?
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-12-12) | ||
| Sponsored links |
|
|
|
#16
|
||||
|
||||
|
None.
It seems that I neglected to mention that combofix found Rootkit.Zero Access. Combofix also made it clear that the recovery console is missing. I do not know if either of those will be useful, but though I should include the info. Thanks again, meiT
__________________
Want an orange? |
|
#17
|
||||
|
||||
|
You're welcome.
Now download The Avenger by Swandog46, and save it to your Desktop. See the download links under this icon ![]()
Quote:
Now download the current version of MGtools and save it to your root folder. Overwrite your previous MGtools.exe file with this one. Run MGtools.exe ( Note: If using Vista or Win7 make sure UAC is still disabled. Also don't double click on it, use right click and select Run As Administrator ) Then attach the below logs:
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-18-12) | ||
|
#18
|
||||
|
||||
|
Sorry for the delay in responding.
I ran Avenger and MGTools per your instructions, still unable to access the internet via dns. Logs are attached. Thank you
__________________
Want an orange? |
|
#19
|
||||
|
||||
|
Per your logs, everything is fine with your PC. Are you sure the problem is not in your router? Do you have another PC ? If so is it working okay thru the router?
If you don't have another PC and only have this one PC, what happens if you bypass your router and reboot your PC before trying to connect?
__________________
"There are 10 types of people in this world. Those who understand binary and those who don't." Support Majorgeeks on Facebook: Majorgeeks Newsletter |
| The Following User Says Thank You to chaslang For This Useful Post: | ||
MeitHed (06-20-12) | ||
|
#20
|
||||
|
||||
|
That is disheartening. I have several PC's connected through the router, all of which run fine.
I am open to suggestions. Thanks again for your time.
__________________
Want an orange? |
| Sponsored links |
|
|
![]() |
| Thread Tools | |
| Display Modes | |
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| TCP IP Stack is Dead. Win XP | captzap | Malware Removal | 3 | 12-12-11 23:02 |
| Stack Overflow | tamarbri | Software | 5 | 04-27-10 18:35 |
| NIC doesn't see TCP/IP stack | augiedoggie | Networking | 4 | 05-10-09 20:10 |
| wmp bo:stack detected | FAlbee | Malware Removal | 1 | 08-01-07 19:58 |
| BO:Stack | Shred666 | Malware Removal | 1 | 11-04-06 15:41 |