hijack

Discussion in 'Malware Help (A Specialist Will Reply)' started by alanc1, Dec 30, 2007.

  1. alanc1

    alanc1 Private E-2

    :wave Hi. I have just downloaded Hijack, and ran a scan, and then it
    suggested i join a forum to find out what i can delete, could someone please
    tell me how i go about getting my list of items from Hijack onto this forum to
    ask someone which i can delete and whick i can,t.
    Regards Alanc1
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Do you mean HijackThis?

    Most people are under the very mistaken misconception that HijackThis is a malware scanning and detection tool. It is not! HijackThis is simply a tool that is used to identify browser hijackers and in some cases it will show entries for some malware that is for instance running at startup. A HijackThis log shows the following:
    • a running process list with no reference to good or bad
    • it lists the contents of a selected group of registry keys that is an an extremely small subset of the tens of thousands of keys that may exist. Again no reference to good or bad.
    • and some of the above keys that are shown may show some non-Microsoft system services that are running. Again with no reference to good or bad.
    The decision on what is good or bad is left a person with significant Windows and malware cleaning experience.

    HijackThis does not come close to showing all malware that could be hiding on a PC. Anyone who has an infected computer and is relying on HijackThis without the benefit of running other scans such as Spybot, Windows Defender, BitDefender & Panda, CCleaner, etc. are more than likely still infected. In most cases, where there is one virus/trojan there are more.

    The goal of this forum is to remove all malware, and this cannot be done properly by just seeing a HijackThis log.


    Thus, if you have malware problems and wish to remove them, please follow the instructions in the below link and attach the requested logs when you finish these instructions.

    READ & RUN ME FIRST. Malware Removal Guide
     
  3. alanc1

    alanc1 Private E-2

    :wave Hi. I have downloaded Combofix.exe, and d/clicked and it comes up
    with: it cannot download some files, shut everything down and shut off,
    then a small box comes up with: Comodofix.exe is now uninstalled. Plus it also
    gave the date and said: Comodofix was outdated. What do i do from here.
    Regards Alan
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Did you download ComboFix from our link? Please try again and be sure to download from our link. If you still get the same error message, try setting the date on your PC back to 12/01/2007 and then try running ComboFix. If none of this works, fix your date and then skip ComboFix and continue with the other steps.
     
  5. alanc1

    alanc1 Private E-2

    Hi. I have done all that, but still no good,yes i did download from your link.
    From now i am in trouble, i don,t seem to understand the rest of the
    procedure. I,ll have a go and see what happens.Thank-you for your help.
    Regards Alanc1
     
  6. alanc1

    alanc1 Private E-2

    :wave Hi. I do not have any problems with S & D -AVG-CCleaner. I will try and
    attach files from Mglogs
     

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I believe your problem is that you are not downloading the programs. You are opening them (which is the same as running them) from the website links. I say this because of how I saw you run MGtools.exe in your logs. What I see is this:

    C:\Documents and Settings\Alan\Local Settings\Temporary Internet Files\Content.IE5\3RPSB8UY\MGtools[1].exe

    The above means that you did not follow the instructions that said download MGtools.exe to C:\MGtools.exe. It means you ran it right from our website. You did the same thing with ComboFix and there is no way it will work that way. If you had downloaded ComboFix.exe to your Desktop as requested, it would show in your log on your Desktop. Please download ComboFix.exe now. And Save it to your Desktop. Do not open it or run it from the download link.

    Then attach the requested log from ComboFix and afterwards, do the below.


    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created. You need to do this to get a new MGlogs.zip file because we really want this log to be obtained after ComboFix has down its work.
     
  8. alanc1

    alanc1 Private E-2

    :eek: Hi. I,m sorry , i don,t know how i did that. I have now done it correctly
    (i think). I did all that and it said files have been downloaded to Hijack, but
    i do not know where they are.
    Regards alanc1
     
  9. alanc1

    alanc1 Private E-2

    :zzz Hi. Here is the: Mglogs.zip
    Regards alanc1
     

    Attached Files:

  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You still did not attach the logs from ComboFix and AVG Antispyware as required and you did not allow GetLogs.bat to finish running before you closed the Window. Do not close the window until it tells you the scan is complete. See the snapshot of what the window will look like on the below page:

    Using MGtools


    Attach a new log after running it properly.
     
  11. alanc1

    alanc1 Private E-2

    :) Hi. I,m sorry for all my blues, but i have recently finished Radiotherapy &
    Chemotherapy for throat cancer, and i am having a little bit of trouble with
    my brain. I,ll attemt it once more and see what happens,i don,t want to
    waste your time.
    Regards alanc1
     

    Attached Files:

  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay that's ComboFix but you need to get a new MGlogs.zip file by running C:\MGtools\GetLogs.bat and make sure you let it finish running.
     
  13. alanc1

    alanc1 Private E-2

    :cry Hi. I don,t know what i have done now, i ran Mgtools and got the small
    black box(windows\system32\cmd.exe) it ran for a few minutes and then i got: c:\mgtools\zip.exe is not a valid win 32 application. Idid run it and save it
    to see if that was what i was doing wrong.
    Regards alanc1
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Try running GetLogs.bat again and if you still get an error message give me the exact word for word message. Then try downloading (do not use the Open option, use Save to download it to your PC )the current version of MGtools from here: MGtools.exe and make sure that you save it to C:\ as required. Then double click on C:\MGtools.exe to run the new install and automatically generate a new MGlogs.zip file. Tell me what happens using this new version.
     
  15. alanc1

    alanc1 Private E-2

    :wave Hi Chaslang. Lets see how we went this time.
    Regards alanc1
     

    Attached Files:

  16. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Well at least this time you downloaded it but you still did not downloaded where requested. This instructions specify C:\MGtools.exe and you put it on your Desktop. The main READ & RUN ME even states that you must not do this.

    Also you have Spybot's Teatimer running which the READ & RUN ME also stated not to use.

    Also you have multiple antivirus programs installed and the very first steps in the READ & RUN ME specify that you must not do this. You have AVG7.5, PC Tools and System Protect (which is probably part of SystemSuite 7 Professional). You must uninstall all but one antivirus.

    At this point I have to ask what the purpose of your posting here. Are you havving malware problems? Basically all I notice is that you are downloading and installing too many things that you don't need and many do the same thing. And a couple of these downloads are things that you should never download or use (like Spyware Nuker, SpywareRemover)
     
  17. alanc1

    alanc1 Private E-2

    :) Hi Chaslang. I won,t worry about it any more. I deleted anti-virus but
    cannot find Spyware Nuker or Spyware remover.
    Regards alanc1
     
  18. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Delete the below left over folders from them:
    C:\Documents and Settings\Alan\Application Data\SpywareRemover
    C:\Program Files\Spyware Nuker
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds