XP Cleaning Procedure and still same problem

Discussion in 'Malware Help (A Specialist Will Reply)' started by rextobadownstairs, Dec 21, 2008.

  1. rextobadownstairs

    rextobadownstairs Private E-2

    I have had to threats popping up for about 2 weeks on my AVG 8.0
    Trojanhorse downloader generic8.glk
    Trojanhorse backdoor generic_r.EA
    I did the above procedure and have attached the logs as requested.
    Any help would be greatly appreciated.
    Thanks in advance,
    Rex
     
  2. rextobadownstairs

    rextobadownstairs Private E-2

    Sorry, forgot the attachements.
     

    Attached Files:

  3. rextobadownstairs

    rextobadownstairs Private E-2

    Last log file.
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Looks like the cleaning procedure has taken care of most of your problems. We have a few minor details fo take care of.

    Do you know what the below reference to freeride.exe is for?
    Uninstall the below old versions of software:
    Java(TM) 6 Update 2
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    Java(TM) 6 Update 7
    Java(TM) SE Runtime Environment 6 Update 1
    Java(TM) SE Runtime Environment 6

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    After clicking Fix, exit HJT.

    Now run Ccleaner!

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).


    Then attach the below log:
    • C:\MGlogs.zip
    Make sure you tell me how things are working now!
     
  5. rextobadownstairs

    rextobadownstairs Private E-2

    Hello,
    Merry Christmas too.
    The computer seems to run faster at the moment but for some reason very little hardware is working. If I click on Device Manager nothing happens. It doesn't see a sound card, network card?
    Don't know what's up.
    Thanks, Rex
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please first address the question in my last message and complete those instructions and then tell me what is going on.
     
  7. rextobadownstairs

    rextobadownstairs Private E-2

    Thanks for your patience.
    I have no idea what the freeride.exe is for or from.
    I haven't got any virus pop-ups since prior to the last post.
    Computer still doesn't recognize the sound card or network card.
    Upon opening my computer it searches for almost 1 minute before it locates things. Can't open add hardware and the device manager is blank.
    It plays video but no audio. I'm lost.
    Thank you for your help
    Rex
     

    Attached Files:

  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Then do the below to remove this.

    Copy the bold text below to notepad. Save it as fixme.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.



    These remaining problems are not related to any remaining malware. It just sounds like you my have some Windows file system corruption and or some services that may not be running. I will give you a couple quick things to try off the top of my head but you may need to work these problems in the Software or Hardware Forum.

    Let's check your System Files out first.

    Click Start, Run, and enter sfc /scannow and click OK. There is a space after the sfc. This runs System Rile Checker which looks for missing or corrupted system files and attempts to replace/repair them from files on your hard disk or from the CD if necessary. So it will ask for the Windows CD if it needs it.

    You blank Device Manager may be due to the Plug and Play service not running. Try the below:
    • Click Start > RUN and enter services.msc into the run box and click OK.
    • This will bring up the Services window.
    • Scroll down to the Plug and Play service and double click it.
    • The path to the executable should be C:\WINDOWS\system32\services.exe
    • The Startup type should be set to Automatic. If it is not then change it to automatic and click Start and Apply.
    • Note that the Start parameters box should be blank.
    • Then OK out of these Windows and reboot your PC.
    • After reboot tell me if there are any changes to your problems.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds