Can't run SpyBot or Hijackthis, SUPERAntiSpyware crashes on install

Discussion in 'Malware Help (A Specialist Will Reply)' started by mrfettucini, Jun 17, 2009.

  1. mrfettucini

    mrfettucini Private E-2

    Hi I definitely have a bunch of nasty trojans and/or viruses. They were redirecting all my web pages for a while but I found a tool called Exterminate It! and bought it and I think it got rid of Zlob, SpyDldr.J, CnsMin and some BHO's. CWShredder also removed one thing. My browsers arent redirecting anymore but there are definitely some nasty things still on the computer.

    I downloaded Webroot Antivirus, SpySweeper and CyberDefender and ran them and they each picked up a few things but before taking further action and removing things I wasn't sure about I thought I'd come over here and seek some help. Some other things my Avira AntiVir Professional picked up but I don't think cleaned are TR/Dropper.Gen and TR/Alureon.14848J. I also noticed Scansoft Shared in my startup items.

    When I try to launch Spybot or Hijackthis they just shut down. I disabled TeaTimer in startup items and it was running currently so I killed the process.

    I went through the READ & RUN ME FIRST guide up until the Windows XP steps where I cannot get past the first step of installing SUPERAntiSpyware because it immediately crashes and says An unhandled win32 exception occurred. I tried renaming it to SAS.exe but that didn't work. I also tried running Malwarebytes and ComboFix but they do the same thing as Spybot and Hijack this - they just never start up.

    Help!!! This computer has my lifes work on it and, shame on me, I haven't backed up in a while.

    Thank you,
    Mike
     
    Last edited: Jun 17, 2009
  2. mrfettucini

    mrfettucini Private E-2

    Found that I could run MGtools. My MGlogs zip file is attached.

    Thanks,
    Mike
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You were instructed to put msconfig in normal startup mode. Please do that now.

    You were also instructed to turn off Teatimer. Which may be partially responsible for your inability to run the scans.

    * Run Spybot and click Mode
    * Select Advanced Mode.
    * Then click Tools and select Resident.
    * Now in the right window pane, uncheck TeaTimer.
    * Also while this is open, in the left column now select IE Tweaks
    * and then in the right pane make sure all the Miscellaneous locks are unchecked.
    * Now quit Spybot!

    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    NOTE: HJT may popup an error about the AppInit_DLLs line. Ignore it and click OK to continue.

    After clicking Fix, exit HJT.

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.


    Now clean out everything in these folders ( you will not be able to remove items from today):
    C:\WINDOWS\Temp\
    C:\Documents and Settings\end user\Local Settings\Temp\

    Now see if you can run the other scans and if so attach the logs.

    Then run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator).

    Then attach the below logs:

    * SAS, MBAM, Combo
    * C:\MGlogs.zip
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds