Gen/FakeAlert + Gen

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Nikone, May 16, 2011.

  1. Nikone

    Nikone Private E-2

    MGtools log is not attached because it doesn't run tried a few times but I get a flashing CMD window and it closes really fast.

    All other logs are attached.

    Thanks for your help!
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Not really true and you should have looked for the log. It shows in your ComboFix log
    However I can tell that it did not run completely based on the small size. So let's do the below.


    Please click Start, Run, and enter cmd and click OK. This will open a command prompt window. Enter the below commands at the command prompt each followed by the enter key. The bold black are commands. The purple is merely informational.

    cd \MGtools <-- this changes to the MGtools folder and the prompt should change to C:\MGtools>
    NwkTst <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    GetRunKey <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    ShowNew <-- this will try to run all another scan from MGtools. Tell me what error messages, if any, you see.

    Now look for the C:\MGlogs.zip file and attach it no matter what happened while doing the above.
     
  3. Nikone

    Nikone Private E-2

    A simple restart of the machine allowed me to run MGtools and it ran successfully, attached are the logs it created.

    Thanks!
     

    Attached Files:

  4. Nikone

    Nikone Private E-2

    Since I have been eager to finish cleaning up this machine, I re-ran everything in the run me first :) hope its not too much trouble. To review the logs again... thanks for all your help but I think I have successfully cleaned all of it up, unless you find something else.

    TIA!
     

    Attached Files:

  5. Nikone

    Nikone Private E-2

    MG tools attachment!

    Thanks in advance
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You should not do this! We tell you at the beginning of the READ & RUN ME, to only do what we ask you to do and nothing else. And then in the section with the scanners and attaching logs we stated to only run scans once.

    Another very important item from the beginning of the READ & RUN ME that you have ignored is that you have multiple antivirus/security programs installed. Your logs show the below:
    You need to either uninstall Norton or you need to uninstall all of Microsoft Security Essentials immediately.


    You need to just delete the below files:
    C:\Documents and Settings\meital\Local Settings\Application Data\ui20ql263e47t35yc5ha0j723s60w26as564
    C:\Documents and Settings\All Users\Application Data\ui20ql263e47t35yc5ha0j723s60w26as564
    C:\Documents and Settings\meital\Templates\ui20ql263e47t35yc5ha0j723s60w26as564


    And run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista or Win 7, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

    After clicking Fix, exit HJT.


    Other than the above, your logs are fine. Are you having any malware problems/symptoms?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds