could use a lil help here

Discussion in 'Malware Help (A Specialist Will Reply)' started by gotcha7773, Jan 24, 2013.

  1. gotcha7773

    gotcha7773 Private E-2

    i did the read me run me got all the way down to the mgtools im gonna attatch the mbr check and the mgtools report all other malwaretools came up clean but my recoverdisk D wont defrag at all says 1 file block 99% fraggmented
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Please attach logs from running:

    • Malware Bytes
    • RogueKiller
    • MGTools
    • Hitman Pro
     
  3. gotcha7773

    gotcha7773 Private E-2

    ive been running them all day , the rougekiller picked up 4 nfections and i killed them out , out side of the mbrcheck and the hijackthis log everything else has came up clean, ill run them all again after reboot and copy everything for u , thanks ..
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  5. gotcha7773

    gotcha7773 Private E-2

    Attached Files:

  6. gotcha7773

    gotcha7773 Private E-2

    mbr check still says same , im n no way a tech lol i dont have cash to take it too shop ....
     

    Attached Files:

  7. gotcha7773

    gotcha7773 Private E-2

    my pc wont let me upload other reports just the ones i have already posted the only way i can get it too u is to paste it wont upload ,,,,,,,,,
    [.ShellClassInfo]
    LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21799
    [LocalizedFileNames]
    WildTangent Games App - hp.lnk=@C:\PROGRA~2\WILDTA~1\TOUCHP~1\hp\MUILink.exe,-105
    CyberLink YouCam.lnk=@C:\PROGRA~2\CYBERL~1\YouCam\MUITRA~1\Resource.dll,-301
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I still need to see logs from Hitman Pro, Malware Bytes and MGtools.
     
  9. gotcha7773

    gotcha7773 Private E-2

    on the hit man pro i have ncluded first and last scan loggs , malwarebytes but the mgtools after scanning says;zip error could not create out put file , ill keep tryen for the mgtools log it pics up a bunch of stuff but at the end it fails to b able to send report
     

    Attached Files:

  10. gotcha7773

    gotcha7773 Private E-2

    im not sure if this is report from mgtools ive ran it several times tryed different ways to copy report the only script that i have on my desk top r the 2 i can send other then that , mgtools keeps failing, just tried to attach thos files and it said nvalid files wouldnt upload , im sorry ; im tryen to do everything u tell me to do but mg fails everytime
     
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You just need to attach the zipped MGlogs.zip like you would a normal text file. ;) Without that I am missing out on heaps on info that I need to see.
     
  12. gotcha7773

    gotcha7773 Private E-2

    thats just the thing it keeps tellen me it has failed to create the ziplogs every time
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Oh let's run this instead then:

    Download OTL to your desktop.

    • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
    • Vista and Windows 7 users Right-click OTL and choose Run as Administrator)
    • When the window appears, underneath Output at the top change it to Minimal Output.
    • Check the boxes beside LOP Check and Purity Check.
    • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

    When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.

    Attach both of these logs into your next reply.
     
  14. gotcha7773

    gotcha7773 Private E-2

    that worked !!
     

    Attached Files:

  15. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Not seeing much to do at all.

    We need to run an OTL Fix

    • Right-click OTL.exe And select " Run as administrator " to run it. If Windows UAC prompts you, please allow it.
    • Copy and Paste the following code into the textbox. Do not include the word Code

    Code:
    :otl
    [2013/01/23 09:57:42 | 000,000,000 | ---D | C] -- C:\ProgramData\BrowserProtect
    [2013/01/23 09:57:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
    @Alternate Data Stream - 135 bytes -> C:\ProgramData\Temp:07BF512B
      
    :commands
    [EMPTYTEMP]
    [RESETHOSTS]
    [REBOOT]
    • Then click the Run Fix button at the top.
    • Click Image.
    • OTL may ask to reboot the machine. Please do so if asked.
    • The report should appear in Notepad after the reboot. ATTACH that report in your next reply.


    Now run OTL again, just a scan, and attach the log.
    Re run RogueKiller and attach the new log from that too.
     
  16. gotcha7773

    gotcha7773 Private E-2

    here r the new logs ...
     

    Attached Files:

  17. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Describe how are things running please?
     
  18. gotcha7773

    gotcha7773 Private E-2

    first off , id like too thank u for taken the time out too help me had a bad wreck broke my back just dont have the funds to put this thingn the shop.. as of now after reboot mbr check went back too the same takes for ever to load a page tried to browse test it out some , and some pages come up as if im there yet the page is blank tried to re-down load the you cam deal from here and it still doesnt work every time i have came to any site it asks me if i want to debug and lists errors lol i guess im getten laptop notebook 101 here but still trieing .. still wont allow me to defrag at all my fire wall says its on then when i go to options for fire wall it says its off and its n reverse to my second fire wall , says its off then it says its on, then i ran the rogue killer and under hosts it had a list a mile long lol , havnt ran scans as of this morning tho ..
     
  19. gotcha7773

    gotcha7773 Private E-2

    here r copies of this mornings scans actually got the zip too work this time mgtools..
     

    Attached Files:

  20. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Delete these unless you know what they are. ;)
    • C:\Users\DALE\AppData\Local\jv16PT_temp.tmp
    • C:\Users\DALE\AppData\Roaming\App4870.ConfCollection.bin
    • C:\Windows\Win7745.Settings Collection
     
  21. gotcha7773

    gotcha7773 Private E-2

    no i dont knowwhat they r lol how do i delete them , i did tdss came up clean and did hjthis gota log file if u want toocheck it out i cann attach it
     

    Attached Files:

  22. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    We need to run an OTL Fix

    • Right-click OTL.exe And select " Run as administrator " to run it. If Windows UAC prompts you, please allow it.
    • Copy and Paste the following code into the textbox. Do not include the word Code

    Code:
    :files
    C:\Users\DALE\AppData\Local\jv16PT_temp.tmp
    C:\Users\DALE\AppData\Roaming\App4870.ConfCollection.bin
    C:\Windows\Win7745.Settings Collection
    
      
    :commands
    [EMPTYTEMP]
    [RESETHOSTS]
    [REBOOT]
    • Then click the Run Fix button at the top.
    • Click Image.
    • OTL may ask to reboot the machine. Please do so if asked.
    • The report should appear in Notepad after the reboot. ATTACH that report in your next reply.
     
  23. gotcha7773

    gotcha7773 Private E-2

    here is report looks like it deleted them
     

    Attached Files:

  24. gotcha7773

    gotcha7773 Private E-2

    running like new again!! mbr still says drivers offset , tried my youcam lol it doesnt work tried my yh cam it doesnt work so went searching for drivers led me to programs and it seems i have no mutimedia program lol went to manager and it says i have webcam 101 so went to update drivers it says drivers up to date tested the yh cam on 101 and doesnt work then tried it on youcam said no capture device detected but i thank you very much for helping me out i havnt tried to defrag yet but will n a few , if u have any advice on the cam thing id b thankful and back to new again , i gather i had babalon trojen? what ever it was it was sure nothen nice lol thank u very much ....
     
  25. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    There's nothing wrong with your log from MBRCheck. ;)

    Yes, as you can see, not topic for the malware forum. :)

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Press and hold the Windows key http://forums.majorgeeks.com/chaslang/images/Windows_Logo_key.gif and then press the letter R on your keyboard. This opens the Run dialog box.
      • Copy and paste the below into the Run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 4 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    5. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others) and running MGclean.bat did not remove, you can delete these files now.
    8. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 6 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds