explorer.exe keeps shutting down and restarting randomly

Discussion in 'Malware Help (A Specialist Will Reply)' started by MikelRiley, Dec 7, 2007.

  1. MikelRiley

    MikelRiley Private E-2

    Found a bunch of viruses and such and removed them. They messed up my xp user account passwords but I've gotten past that. But explorer.exe still shuts down and restarts randomly, especially when I'm trying to use My Computer. Freaking annoying. Anyway here's the HJT log:

    Logfile of HijackThis v1.99.1
    Scan saved at 11:53:30 PM, on 12/6/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
     
    Last edited by a moderator: Dec 7, 2007
  2. Lev

    Lev MajorGeek

  3. MikelRiley

    MikelRiley Private E-2

    Sorry here's the attachment
     

    Attached Files:

  4. Lev

    Lev MajorGeek

    You did not follow the link I gave you step-by-step. Please post up all the requested logs so that an Authorized Malware Fighter can assist you.
     
  5. MikelRiley

    MikelRiley Private E-2

    Ok. I followed everything I could (not everything would work because explorer.exe kept messing up) and explorer is working properly now, but my taskbar is not working properly, I can't move icons on my desktop, I can't access my xp users profiles, and I can't toggle system restore. Here is my log from MGtools.
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You need to attach the log from ComboFix. Also attach the log from AVG Antispyware if you have it.

    Your logs are basically clean other than a couple of things I will give you below.

    Delete the below folder:
    C:\WINDOWS\system32\daSgo05

    Delete the below file:
    C:\WINDOWS\system32\vbzip10.dll

    Uninstall the below old versions of software:
    J2SE Runtime Environment 5.0 Update 5
    J2SE Runtime Environment 5.0 Update 7

    Make sure you reboot after uninstalling the above!

    After reboot, now install the current version of Sun Java from: Sun Java Runtime Environment


    You will have to explain in more detail. This is probably not related to malware.

    Are you sure you don't just have your Desktop locked. Right Click and select Arrange Icons By and make sure you don't have Auto Arrange selected and also make sure you did not Lock Web Items on Desktop.

    This does not appear to be due to malware. You have check you permissions. Are you and administrator? Also is the is the System Restore Service running? You may need to work these issues in the Software Forum, but you have to provide more exact details on the problem.

    In your first message you said
    Since we have no idea exactly what it was that you removed, we don't know if you may have broken something.
     
  7. MikelRiley

    MikelRiley Private E-2

    Here is the combofix log. The viruses I deleted were the ones that Norton anti-virus told me to.
     

    Attached Files:

  8. MikelRiley

    MikelRiley Private E-2

    Also, my computer also keeps telling me "the system administrator has set policies to prevent this installation." when I try to install anything.
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You logs do not show any malware issues. You may need to check to make sure you are not somehow blocking things with Norton or with Windows Defender.

    Also try booting in safe mode and see if any of your problems are different in safe boot mode.


    Also just to be on the safe side, run the below after booting into normal mode again:

    Running GMER to detect rootkits

    Attach the log from GMER.
     
  10. MikelRiley

    MikelRiley Private E-2

    All the same problems in safe mode or any other user profile (mine, my wife's or the "administrator")

    Here is the log from gmer.
     

    Attached Files:

  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    GMER does not show any malware. It just shows two drivers from Avast Antivirus that I have to question why are showing. Did you have Avast installed at the same time as Norton? When did you uninstall Avast? How did you do the uninstall?


    I'm still wondering if Norton and or AVG Antispyware or anything else are part of the problem but let's try something.

    What exactly are you trying to install? The Sun Java current version I asked you to install?? If this is one program you are trying to install, try it this way:

    From Windows Explorer:
    • Right-click on the installation file: jre-6u3-windows-i586-p-s.exe
    • Select Run As
    • Select Option to Run as The following user
    • for User name leave Administrator
    • And then enter the admin password
    • then click OK
    Does this work?
     
  12. MikelRiley

    MikelRiley Private E-2

    Norton started malfunctioning so I uninstalled it with the norton uninstaller and installed avast instead.

    I'm still trying to get the java to download to my computer
     
  13. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No this is not correct according to your log. You do not have Avast installed you have Norton installed. Unless you are saying you did this after posting you last MGlogs.zip file. If you did, that was a bad thing to do in the middle of our work.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds