Getting errors, intermittent internet access, & lost administrator privileges

Discussion in 'Malware Help (A Specialist Will Reply)' started by jrasicmark, Oct 27, 2012.

  1. jrasicmark

    jrasicmark Private First Class

    It's also running extremely slow. I'm having these problems with my desktop PC running Windows XP (so this is a different problem from my previous thread about my laptop). I tried posting this a few days ago, but that thread seems to be gone.

    With the administrator privileges, I'm the only one who uses this computer, so there should be no reason for me to lose them.

    Whenever I boot up the PC, I get a Microsoft Error message that says something to the effect that some software I had previously been using had errors, but they weren't reported at the time, so it asks me if I want to report it now. Never any mention of what software had the errors or what they were.

    Also, when I try to log on to the internet, Explorer and Firefox usually shows an error message that says it can't connect to the web page. I've resorted to booting up the PC with the F8 key depressed so I can select the last configuration that worked every time. That usually lets me connect to the internet, but even then it doesn't last. After maybe 20 minutes, if I try to connect to a different page on the web site I'm on, or if I try to switch to another site, I'll get that same error message again.

    I ran the "Read and Run me first", and tried to follow the instructions exactly, but there were some problems. Some of the instructions didn't match what I saw on screen. (I printed the instructions out, but the screenshots didn't print).

    Anyway, here's what went wrong: When I ran HitMan Pro, I didn't see any option to "Ignore" the results of the scan, so I thought maybe it was defaulted to ignore or that it might be on the next window. So I clicked "next" and it went ahead and deleted and quarantined stuff.

    I also didn't see any "Save Log" link, so I again thought it might be on the next window, but when I clicked next, the log went away without saving and there was no way to go back. So I wrote down what it said under "History" hoping that might be enough to help you. Here is what was under History:
    {9AFB8248-617F-460d-9366-D1CDEDA31793}\HKLM\SOFTWARE\Classes\CLSID\ Deleted
    brrot-uninst.exe Riskware Quarantined
    YontooIE Client.dll Malware Quarantined
    C:\Program Files\Yontoo\
    If you need me to run HitMan Pro again, please let me know.

    When I ran Malwarebytes, there was a problem, too. The instructions said to close the Notepad log report (it didn't say anything about saving it first) and look for it in the hard drive, but I could only find old reports there (I have used Malwarebytes before). I even did a search and could not find the newest report. So all I could think to do was run the scan again so it would generate another report that I could save manually.

    The last time I tried to post the reports, the MGlog.zip would not upload. I guess I have a lot of stuff on my hard drive so it was huge. I had to unzip it and upload it in smaller chunks. I had managed to upload everything except the zafind.txt file which is 66.8 MB. I tried zipping it by itself, and it was 10.4 MB and still wouldn't upload. The only error message was "Upload failed". So if you have any suggestions on how I can get it to upload, I would appreciate it.

    .
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    What happened with RogueKiller?
    Try using a different browser to attach the MGlogs.zip.
     
  3. jrasicmark

    jrasicmark Private First Class

    I didn't have problems with Rogue Killer. I'll try to post those logs now. I had to reboot before I posted any logs because the computer started acting crazy.
    When I would select several files with the control key, I found I couldn't de-select, even when I clicked an empty area in the folder. When I selected another file (without modifier keys) it added that file to the other selections. This has happened before, and it is usually accompanied by random captalizations and any window that had been minimized won't maximize again when I click in the taskbar.
    Anyway, I'll try posting most of the logs below and try the last one with Firefox.

    Most of the logs wouldn't post because it said I had already posted them in the thread that never showed up. I thought maybe that thread was deleted because I had typed the HitMan Pro history in it. I had done a search for my screen name, and that thread didn't show up. Actually, this thread didn't show up, either, but when I tried to post it a third time (without the Hitman history), this thread did show up as a similar thread with your response.
    Is there a way to make the system forget about my previous attempts to post the logs? Or can you somehow retrieve the logs from my previous attempts?
    I still have to try re-posting that one stubborn zafind.zip from the MGlogs in Firefox. I'll do that next.
     

    Attached Files:

  4. jrasicmark

    jrasicmark Private First Class

    I just tried to post the zafind.zip and I got an error message saying it couldn't be processed because a security token was missing. That's the same error I got when I tried with Explorer.
    Should I keep trying other browsers?
     
  5. jrasicmark

    jrasicmark Private First Class

    I just had an idea, maybe if I rename the zip and log files (add a 1 to the end), maybe the system will let me post them. If this works, that means the only file I'll be missing is the zafind.zip.
    It didn't work; the system knew they were the same files.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your second thread still exists and was answered. Your major issues are not due to malware. Here is your second thread >> http://forums.majorgeeks.com/showthread.php?t=268489

    You can get much of the Babylon and Yontoo stuff fixed with the below.



    Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Note: That JRT will reset your home page to a google default so you will need to restore your home page setting.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.
    This will not fix any of the networking issues you have complained about. It will just attempt to remove the Babylon and Yontoo junk. And note that your second thread ( the one in the link above ) showed you internet access was working okay.
     
    Last edited: Oct 27, 2012
  7. jrasicmark

    jrasicmark Private First Class

    Thanks. I'm sorry, I guess I was over-posting without knowing it. Do you know why my threads didn't show up when I searched for my screen name? Is there a better way to find my threads that I'm not seeing?

    Anyway, I'll try to post the JRT log below.
     

    Attached Files:

    • JRT.txt
      File size:
      21.9 KB
      Views:
      3
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Not sure why you had a problem. I had no problem doing the same. That is how I found your threads. They were always there.


    Anyway JRT removed a bunch of misc junk from Babylon, Yontoo...and more.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds