Gotta love that my brand new harddrive came with spyware...

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by simbart, Dec 17, 2004.

  1. simbart

    simbart Private E-2

    I was having all sorts of probelms with my computer and Dell sent me a new harddrive, as soon as I installed it there were viruses and spyware. I've had some tech people look at it, and have been running Ad-Aware and Spybot, not to mention Symantec. Here is my hijack this information. Could you guys help me out? Thanks.

    Edit by chaslang: Inline log changed to attachment
     

    Attached Files:

    • hjt.txt
      File size:
      5.9 KB
      Views:
      2
    Last edited by a moderator: Dec 17, 2004
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes we can help you out but you must follow the directions and guidelines of the forum!

    HJT is not the first step and we have guidelines about when and how to post logs. Please follow our guidelines. Install HJT as directed. Do not run it from the ZIP file as you are doing and you must shut down ALL browsers before running HJT. You had these running:
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Internet Explorer\iexplore.exe

    You must not put HJT logs as inline text. They must be added as attachments and only when we ask you to post them.

    Make sure you do the above before continuing.

    First, please follow ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal
    If you already have any of the programs linked in the tutorial please double check your version to make sure you have the latest one and that you have any/all updates for the programs.

    NOTE: In order to resolve the issues you are having it is very important that you at least try to perform all the steps as outlined. If you have any difficulty please post back letting us know what steps you have completed, what you found while doing the scans if anything and details about any problems you have encountered in completing the steps. The more details you can provide the better.

    The do this:

    Download LSP-Fix to your other computer and then get it on to your broken one.
    Download it here: http://www.majorgeeks.com/download4180.html
    Unzip it and run it. Check the Box labeled "I know what I'm doing" and then click on the calsp.dll file (in the “Keep” section) to select it.

    Then, Select the >> button to move calsp.dll into the Remove section.

    Now, click the Finish Button. When the Repair Summary box appears, click OK.

    Repeat the about LSP-Fix procedure on winlspak.dll.

    Make sure you have system restore disabled and viewing of hidden files enabled (per the tutorial).
    Please bring up Task Manager by hitting CTRL-ALT-DEL and click the Processes tab. Look for the below process(es) and if found, End them:
    zxyn.exe
    kalvhzn32.exe
    Run HijackThis and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:
    O4 - HKLM\..\Run: [C:\WINDOWS\zxyn.exe] C:\WINDOWS\zxyn.exe
    O4 - HKLM\..\Run: [kalvsys] C:\windows\system32\kalvhzn32.exe

    Boot into safe mode and use Windows Explorer to delete:
    C:\WINDOWS\zxyn.exe
    C:\windows\system32\kalvhzn32.exe

    After doing ALL of the above make sure you have HijackThis 1.99 and follow the guidelines on where to install it and how to post a log as an attachment. This is all covered in the sticky thread NO HIJACK THIS LOG FILES BEFORE READING THIS: HJT Tutorial & LOG File Posting

    Now post a HijackThis as a .txt file attachment to your message. All running programs should be closed, including your web browser, e-mail. Close before running Hijack This!

    To repeat: Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file. Place it in its own folder, for example C:\Program Files\HJT

    NOTE: You do have other problems that the above will not fix. We will need to run some additional steps. But first let's get what I gave you fixed.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds