help plz, cant log on

Discussion in 'Malware Help (A Specialist Will Reply)' started by helpmeplz666, Dec 29, 2005.

  1. helpmeplz666

    helpmeplz666 Private E-2

    right 1st hello guys, 1st ever post and im desperate for your help. ill basically post the story and see if anyone can sort this out.

    1. had no antivirus on comp
    2. on crimbo eve got avg installed.and virus removed and checked
    3. now, i cant log onto msn to check emails, cant log onto internet bamking, or any gambling websites.
    what the hell is going on?

    suggestions ive had are:
    1. a system restore to the 23rd dec - cant do, i click on it and a white screen just comes up.
    2. remove avg - tried , didnt work so put back on
    3. install firefox - seem to be unable to download anything
    4. check the security setting - these are fine, no restrictions.

    got you guys recommendedas being the best online, i sure hope you can help.

    thanks, paul
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    What was it that AVG found and removed? Give the actual virus name and also the name and location of any files removed. Did you try having AVG undo any changes it made? Normally it makes backups in a vault or quarantine folder which allows you to undo changes if it breaks something.

    I have a feeling that your problems may have been deeper than you think.

    Is there anyway you can download files to this PC and install them? Can you download elsewhere and then copy to this PC via a CD or flashdrive? If so, you should do the below:

    - Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support

    Make sure you check version numbers and get all updates.

    - Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.


    After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:

    Downloading, Installing, and Running HijackThis

    .
     
  3. helpmeplz666

    helpmeplz666 Private E-2

    im not too sure what avg found as my step bro has gone on holiday and i cant get hold of him.

    i can download and install files. did the read and run things. gone few messages up etc, they were:

    1. cc cleaner said - cannot delete earl~19, file too big
    2. i couldnt use counterspy, i have windows me, when i went to install it, it said 'internal error 2738-test for motion'
    3.one found 2421 and quarantined them
    4. search and destroy, could update , it said 'error retrieving update into file, access violation at address 006520cb in module 'spybotsd.exe' read of address fffffffff.
    5. the search and destroy said alexa related.
    6. the spyware said source file corrupted.
    7. i couldnt download the panda, the screen went white and then said unable to connect.
    8 bitdefender result is below.

    i hope u can help, my comp is knackered
     
  4. helpmeplz666

    helpmeplz666 Private E-2

    ~ In-line log attached ~
     

    Attached Files:

    Last edited by a moderator: Dec 31, 2005
  5. helpmeplz666

    helpmeplz666 Private E-2

    Edit by chaslang: Inline HJT log attached
     

    Attached Files:

    Last edited by a moderator: Jan 1, 2006
  6. helpmeplz666

    helpmeplz666 Private E-2

    happy new yaear all, can some have a look at my results and hopefully fix this problem./
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please read the directions again. You must not post logs inline. They must be attachments. Also you HJT looks to be from before running the online scans. That is not the correct order.

    You also did not install HJT properly per the instructions and it also appears that you have not run ALL of the READ & RUN ME. I see no signs of Spybot being installed (no SDhelper BHO is showing). Did you uninstall Spybot after using it?

    Can you try installing CounterSpy in safe mode?

    There are no major issues showing in you HJT log but you can have HJT fix the below lines:

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
    O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)

    Your problems could be more of a software or hardware issue. You may want to try uninstalling some stuff. Like start with all the Norton/Symantec stuff and see if that helps. It could even be blocking CounterSpy from being run and maybe Spybot from being updated. The dump some of the tool bars. You can always reinstall when you determine they are not problems.
     
    Last edited: Jan 1, 2006
  8. helpmeplz666

    helpmeplz666 Private E-2

    the viruses found originally were trojan horse dialler .11.bu. 3 times

    ive deleted some stuff like u said. i did follow the read and run me as well as i could,unfortunatlely im not as clued up as u and i may of got confused

    all im unable to do is log on to sites (int bank and gamble) or click something on a site thst redirects or shows u something else.

    surely theres an explanation fir this, there no viruses found sone 2 checks todsy

    help, im desperate
     
  9. helpmeplz666

    helpmeplz666 Private E-2

    also, i just did naother run on spybot s and d and the following error came up 'WORLD CONTENT 3', BUT THEN IT FROZE AND CRASHED, WHEN U DID THE SEARCH AGAIN, IT DIDNT COME UP AGAIN
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    There are no signs of that dialer in your log. Sometimes that dialer is related to the info given in this: http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453094313

    You could check for those files and registry keys to see if they are present.

    I doubt it has anything to do with your problems. You could just have your security settings setup wrong or you could be blocking the sites using firewall or inforamation added to your registry (similar to how SpywareBlaster and Spybot block bad sites). There could also be policies set on the computer that are blocking you from doing certain things. Are you the owner of the PC and are you the Administrator? Are you logged on with Administrator priviledges.
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Is world content 3 some kind of online poker or gaming site that you have used?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds