Hijack this report...help?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by xokaguraox, Jun 13, 2011.

  1. xokaguraox

    xokaguraox Private E-2

    Hello,

    I'm a new member to this site (the forums at least) though, I've used several programs from it and had no trouble at all. With that being said, I know a little bit about computers though unfortunately not enough to deal with this on my own. I followed the 'read me' advice and downloaded all programs as well as followed the steps carefully. Unfortunately, it didn't fix my problems fully because my computer is still acting sluggish and infected.

    A little back story:

    My computer is self-built and is fairly old though pretty well maintained. I keep it clean on the inside and try to fix my own tech problems. I've tried so many anti everything software programs it isn't funny and most I don't like. My computer has 'died' on me only one time and that was because a friend went on one of those manga sites that she knew was questionable and didn't bother to tell me she was on it. After the crash I took it to a friend who was Microsoft certified because I couldn't get it to turn on. Much to my dismay I lost ALL of my files because I hadn't been backing my things up (Dumb, I know, but I do it now) and he did what I originally intended to do, reinstall windows and ad anti software then scan with it. It worked great for about a month or so then started to act like it does now. I kept up with scans, updates and ccleaning after every session but it wasn't enough.

    Needless to say, I'm at my wits end and I'm very close to just outright buying a laptop and starting over. All I do on this computer is draw (it's part of my job) and check my mail. The few sites or programs I use are to gain customers for my freelance artistry and now I can't finish projects that I've needed to have done for over a month. I'd greatly appreciate any and all help I receive. Sorry this is SO long to read but I figured it might help some. Heh.

    Thanks again!
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Did you have problems running MGTools or Combofix? If not please attach the C:\MGlogs.zip
     
  3. xokaguraox

    xokaguraox Private E-2

    Oh! Sorrry, forgot about those...That combofix is too much for me to run on my own and delete things. Heh.

    Here you are. Hope this is what you wanted.
     

    Attached Files:

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Do not attach individual logs from the zipped file please. I need the complete C:\MGlogs.zip. Thanks.
     
  5. xokaguraox

    xokaguraox Private E-2

    Sorry! Multitasking isn't for me. >_>
     

    Attached Files:

  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Running from: c:\documents and settings\Owner\My Documents\1ComboFix1.exe <--- Should be run from the desktop, please move it there now, and MGTools.exe should be directly in the root folder of your Windows Boot drive (usually this would mean C:\)

    Please disable Spybot's TeaTimer.

    How to disable Spybot's TeaTimer

    I want you to run TDSSKiller so refer to the below for how to do so.

    TDSSkiller - How to run

    This is why things are sluggish. You need more RAM.

     
  7. xokaguraox

    xokaguraox Private E-2

    It (and all other programs) were initially run from the desktop. I moved everything there after I got all the logs processed. I don't honestly think where it's run from matters but I moved them back onto my desktop if that makes you happy... All these reports are from me saving them on my own, in addition to the auto save that the programs do, to my desktop. Then after I saved them to my desktop I decided to move them all to my documents.

    I know I need more ram and before this infection my computer did not lag at all. It just up and stopped working properly a while ago and that's all I know. I've had the same programs on it from the get go, what ever is on my computer is affecting its productivity. Not the lack of ram. Since I know it's infected getting more ram added wouldn't change the way it acts currently. Though, once I completely remove or at least quarantine the problems I will be upgrading it and making more ram available. Thank you though for that suggestion.
     

    Attached Files:

  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    It's to make you happy actually because if you did not have them in the correct locations then when you come to following final steps there will be glitches... ;) Also it very much matters about locations that things are run from for other reasons... running from temp locations is NEVER a good idea. Lots of reasons why.

    You are no longer infected. Combofix dealt with the problem, so if things are STILL slow, it is worth following up on my suggestion to add more memory.

    How are things running? I don't mean are things running slowly, I mean are you having any more actual malware problems? Your logs look good to me now.
     
  9. xokaguraox

    xokaguraox Private E-2

    Sorry, been busy dealing with other things. The computer seems to be fine as far as I can tell. As soon as I can get it I'll add RAM then go from there. Thanks a whole lot for your help, it's appreciated. :) It's good to know my comp is back to where it should be.
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You are most welcome. :) Safe surfing.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required (If we renamed it please rename it back to Combofix.exe.
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Go back to step 6 of the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    4. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    5. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    6. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    7. Go to add/remove programs and uninstall HijackThis.
    8. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    9. If you are running Win 7, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds