Hijack this thingymabob

Discussion in 'Malware Help (A Specialist Will Reply)' started by Ipwnyou, Dec 31, 2005.

  1. Ipwnyou

    Ipwnyou Private E-2

    Ive been getting popups from firefox, even when Im not on, so heres the log
     

    Attached Files:

  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Welcome to MajorGeeks.com!

    Please follow forum guidelines and perform cleaning steps in the sticky thread before posting HijackThis logs.

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.

    http://www.majorgeeks.com/images/grenade.gif Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support

    • Make sure you check version numbers and get all updates.
    http://www.majorgeeks.com/images/grenade.gif Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.

    http://www.majorgeeks.com/images/grenade.gifAfter doing ALL of the above and you still have a problem, make sure you have booted to normal mode and run the steps in the below thread to properly use HijackThis and attach the log:

    http://www.majorgeeks.com/images/grenade.gif Downloading, Installing, and Running HijackThis
     
  3. Ipwnyou

    Ipwnyou Private E-2

    uuh, I know, Ive done all that
     
  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    No, you have not!

    You did not do step 6:

     
  5. Ipwnyou

    Ipwnyou Private E-2

    Not allowing the application's ActiveX control to be downloaded.

    Problems with the Internet connection.

    The error could be due to a download error or an installation error due to lack of hard disk space, privileges etc.,...



    from panda thing, same with bitdefender
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Download the following two files, create a folder on your desktop, call it TSC. Save these 2 files there.

    Note: They must be in the same directory for it to work properly!

    Sysclean Package

    Pattern.zip

    After you complete the above, locate the file "lpt139.zip", right click to extract the contents to the same directory.

    Once you complete the steps above, REBOOT INTO SAFE MODE!

    Once in Safe Mode double click the file sysclean.com. When the system cleaner loads, click SCAN to start the scanner. After you complete the scan reboot and attach a fresh HJT log.
     
  7. Ipwnyou

    Ipwnyou Private E-2

    here ya go
     

    Attached Files:

  8. Ipwnyou

    Ipwnyou Private E-2

    waits....
     
  9. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Please be patient as we are all volunteer in this forum. We come in when we have time, the more you post the longer you wait because we start with the oldest threads first!

    Please see the below thread on how to install and run Ewido Security Suite.

    Running Ewido Security Suite ...
     
  10. Ipwnyou

    Ipwnyou Private E-2

    there ya go
     

    Attached Files:

  11. Ipwnyou

    Ipwnyou Private E-2

    I know your volunteers, I just said waits, well for no reason, trust me, Ill wait forever as long as the problem gets fixed
     
  12. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Have you tried the online scans again? See if you can get those to run before we procede.

    Also, I need another HJT log from normal mode.
     
  13. Ipwnyou

    Ipwnyou Private E-2

    No viruses or other malicious software have been found!Scan finished 203655 Files scanned D:Scan reportTo disinfect all threats, buy or try a recommended security product.ActiveScan gives you a deep second opinion analysis of the security level of your PC. Select a device to scan...
    My Computer
    Local Disks
    Floppy Disk
    My Documents
    Email
    Other Media
    Detected
    Virus 0
    Spyware 0
    Hacking Tools 0
    Dialers 0
    Security Risks 0
    Suspicious files 0


    thats from panda
     

    Attached Files:

  14. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Please look in Add or Remove Programs for the following and Uninstall them if found:

    Ewido

    Now scan with HijackThis and Check the Boxes for the following:

    Make sure All Browser Windows are Closed when you Click FIX.

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway

    Again, make sure All Browser Windows are Closed when you Click FIX.

    NEXT:
    Run CCleaner to clean up cookies and temp files.

    Run full scans with Ad-Aware SE & Spybot S&D and have both programs fix what they find.
    Note: Remember to get all updates before doing the scans.

    Then, as an added precaution, Go to Start > Run and type: cleanmgr and then click OK. Make sure the boxes for these are checked:
    Temporary Files
    Temporary Internet Files
    Recycle Bin


    And Click OK.

    After you complete the above, reboot and finish the last step below...

    Finally, I would like you to Flush your System Restore Points. Please follow the instructions in this link --->Disable and Re-enable System Restore
    • First, turn OFF System Restore to flush any bad Restore Points.
    • Then, follow the instructions at the bottom of the linked page to Re-enable the Restore Utility which will create a fresh restore point.

    After you complete this fix, reboot and let me know how things are running.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds