I have scanned and I see Hijack JmpTo with file codes on the scans

Discussion in 'Malware Help (A Specialist Will Reply)' started by TammyJo, Jun 11, 2012.

Thread Status:
Not open for further replies.
  1. TammyJo

    TammyJo Private E-2

    Hi, Please bear with me, as I do not really know how to say things, I don't know the correct words for these things I need to ask.When you get to it and can respond ,can you take it easy on the PC language ,...I only know what I managed to teach myself,but here goes.... I was about stopped dead on my computer and tried the ""Read and run me me first"" directions twice each time the scans were all stopped before the end of them ,some right away and when I ran the MGtools and the Combofix ...at the end then had to restart my pc both times I ended up with a black screen and two little windows each time, one that said : Description : Security processor reported a file mismatch with Error code [0xC004D401]
    the other window said : Windows Activation Notice...An Unauthorized change was made to windows,it has discovered a change that will result in limited Windows functionality, use the link below to find out how to fix windows .....

    I clicked it and it took me in my browser to a link ..http://www.microsoft.com/genuine/va....0.000.09.1033tRFM=2tlegitCheckError=C004D401 ..... it said it was the Genuine Windows Validation tool.. then my cursor became the blue circle and all it did was spin for 45 minutes I finally shut my browser down , and clicked the windows closed, it logged me off so I signed in again ,and it kept doing the same thing each time I tried .I tried to repair my pc by restoring it but it kept failing unsuccessful each time so I finally used my installation disc i got from Dell and deleted the partition and reinstalled Windows Vista OS on my pc ...

    of course I had to reinstall it both times I tried to do the "" Read me first "" instructions on my system. I tried every single program I could find all from your site,and either they all came up clean or the programs that started to find these "" HijackJmpTo"" files got shut down ... Both times I reinstalled the OS I scanned my files before I downloaded them back into my pc and the scans said they were clean ,but today I have reinstalled the OS once again I was completely froze out of my pc these things kept freezing AVZ as soon as it started and also Rogue Killer then everything, I could not use my mouse

    ...I had plugged in to 3 usb plugs 3 different mice it kept finding and stopping them in their tracks and then my keyboard started to not work .This happens each time I start to use my pc and if I install any updates it happens faster. So, to get on with this ,as soon as I installed the OS and my Avast Security, the SP2 Micro..NetFramework and a couple other things I ran the scans again with only the AVZ and the Rogue Killer and I have the results ... of course I do not understand them, I taught myself as much as I know ,which I am sure is hardly anything of course I do get help from your forums,and actually have learned a few things ,thank you for that.

    But, I do not know all these technical words so it screws me up... I am going to attach them so you can check them ,what I see on these files is: "got interrupted", "blocked" , "Hijack Jmp To", then a of series of numbers and it is all stuff I do NOT know anything about. I've run the AVZ, twice tonight the first one I ran as I was installing SP2 and .Net Framework etc. and the second one after, the first one included the entire pc

    ...if I did it right, the second one was a partial pc scan.One last thing that has never happened before was that black screen with the error window and the other window that takes me to the genuine validating tool came on as soon as i rebooted after I installed the device drivers an graphics, etc. It has NEVER done that before ...not in the whole time I have owned my pc.and is the BootSect.Bak. file supposed to have a time of 3 hours later than it actually is when I am just finished with the OS installation? I also never noticed that before either.

    My System by the way is a Dell ,Inspiron .530 with 64 bit OS Vista Home Premium that is about 4 1/2 yrs old. But the installation now I just re- installed tonight, from an installation disc, that I got straight from Dell last week, there is no OS copy on my Hard drive as this model did not come with one !I really need major help also blocking intrusions I get a lot of infections because somehow these things have changed my settings and I do not know how to set them up right to stop these from getting into my pc .l

    This is the worst infection I have ever had tho I always have been able to get rid of other viruses but this one keeps getting in as soon as I start to install my programs and files again . They are all files I have been using right along for a long time! Thank you so much in advance if you can help steer me in the right direction.OKay , I hope they attached correctly ... Thanks again ..
     

    Attached Files:

    Last edited by a moderator: Jun 11, 2012
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    http://img827.imageshack.us/img827/1263/frst.gif For 32-bit (x86) systems download Farbar Recovery Scan Tool and save it to a flash drive.
    For 64-bit (x64) systems download Farbar Recovery Scan Tool x64 and save it to a flash drive.

    Plug the flashdrive into the infected PC.

    Enter System Recovery Options.

    To enter System Recovery Options from the Advanced Boot Options:
    • Restart the computer.
    • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
    • Use the arrow keys to select the Repair your computer menu item.
    • Choose your language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account and click Next.

    To enter System Recovery Options by using Windows installation disc:

    • Insert the installation disc.
    • Restart your computer.
    • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
    • Click Repair your computer.
    • Choose your language settings, and then click Next.
    • Select the operating system you want to repair, and then click Next.
    • Select your user account an click Next.
    On the System Recovery Options menu you will get the following options:
    • Select Command Prompt
    • In the command window type in notepad and press Enter.
    • The notepad opens. Under File menu select Open.
    • Select "Computer" and find your flash drive letter and close the notepad.
    • In the command window type e:\frst.exe (for x64 bit version type e:\frst64) and press Enter
    • Note: Replace letter e with the drive letter of your flash drive.
    • The tool will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) on the flash drive. Please attach this log to your next reply. (How to attach)
     
  3. TammyJo

    TammyJo Private E-2

    Dear Kestrel13,.... Hi, I went and bought a flash drive for my PC and then I followed your directions to the letter. I knew exactly how to get to the repair section and use the command window from repair with my installation disc. Now for my problem with all of this .... as soon as I typed notepad and it opened I looked at the directions to make sure I did the next step correctly and when I looked back at the notepad and was going to touch my mouse the cursor was moving ...(jiggling a bit)but , I followed your direction anyway and found the drive it happened to be I:\ drive. so I clicked it and then what I got every single time I tried was a window would open and on it said ...Please insert a discinto removable disk (I:\) so /I tried it with just clicking I:\ and then closing notepad and entering .. I:\frst64.exe then press enter and what the response from command prompt was ..the device is not ready I tried to open that drive a few different ways but nothing I tried opened it and if I didn't get that answer from command prompt I would get I:\frst64 is not recognized as an internal or external command ,operable program or a batch file I tried it 8 different times and either got to the start up repair point first 3 times or if it did let me get to the com.prompt window ,I got there 4 times ok but only ok til that point . finally on my last try it would not load the disc ... what came on was a note at the bottom of the page and that said You have tried too many failed attempts to repair your computer that you need to contact Dell for further support..So at this point I just turned off my pc and turned it back on , it started up with no problems at all and here I am . besides that tho I did put the flash drive in my laptop to make sure the FRST64 program was indeed on the disc ....it is definitely on the disc, So I have also tried to start it up from my desktop and it does start the program so I know it works, I am now stumped as to my next step ..am waiting for your next response to this dilema ..Thanks again in advance !
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Why are you reloading the operating system after every step? And please use paragraphs when you type. I find it extremely difficult to plow through solid blocks of text. Thanks.
     
    Last edited: Jun 12, 2012
  5. TammyJo

    TammyJo Private E-2

    Kestrel,.... You asked me why I kept reloading the system the answer to that is ...I had no choice but to reload the system because these Hijacker things took out my Product key so Microsoft was treating my pc like it was an illegal copy, the other reason was because with the installation disc I had to the hijackers were screwing with the way it was starting
    It was only after trying to follow your instructions for 40 minutes each time !By the way , Yes I called Microsoft to verify my product key with them because I was wondering why it said my key that came with my pc and installation disc was not allowed according to what I was getting . Apparently I am dealing with a bunch of infections that had my whole pc in their control .

    Today the hijack JmpTo infections did it a few more times which left me no choice but to re install the system again cause each time I tried to place the product key back into the pc info it told me that my code key was NOT ALLOWED on this pc ...you can't do anything when all you get is a black screen with these error and validation windows .

    I have gone into my bios and set up a Master Password this afternoon and I will NOT even mention how I was finally able to set my master password too or you will probably ask me why I did that too !

    But so far I am NOT having the trouble although it is still in here but not like it was , and my product key has actually stayed intact for over 31/2hours ,instead of 5 minutes ~ I am sorry I bothered you as I know you are busy ,but at the beginning I told you I do not understand some pf the pc words ,but I hold my own on one okay , and I did what you told my to do unless the ""HijackJmp To"" things shut me down or stopped (froze) my pc or whatever other problems it caused me ...

    So I would like to continue to try to remove it but if you would rather I can try on my own ,so it is not hard for you ! It is harder for me because I do HOT understand all the words you all use... Shall we continue or should I cancel my thread? I am not being mean either just frustration is how I feel !
     
  6. thisisu

    thisisu Malware Consultant

    Hello TammyJo :)

    If you have reloaded the operating system (OS) as many times as you say you have but are still experiencing problems, then the problem is NOT malware related anymore.

    I would suggest describing your problems in a concise manner in the Software or Hardware forums as they would be better suited to help you. Good luck!
     
  7. TammyJo

    TammyJo Private E-2

    Kestrel 13,

    Once I went into my BIOS and put a Master Password on my OS ,they were unable to hide from the malware removal tools, as I scanned right away and found that they Were all Malware ...Adware , Etc ,..

    I have fixed the problems myself,and I found 93 different infections!

    Thanks anyway !

    All the problems are gone now ... I found every one of them and my pc is working like it is brand new !

    Have a wonderful day !

    Tammy Jo
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Good for you. ;)
     
Thread Status:
Not open for further replies.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds