Im not sure if im clean but ive tried!Heres the HTL....

Discussion in 'Malware Help (A Specialist Will Reply)' started by ddsdavey, Jun 10, 2007.

  1. ddsdavey

    ddsdavey Private E-2

    Ive attached a hjt log after following your procedures this is the result.Could you please tell me if i have anymore issues.Im sure i havnt got rid of everything but i didnt want to bother you with posts every 5 minutes!.I appreciate the valuable FREE!!! service that you offer here at Major Geeks as you have helped me out of some very troublesome situations over the last few years so cheers for that,i and im sure many other users certainly dont take it for granted.Im not creeping its just that you dont hear much appreciation on here.Thanks.
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Most people are under the very mistaken misconception that HijackThis is a scanning and detection tool. It is not! HijackThis is simply a tool that is used to identify browser hijackers and in some cases it will show entries for some malware that is for instance running at startup. A HijackThis log shows the following:
    • a running process list with no reference to good or bad
    • it lists the contents of a selected group of registry keys that is an an extremely small subset of the tens of thousands of keys that may exist. Again no reference to good or bad.
    • and some of the above keys that are shown may show some non-Microsoft system services that are running. Again with no reference to good or bad.
    The decision on what is good or bad is left a person with significant Windows and malware cleaning experience.

    HijackThis does not come close to showing all malware that could be hiding on a PC. Anyone who has an infected computer and is relying on HijackThis without the benefit of running other scans such as Spybot, Windows Defender, BitDefender & Panda, CCleaner, etc. are more than likely still infected. In most cases, where there is one virus/trojan there are more.

    The goal of this forum is to remove all malware, and this cannot be done properly by just seeing a HijackThis log. Especially when HijackThis has not even been installed and rename properly per the directions in the sticky threads!

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, renaming, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.
    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy - only for Windows XP, 2K, & NT users
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy. - only for Windows XP, 2K, & NT users
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  3. ddsdavey

    ddsdavey Private E-2

    Hi Yeah sorry about that.Ive done as im told and ive got so far and would appreciate a little feedback on the logs (i bet you dread Monday mornings,you must have log after log to go through!!!).Ill go onto the next step (spybot as soon as someone can look at these for me.I used them with the help page but didnt find what you said to look for but it would be nice for someone to reassure me.Cheers
     

    Attached Files:

  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You must follow all instructions and they must be run in the order given in the READ ME. Then you must attach ALL of the requested logs. Running steps our of order is not acceptable. Start over and follow the steps as written and then attach NEW logs from ALL of the below.

    • CounterSpy - only for Windows XP, 2K, & NT users
    • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy. - only for Windows XP, 2K, & NT users
    • Bitdefender - from step 6
    • Panda Scan - from step 6
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • HijackThis
     
  5. ddsdavey

    ddsdavey Private E-2

    Im sorry if i seem dumb! Right now i have done everything and heres the logs.After leaving the above 2 txt files i have now added the hijack txt after using cc cleaner,spybot and counterspy in the order you said.I didn't include the counterspy log as it only found something called mywebsearch which it consisdered low risk and i removed it.My issue at the moment is cpu usage.Today has been quite bad but it has been worse,it seems to go to 100% when running any one process from say Nero (which to be fair takes quite alot usually but you can tell a difference) to firefox most of the time though if i call up the window task manager to see where all the slow down is coming from its the system idle thats at 97-98% cpu!
    I just cant do much as it freezes up.When im browsing ive noticed that my yahoo email account page opens up fine (still slower than usual) but my Aol account can tend to take forever or im forced to restart Firefox
    If we cant find anything (i say we !?) then surely i'm looking at some kind of hardware failure and IF that is the case is there any way of detecting exactly what it is?
    Anyway i've tried to be as detailed as i can and complete all the phases of your guide as best i can.Cheers,i appreciate this.
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    That is not a log from BitDefender online. That is a log from BitDefender Antivirus which we did ask for. Also steps must be run in the correct order!

    CounterSpy should be the first log attached! Then the others. All are shown in the order of expected execution.
     
  7. ddsdavey

    ddsdavey Private E-2

    Ok heres everything in the correct order except for Panda Active,it wasn't Firefox compatible so if you cant do anything without it then i'll just have to keep looking for help.Im no expert when it comes to this and spent most of yesterday and some of today struggling with a slow system constantly at 100 cpu.I need your help and hope i have done enough in the proper order to help your job detecting the problems.
    Cheers.
     
  8. ddsdavey

    ddsdavey Private E-2

    It wont let me attach anything as its already on this page but you insist on having them all in the correct order!So what do you want me to do now as im really losing my patience.If you want all the files in a nice pretty arrangement (no offence just fed up with bureaucracy!) then somehow this thread will have to be terminated so i can re-upload everything,sorry but you insisted.
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    The READ ME specifically tells you that you must use IE for the BitDefender and Panda online scans. In the first paragraph of step 6a the below text appears. I'll empahsize with larger text and in red what I'm referring to.
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You cannot attach what you already have attached. You would have to get new logs. But you are missing my point. I'm not concerned about the order of your attachments. The main concern is that the steps in the READ ME were run in the proper order. Since you did not attach the logs from CounterSpy, BitDefender, and Panda but you already had attached logs from GetRunKey and ShowNew, this would indicate that you ran the steps in the READ ME out of order. Thus meaning you did not follow directions and it also means that what I may see in GetRunKey and ShowNew will no longer be there if you ran CounterSpy, BitDefender and Panda afterwards.

    All you need to do is follow the directions as written. We cannot help you if you don't follow instructions. There is no malware reported in your HJT log which is the first thing you posted and our sticky threads specifically tell you not to attach a HijjackThis log without running the READ & RUN ME sticky and attaching all the requested logs. You never even installed and renamed HijackThis as we requested and we clearly stated that this is critical since certain malware will hide unless you do this. If you want an answer right now based on the inadequate reports that you have provided then the answer is you don't have malware and that you should uninstall your BitDefender V10 security suite and or possibly Spyware Doctor.

    CounterSpy (if installed) will add to slowing your PC down, so you can uninstall it but I did want to see the requested log the you never attached.

    It is very possible that you don't have any malware and that your problems are software conflict or hardware related, but based solely on the only logs you provided, we cannot make a definite conclusion. However a best guess at this point is that it is not malware.
     
    Last edited: Jun 12, 2007

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds