lost and having touble..

Discussion in 'Malware Help (A Specialist Will Reply)' started by lost annie, Nov 16, 2010.

  1. lost annie

    lost annie Private E-2

    i wont tell you how long it took me to find where how to post. having problems with/on husbands computer. cant update windows protection, computer running slow. followed the cleaning proceedures and am ready to try and attach the files/logs ...but is this where i do that. don't want to step on any toes!
    ithink i have 3 of the 5 logs im suposed to attach. dang...cant find others.
    what do i do now???
     

    Attached Files:

  2. lost annie

    lost annie Private E-2

    lost and having toubles...

    Having troubles with hubby's computer. (mine died which is whole other issue) His is running slow. Can't install window vista updates. Dont believe kapersky has realy updated all the way. Have been fighting computer over a week now. Have made progress but not got it all right. Got newest version of Kapersky to load and up date but dont' trust that it is updated. Last version said it was updated and that version show the differnt up dates dates and I noticed not all areas were updated even thou kapersky was saying it was upodated and protecting. Hubby had been in China at one point and I think he may have gotten something when on his service call in China and Korea. I tried to follow all the directions on how to clean up VISTA. I have the UAC turned off and not sure what else right now. Brain is fuzzy now. Have kapersky running again as protection for the moment as I'm afraid of something else getting into the computer and really hurting it. Oh and at one point i tried to do back up and couldn't but after some scans last week i got computer to do back up under Kapersky. I have done too much hit and miss and want to just get this fixed but am about to give up and take computer and pay for someone else to fix. Don't want to but have about reached the end of my rope. Any help would be most welcomed. I understand some things well but then there are some BIG holes here and there in my knowledge! I throw my bleary old self at the mercy of whomever feels like tackling my computer bugs and my old pre computer brain! Either one is a BIG challange. I can only find 3 of the logs ..so that may tell you i'm not the most computer savey...even after printing out directions.
     
  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    This will show you where the SUPERantispyware log is located:

    SUPERAntiSpyware - running & getting a log Don't worry if you have trouble, we can sort it out in the next post. More importantly...

    Did you run C:/MGTools.exe? If so it's log will be retrievable @ C:\MGlogs.zip.
     
  4. lost annie

    lost annie Private E-2

    Thanks! I found one more log but even copied and pasted C:\MGlogs.zip i the search and cant find it. I am drawinbg a mental blank on where\how to look. I did run the MGtools and it didn't run like the directions said. Never saw hijack this or trend micro ....so i may have not done something correctly. Very likely in fact!:-o
     

    Attached Files:

  5. lost annie

    lost annie Private E-2

    I have kept looking for the C:\MGlogs.zip. I found a MGTools file in my C drive but no zip or log. Did find 13 text documents that I will attach and send to you in case they have meaninf to you. Still think i messed up how I ran MGtools.
     

    Attached Files:

  6. lost annie

    lost annie Private E-2

    more of the 13 text documents...
     

    Attached Files:

  7. lost annie

    lost annie Private E-2

    and yet more of the 13

    ...there are 3 files i cant attach-

    sysinfo.txt 2,525 KB
    sysrest.txt 0 KB
    winfiles.txt 530 KB


    I will await your direction, question or thumps on head.
     

    Attached Files:

  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    What errors do you recieve?

    There are so many possible causes of problems with Windows Update that it would probably be best to send you to the Software Forum. However, try a few things first.

    1. Make sure time and date and TimeZone are correct
    2. See if it works in safe boot mode
    3. Reset HOSTS file
    4. flush DNS server
    5. add Microsoft URLs to the TZ (see below)
    6. shutdown firewall and retry
    7. shutdown AV and try

    MS URLs


    Make sure that Automatic Updates is not turned off. It needs to be on and the service status needs to be Started and the Service type needs to be Automatic.

    MGTools.exe should not be being run from the desktop. You need to move it directly in the root folder of your Windows Boot drive. C:\


    Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)

    After clicking Fix exit HJT.

    Now we need to use ComboFix
    • Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
      • If it is not on your Desktop, the below will not work.
    • Also make sure you have shut down all protection software (antivirus, antispyware...etc) or they may get in the way of allowing ComboFix to run properly.
    • If ComboFix tells you it needs to update to a new version, make sure you allow it to update.
    • Open Notepad and copy/paste the text in the below quote box. Ensure you scroll down to select ALL the lines:
    Code:
    KILLALL::
    
    DirLook::
    C:\Users\JERRY\AppData\Roaming\PCMM2010
    C:\Users\JERRY\AppData\Roaming\licenses
    C:\Windows\Low
    FileLook::
    C:\Windows\machine.ver
    C:\Windows\family.ini
    Registry::
    [-HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}]
    
    • Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
    • At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
    • You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
    • Now use your mouse to drag CFscript.txt on top of ComboFix.exe

      http://img.photobucket.com/albums/v666/sUBs/CFScriptB-4.gif

    • Follow the prompts.
    • When it finishes, a log will be produced named c:\combofix.txt
    • I will ask for this log below

    Note:

    Do not mouseclick combofix's window while it is running. That may cause it to stall.

    What can you tell me about these files?

    C:\Windows\machine.ver
    C:\Windows\family.ini

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this.
     
  9. lost annie

    lost annie Private E-2

    I am going to need baby spoon feeding.
    Can you help a novice or am i in over my head?

    2 errors - 80070017 & 80070490

    1. good point, this may need fixing but where/how do i check this?
    2. wont run at all in safe mode
    3. ???
    4. ???
    5. ???
    6. this i can do!
    7. can also do this!

    Updates is set up for automatic updates to run everyday at 3 AM

    MGTools.exe ...how to get it from desk top to the root folder of Windows Boot Drive.C:\ ??

    I'm going to stop here and not go further in following your great advise untill I can get to this point. Sorry to be a ....dumb pain. I've got a long uphill climb on the learning curve with how to manage computers. Sorry you got the short straw.
     
  10. lost annie

    lost annie Private E-2

    In trying to find out how to do some of things you asked I clicked on computer then clicked on the C drive then on the Folder MSGTools I just dragged the icon from desk top to the folder. There now in the folder is the MGTools.exe listed as application. Does this work? Or do I need to uninstall the whole MGT and then install and put it in the C area? :confused I'm trying to learn! But not finding alot on the internet to help the ignorant but willing to learn on how to do these magical things. Sigh. I just hope I don't make things worse. Begining to have serious doubts about me getting his computer fixed before he goes out of town this Monday.
     
  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    It's looking to me like you will have to work out this problem in the software forum rather than here.

    Take a look at this.

    What wont run in safe mode? Windows updates? Or are you saying that the computer will not boot into safe mode?

    To reset the host file:

    Running HostXpert to Reset Default Hosts File

    To flush DNS Cache

    • 1. Click the Microsoft Vista Start logo in the bottom left corner of the screen
    • 2. Click All Programs
    • 3. Click Accessories
    • 4. RIGHT-click on Command Prompt
    • 5. Select Run As Administrator
    • 6. In the command window type the following and then hit enter: ipconfig /flushdns
    • 7. You will see the following confirmation:
    For adding sites to your Trusted Zone, check out the attached screenshot.

    Delete the whole MGTools folder from wherever you dragged it to. Delete the MGTools.exe file too.

    Download a fresh copy of MGTools.exe to C:\ Drive, directly in the root folder of your Windows Boot drive. C:\

    Now go to this MGTools and download the new version of MGtools.exe. Overwrite your previous MGtools.exe file with this one.

    Then follow my instructions in post number 8.
     
  12. lost annie

    lost annie Private E-2

    Thank You!

    I'm going to print out this and work on it when i've had more than 5 hours sleep.

    WOW!! When i tried to follow thru on error msg never got to what you gave me! :-D Thanks!

    Am embarraased that i didn't think to look up in microsoft for info. :-o

    Windows updates won't run in safe mode. I restart computer and hit the F8 button and selected safe mode. Wouldn't run update at all.

    When I try to run update when computer in normal mode ... I have 9 important updates. Then when it goes to download them ... it tells me it is downloading # of 7 updates. Don't know why only 7 when it tells me there are 9 important ones.

    But thanks. I will print this out and work thru it with a fresh mind in the AM!
    Truely appreciate your patience with this old novice! Good Karma to you!
    will let you how I do! :wave
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Ok I'll be here waiting and don't forget to follow my last set of instructions. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds