Malware or virus screwed up my computer!

Discussion in 'Malware Help (A Specialist Will Reply)' started by chunkymunkyluva2, May 20, 2005.

  1. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    hi, im new to these forums so please tell me if im doing anything wrong

    i have read the 'README' and tried every step, to no avail. some of the steps i cannot complete because of this malware.

    I have tried adaware and spybot, but neither solve my problem.

    There are alot of things wrong with my computer, the symptoms are:

    -not able to copy and paste at times, this is text (i.e. URL's) and files in Explorer
    -system restore will not start, i just get a blank window which does not change
    -unable to drag and drop files or shortcuts
    -get the error message 'Connection was refused' when trying to access certain sites, such as most emails, like gmail and hotmail
    -cannot uninstall some programs, like windows AntiSpyware and get the message 'Windows Installer Service could not be accessed' :confused:
    -cannot open some online AV scans using IE, maybe a problem with the settings. i can open them in Firefox but can't scan because the browser is not supported :(

    these are the main problems which are extremely annoying.

    i have AVG AV and ZoneLabs firewall, as instructed from another site.

    thankyou for any help

    p.s. will doing a system reload (i have a reload/backup CD) fix the problem? i can do this but cannot back up any files but of my inability to copy and paste or drag files
     
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    http://www.majorgeeks.com/images/grenade.gif Download HijackThis 1.99.1

    http://www.majorgeeks.com/images/grenade.gif Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    http://www.majorgeeks.com/images/grenade.gif Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the ZIP file as your backups will not be safely stored.

    http://www.majorgeeks.com/images/grenade.gifBefore running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    http://www.majorgeeks.com/images/grenade.gifRun HijackThis and save your log file.

    http://www.majorgeeks.com/images/grenade.gif Post your log as an ATTACHMENT to your next post. (Do NOT copy/paste the log into your post as it will be removed).

    http://www.majorgeeks.com/images/grenade.gifNeed help with HJT? See this thread: NO HIJACK THIS LOG FILES BEFORE READING THIS: HJT Tutorial & LOG File Posting
     
  3. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    I already have HJT installed, the latest log is attached.
     

    Attached Files:

  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Your Operating System and Internet Explorer versions are WAY out of date and represent a major security risk. After we fix your current problems, you must get updated. You need to install Service Pack 2 for security purposes.

    Also, I notice you are running AVG & Norton, this is not recommended as running 2 antivirus programs causes conflicts on your computer. Please pick ONE and uninstall the other. Also, if you are going to keep Norton Internet Security you need to get rid of ZA. Its up to you but run only ONE firewall and ONE antivirus program.

    Now scan with HijackThis and Check the Boxes for the following:

    O9 - Extra button: (no name) - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)

    Make sure All Browser Windows are Closed when you Click FIX.

    After doing the above, your HJT log will be clean. Other than the problems I mentioned above everything looks ok to me.

    Are you still having those mentioned problems?
     
  5. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    I have fixed what you asked me to fix.

    How to i update to SP2?

    I still have the problems, and one of these is the inability to install/uninstall, so i cannot uninstall Norton. I got a new AV because after the malware it stopped working.

    I do not use IE, do i still need to update it?

    One more question that you may be able to help me with. I have a reload CD which may fix my problem, but i cannot back up my files because i cannot copy and paste files. I can use DOS to move some files, but cannot move them to a CD, do you know how to do this?
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Simply, go to Windows Updates and download and install it. Afterwards you will need to reboot, after you have rebooted you need to go back and download all SP2 updates as well.

    What version of NAV do you have installed? Ex. 2001,2002,2003,2005

    When you install Service Pack 2 it will update IE for you. Its best to keep it up-to-date just to be safe.

    Do you have a CD-RW or DVD-RW drive?
     
  7. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    I probably wont be able to install SP2 because i get the message 'The windows installer service could not be found' every time i try to install something.

    Im not sure what verison of NAV i have, it does not work properly anymore so i dont use it, i use AVG instead
     
  8. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    We will get every problem fixed up, we just have to address them one at a time.

    For the Norton problem lets run a removal tool. Follow the instructions below:

    Please download Rnav & Rnis.

    These tools will cleanup Norton AntiVirus & Norton Internet Security up to version 2003 Professional. These tools will remove everything relating to Norton.

    This tool will cleanup any leftovers of Norton AntiVirus. When running this tool it will prompt you when you run it "Would you like to exit now and try this" click NO. Now, Select Norton AntiVirus 2003/Norton AntiVirus 2003 Professional and click OK.

    Note: You will be prompted to reboot when this tool is complete, please do so that settings can be applied.


    After you have rebooted, see if anything Norton remains. You may have to manually remove some folders like in C:\Prorgam Files or C:\Program Files\Common Files.
     
  9. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    Ok Norton has gone! :cool:

    what next?
     
  10. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Download and install the below package:

    Windows Installer 3.1 Redistributable (v2)

    Afterwards, reboot and attempt to download and install Service Pack 2 again.
     
  11. chunkymunkyluva2

    chunkymunkyluva2 Private E-2

    hey, just done a system reload with a backup CD, everything seems fine now!

    can you take a look at my HJT log and tell me what i need to update or even get rid of?

    btw, so that the malware doesnt come back, is WinMX ok to use? does the actual program have any spyware?

    ill attach my HJT log for you to look at, ill soon be installing SP2
     

    Attached Files:


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds