Malware - virus Problems - Logs Attached

Discussion in 'Malware Help (A Specialist Will Reply)' started by Mjones, Nov 8, 2013.

  1. Mjones

    Mjones Private E-2

    Hello we are having a issue here and need to find out what is going on. it seems this is moving to other computers on are network. i have attached the logs here. the Mgtools would fail to run half way into the scan i would get a memory error.
     

    Attached Files:

  2. Mjones

    Mjones Private E-2

    Malware Removal logs

    Hello we are having a issue here and need to find out what is going on. it seems this is moving to other computers on are network. i have attached the logs here. the Mgtools would fail to run half way into the scan i would get a memory error.
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Is the winipbin folder unrecognizable to you?

    • C:\Windows\winipbin

    If so, then please let Hitman fix what it finds. Then rescan with it and attach the new log.
     
  4. Mjones

    Mjones Private E-2

    no i can see the C:\windows\winipbin. and hitman pro has ran the issue is mgtools is failing with the memory error
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    No, I mean in the sense that, did you put it there? Or download something which did? If not, then have Hitman delete.
     
  6. Mjones

    Mjones Private E-2

    Hitman pro has ran and found many issue in the c:\windows\winipbin i am fixing them now. then will rerun mgtools
     
  7. Mjones

    Mjones Private E-2

    Here are the logs from MGtools that i have.
     

    Attached Files:

  8. Mjones

    Mjones Private E-2

    We are using Spectra soft. and this is on a domain, and need to know if these are self propagating viruses. and if we need to check other computers on are network.
     
  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    So you are purposely set up to use the internet monitoring software? OK, I understand, then what Hitman finds is all good, and should not have been deleted. The software may need to be reinstalled now.

    What exact malware issues are you having then?
     
  10. Mjones

    Mjones Private E-2

    Yes i noticed that before i did it all so it is still there was never deleted. where you able to look at the other logs?
     
  11. Mjones

    Mjones Private E-2

    the issues we are having at this point are - internet explore was high jacked we could not get into internal pages. computers are running slow and freezing.
     
  12. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Internet explorer was hijacked how? Sorry for all the questions, I just need to be clear.
     
  13. Mjones

    Mjones Private E-2

    when we would open IE it should go to are company page. but it would redirect to a different site. same thing for just typing in a web page it would go to a different location
     
  14. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Where does it redirect to at the moment?

    I am not seeing any malware. Run this.... >>

    http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.
     
  15. Mjones

    Mjones Private E-2

    i am sorry but the program you want me to run just keeps freezing why it is running. ?
     
  16. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Try running it in safe mode then please.
     
  17. Mjones

    Mjones Private E-2

    Ok i got it to run in safe mode here is the log file.
     

    Attached Files:

    • JRT.txt
      File size:
      1.7 KB
      Views:
      1
  18. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Are you still being redirected? If so, tell me where to please?
     
  19. Mjones

    Mjones Private E-2

    no it looks as f it fixed itself onces i reran all the scans and removed all the stuff that was found and run ccleaner. i am working on another computer now i am going to upload the logs here today.
     
  20. Mjones

    Mjones Private E-2

    Here are the scan logs for this last computer. if you could look at this that would be great :)
     

    Attached Files:

  21. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi. :)

    Those logs are clean as a whistle. So for both computers, you need to run final steps on now:


    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:

    If there are any more computers to be reviewed and checked over, you must create a new thread. One thread per machine. Thanks. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds