Malwarebytes have caused problems

Discussion in 'Malware Help (A Specialist Will Reply)' started by Joomla, Jan 9, 2010.

  1. Joomla

    Joomla Private E-2

    Hello,
    first of, thanx in advance for your help.
    Here is a brief background on the problem i'm having:

    1. I think it all started when I visited an e-book site. The initial problem was that a new tab, asking to take some sort of a servey, would open up. Also, clicking on internet search results would take me to wrong sites.

    2. I came to major geeks and followed the Read Me First and followed the instructions. Everything was going well until I ran Malwarebytes. It found 3 items and without thinking I went ahead and deleted them. Now that I think back, 2 of those items found had to do with firewall and antivirus. I can't get the logs because I can't run the malwarebytes or the superantispyware.

    3. So, after running malwarebytes and rebooting, there were three unwanted shortcuts to adult websites. I also get IE popups and hear audio for advertising.

    4. I can't run Superantispyware or malwarebytes anymore or any other of the programs listed on Read Me First page. I'm now getting security warning indicating that ytbb.exe is infected and if I want to activate antivirus software.

    I'm using Windows XP. Please let me know what I can do.
     
  2. Joomla

    Joomla Private E-2

    Can't run any exe files

    My web searches were being redirected so I ran SAS and then Malwarebytes. After rebooting I'm unable to run anything except firefox, IE, and windows explorer.
    Can anyone plz help?
    Thanks!
     
  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi there and welcome to the forums. :)

    The logs should be retrivable here:

    It's important that we see those logs and see all exactly what was removed.
    You said you couldn't run them but then:

    Attach all of the logs that you have please for SAS and MBAM. And then you said you were unable to run Combofix, rootrepeal or MGTools? Did you try running them in safe mode if you weren't successful in normal mode?
     
  4. Joomla

    Joomla Private E-2

    Kestrel thank you for your reply.
    I can not locate "Application data" folder so I can't attach the logs. I'm using Windows XP professional, service pack3. Is that the right place for logs?

    When I select safe mode option, the computer restarts so I can't get to safe mode to try running the apps there.

    Anything else I can do?
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I am having a word with Chaslang, hang in there, i'll get back to you.
     
    Last edited: Jan 11, 2010
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    I do not understand. The Application Data folder is there, just use Windows Explorer to locate it and the logs will be found using the file path I gave you.

    Attach the logs from SAS and MBAM and also I would like to know what happened with the other tools such as RootRepeal, combofix and MGTools.exe. Were you able to run these? If so please attach the relevant logs. Without seeing these logs unfortunately there isn't much I can do for you.
     
  7. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Additionally considering you haven't run MGTools yet you will need to do this in order to see the Application Data folder. (Obviously I still want you to run MGTools) but do this and attach the logs also from SAS/MBAM.

    How to view hidden, system files & folders!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds