MGTools can't run, etc

Discussion in 'Malware Help (A Specialist Will Reply)' started by CindyMT, Apr 21, 2015.

  1. CindyMT

    CindyMT Private E-2

    Hi,

    My websites got spam injection hacked, and so I scanned my computer and found a few issues. In the process, I also found I cannot set the restore points nor configure it. "Turn on system protection" is not available, and I tried everything including running Enable_System_Restore_Configuration.reg

    Everything in the Malware removal guide ran fine, except for MGTools, which kept looping, asking for admin authorization. I had to close it with task manager, after a battle.

    I saw hitmanpro seem to "pick up" skype and logmein... and send it to the cloud or something? Skype had been quarantined as a virus on a previous antivirus scan, which I believe it was.

    Other than that, my printer software no longer shows how much ink is left. The system is fairly fast, I just want to be sure it's clean.

    Thanks guys!
    Cindy
     

    Attached Files:

  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Hello, CindyMT

    Re-run Hitman Pro and have it fix the detected Potential Unwanted Programs. Re-boot your machine and run a new scan only - attach the updated log.

    Now please download Junkware Removal Tool to your desktop.
    • Make sure to shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Note: That JRT may reset your home page to a google default so you will need to restore your home page setting if this happens.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.

    1. Is your protection software disabled?
    2. Do you have UAC disabled?
    3. When you run MGtools.exe are you using right click and then select Run As Administrator?

    Please click Start, All Program, Accessories and you will see ( among other things ) a Command Prompt entry.

    • Right click the Command Prompt entry and select Run As Administrator.
      • It is critical that you run it this way.

    • If you do this properly, a command prompt window will open with a title of Administrator Command Prompt.
    • Enter the below commands at the command prompt each followed by the enter key. The bold black are commands. The purple/brown is merely informational.

    cd \MGtools <-- this changes to the MGtools folder and the prompt should change to C:\MGtools>
    GRK64 <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    SN64 <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.

    Now look for the C:\MGlogs.zip file and attach it no matter what happened while doing the above.
     
  3. CindyMT

    CindyMT Private E-2

    Thanks Dr!

    I turned off AVG, ARGH UAC was supposed to be disabled, but was not (I was having some issues with trying to set a restore point before running TDSKiller, and re-enabled it, and forgot I did.. :/).

    But MGTools ran this time via command prompt. Report attached.
    Errors...

    GRK64:
    --------
    64 bit Win OS found
    The system cannot find the file specified.
    Zipping runkeys.txt
    Finished zipping runkeys.txt

    SN64:
    --------
    Doesn't look like any errors.
    zipped newfiles, ffdata, winfiles

    I ran HitmanPro again and deleted the PUPS, rebooted and re-ran, with
    report attached. And ran the junkware removal, report attached.

    Thanks for the speedy help!!
    Cindy
     

    Attached Files:

  4. CindyMT

    CindyMT Private E-2

    OH yes, and another weird thing that's been happening for some time, in case it's related--when I do a soft reboot, the system does not reboot, it kind of "hangs" with the hard drive light going... Until I power down and power up again.
     
  5. CindyMT

    CindyMT Private E-2

    And, what we did last seemed to solve the rebooting problem!! I love Major Geeks ;-) :-D
     
  6. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    You're welcome.

    Uninstall this outdated Java version ...
    Java 8 Update 31

    ...and install the current release via the below link:

    Make sure that when you install the new version of Java that you uncheck the Install the Ask Toolbar junkware checkbox. You do not want to add the stuff junk that most people consider malware to your PC. Also just in case Oracle changes the Java installation in the future to possible install other junk, uncheck all but just installing Java.

    Be patient while doing the below. The fixes can sometimes take quite awhile to run. Especially the permissions repairs. It may be best to kick it off and goto bed or do something else. *It is better not to run anything else while the repairs are going on.

    Download Windows Repair by Tweaking.com and unzip the contents into a newly created folder on your desktop.
    • Now run Repair_Windows.exe by double clicking on it ( if you are running Vista or Win 7/8, use right-click and select Run As Administrator)
    • Now select the Start Repairs tab.
    • The click the Start button.
    • Create a System Restore point if prompted.
    • On the next screen, click the Unselect All button to first deselect all repairs.
    • Now select the following repair options:
      • Reset Registry Permissions
      • Reset File Permissions
      • Register System Files
      • Repair WMI
      • Repair Windows Firewall
      • Remove Policies Set By Infections
      • Repair Winsock & DNS Cache
      • Repair Proxy Settings
      • Repair Windows Updates
      • Set Windows Services To Default Startup
    • Now on the lower right side check the box to Restart/Shutdown System When Finished
    • Then make sure the Restart System radio button is enabled.
    • Shutdown any other programs that you are running now before continuing.
    • Now click the Start button.
    • Be patient while the tool repairs the selected items.
    • It should reboot automatically when finished.

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista, Win7 or Win8, don't double click, use right click and select "Run As Administrator"). Make sure you wait for it to tell you it was finished running before grabbing the log to attach it.

    Please attach the updated C:\MGlogs.zip.

    How is the machine running now?
     
  7. CindyMT

    CindyMT Private E-2

    Ran it overnight, woke-up to AVG wanting to grab several files in the middle of the scan. OH the faith I have in MajroGeeks! lol. I ignored them and it finished okay, and the system seems to be running fine.

    MGLogs.zip is attached.

    Oh, the Windows Repair instructions don't match the repair program, and it had started before I had a chance to select which things to repair or not, so I fairly quickly stopped it, but seems everything went okay?
     
  8. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Sorry, Cindy but nothing was attached. Are you still having problems with System Restore?
     
  9. CindyMT

    CindyMT Private E-2

    Yes, system restore is still greyed-out. Will try attaching the file again here.
    Cindy
     

    Attached Files:

  10. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Ok - I've updated the instructions for using Windows_Repair.

    Tell me how the machine runs afterwards!
     
  11. CindyMT

    CindyMT Private E-2

    Thanks Dr! Some things came up, and I had to stop trouble shooting, but I will be back ASAP... stay tuned ;-) Cindy
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds