My HiJack This log. (Or, the ill-effects of Grokster.)

Discussion in 'Malware Help (A Specialist Will Reply)' started by honchie, Feb 22, 2005.

  1. honchie

    honchie Private E-2

    http://news.yahoo.com/news?tmpl=sto...42401_2005feb21

    I read this article on Grokster today and thought, Hmm, interesting. I'll download it and give it a try. Since it's offered at Download.com, it can't be bad.

    Wrong. That app is laced w/ spyware and other nasty stuff. So now I got pop-ups galore.

    Would somebody be kind enough to glance at my HijackThis registry and tell me what I should remove:


    Thank you very much. I'm very much a newbie and could use the help.

    chuck
     
    Last edited by a moderator: Feb 22, 2005
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    First:

    Please update your HJT to Hijack This 1.99.1

    Second:

    Please relocate your HJT to a secure location, for example (C:\Program Files\HJT)

    C:\Documents and Settings\Chucky Raux\Desktop\HijackThis.exe


    Third:

    ALL browsers need to be closed when running HJT.

    C:\Program Files\Internet Explorer\iexplore.exe


    Follow these steps before we continue, After you have update your HJT run the new version and attach the new log.
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    BJ,

    The first step is always to use the basic cleanup procedures since they do remove many components more completely than just using HJT.

    So Honchie, first look in Add/Remove programs for any components of malware that have uninstalls and uninstall them. Then run the steps in: READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

    After that, if you have a problem, post the HJT log as BJ indicated.
     
  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I knew that! *duh Bj* I just saw the log and went from there :p
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I know you did! Sometime it is so easy to miss the obvious. Like how many times have you seen someone working on an HJT log for awhile only to realize the HJT version is old? ;)
     
  6. honchie

    honchie Private E-2

    Okay, I scanned and removed any bad software, updated to HijackThis v1.99.1 and here is my new log:

    Inline log deleted, Read Me First not run!

    thanks,

    chuck
     
    Last edited by a moderator: Feb 23, 2005
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please follow directions:

    - You did not install HJT properly.
    - You did not exit all browsers
    - You did not post your log as an attachment

    Uninstall the following:
    - Kazaa (if you have it)
    - P2P Networking <<--- related Kazaa which is malware in my book
    - Warez P2P Client <<--- spyware and adware
    - Ares <--- adware
    - BroadcastPC or BPT (if you find it)

    You did not run ALL the steps in READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

    Please run them and then proceed to the below instructions.


    Make sure you have HijackThis 1.99.1 and follow the guidelines on where to install it and how to post a log as an attachment. This is all covered in the sticky thread NO HIJACK THIS LOG FILES BEFORE READING THIS: HJT Tutorial & LOG File Posting

    Now post a HijackThis log as an attachment to your message (Do not post the log inline). All running programs should be closed, including your web browser, e-mail. Close before running Hijack This!

    To repeat: Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file. Place it in its own folder, for example C:\Program Files\HJT

    Do you know what the below process is and why is it running 10 times?
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZSTC05.EXE

    Is this an HP printer process?
     
    Last edited: Feb 23, 2005

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds