Not catching something...

Discussion in 'Malware Help (A Specialist Will Reply)' started by rogvalcox, Jan 25, 2006.

  1. rogvalcox

    rogvalcox MajorGeek

    I was hoping that one of you guys would take a glance at this HJT Log, and see if you can see what I'm missing, if anything??

    I'm working on a friends pc that got pretty infected with all the goods!! Virus, trojans, malware, etc., etc!! I've done EVERYHTING in the "Read Me" along with all the extras in the other stickys. The Panda Scan is completely 0, nothing, the AVG scanner finds nothing, along with Spy Bot and Adaware. However...I still can't gain access to the desktop backgrounds in the display proerties, so that leadsa me to believe that there is a little something still hanging that I just can't find for the life of me!! I fixed someones comp before that had a similar problem, but it was sooooo long ago I can't recall what I did!!:eek:

    So anyway...I was hoping you would take a peek at the HJT log and see if anything catches your attention!! And as I said before I have already done everything else, verbatim!!!!!!!!!!!

    BTW...the os is XP SP2

    Thank You
     

    Attached Files:

  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

  3. rogvalcox

    rogvalcox MajorGeek

    Beautiful...I commend you all on a job well done!!!!

    I did the SpySheriff (aka SpywareNo) Removal And it proved to be a success, and I have to also say that the instructions were written very well!!!!

    I would ask you exactly what it was I did, but....since I'm in the process of studying for my A+, etc., I'm sure I'll figure it out soon enough!!!!

    Thanks Again!!!!

    Roger
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Would you expect anything less! :D :D
     
  5. rogvalcox

    rogvalcox MajorGeek

    Well ofcourse not...what was I thinking!?!?:rolleyes: :D :cool:

    Thanks Again!!!!

    Roger
     
  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

  7. rogvalcox

    rogvalcox MajorGeek

    Thanks for the info, but I was working on a friends comp!!:)

    I myself NEVER EVER (knock on wood) have any problems/issues...I just try to help some friends who can't afford to pay to have it fixed...and/or...Even if they did attempt to fix it via you guy's instructions...they would get scared to death, and run and crawl into the closet into a fetal position!!!:eek: :rolleyes: :)

    This particular friend, however...just can't seem to grasp what it is all about!!!!:rolleyes: I know for a fact that he and his wife try to be good about it, but no matter how much you explain it to them, you can see that glazed over look in their eyes, the whole time!! The funny thing about it though...they think that it is a personal conspiracy!! The three or four people that they talk to, say they never have any problem, and they do WHATEVER:rolleyes: they want on the internet...so now they think they are the one and only, in the entire world, that have this problem repeatedly!!!! LOL :rolleyes: :)

    Meanwhile...enough about my lifes history...I got another question I was hoping you could help with!!!!

    Thanks to this thread...my scanners, logs, etc., etc., are all showing that I am squeaky clean, and I can now access the desktop settings...however...None of the programs (AVG, Adaware, Spybot, Microsoft Spy, etc.) cannot make the outgoing connections necessary to update. I have checked and rechecked all firewall settings (windows firewall) and even turned off the firewall, and i've checked and reset the security settings, etc. in the "Internet Options" and still no success. So then I tried un-installing AVG and Adaware and re-installing, just as a test, and still no good, even with the firewall off...even though I would think that it shouldn't matter since windows firewall is only an incoming firewall...correct!?!?!? SO I'm wondering if there is another setting in there that all of the junk might have screwed up, and I'm just looking over it, or is there something lurking behind the scenes, that no-one can see!?!?

    Any thoughts??

    Roger

    P.S. Sorry for the ramblings on!!!!
     
  8. rogvalcox

    rogvalcox MajorGeek

    BTW...forgot to add, that if I go into safe mode with networking...it they will work!! And I thought that maybe there was a conflict in the user account settings, but even after deleting the one user account there was...which makes windows boot up directly into the adminstrator account without the log in screen...and that didn't make any difference either!!!

    Roger
     
  9. rogvalcox

    rogvalcox MajorGeek

    Yes it's me again!!:rolleyes:

    I was just thinking that perhaps my last question might be better off in the software section????

    Just let me know, and I will repost it over there!!!

    Roger
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Since you are now working on a different problem in a different computer (your computer it sounds like this time). You should have posted in a NEW message and you should be following the steps in the READ & RUN ME. You either are incorrect in your assessment that you are "squeaky clean" or you have some kind of software conflict that is causing you problems when you run in normal boot mode.

    I may split this off into a new thread to avoid confusion. But I'll wait until you come back before doing so.

    What firewall are you referrring to?
     
  11. rogvalcox

    rogvalcox MajorGeek

    I apologize for the confusion...but this is the same system that I was referring to earlier!!

    When I say I am squeaky clean...I mean that everything in your readme, including my AVG scanner (which is up to date) is showing Nothing, Notta, Zip, Zilch!!

    So that is why I am wondering if maybe some previous piece of junk has changed a setting that I am not catching!?!?!

    In the meantime...I've done a successful winsock reset, and upon observing my Hosts file, I find nothing in it, but.....

    127.0.0.1 localhost

    127.0.0.1 localhost

    And even though I am not that knowledgable about the Hosts file...the research I have done is not throwing up any red flags!?!?!? Or am I wrong???

    BTW...The windows XP Firewall is what I was talking about!!

    Roger
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    That is the normal entry in a host file. There should only be one line like that. If you want to reset the host file back to default, use the below tool:

    Download HOSTER and then follow the below steps.
    • Unzip Hoster to a convenient folder such as C:\Hoster
    • Run Hoster.exe, click Restore Original Hosts and then click OK.
    • Click the X to exit the program
    Since you are using the Sygate firewall, did you disable the Windows firewall? You did make a reference to it
    The Sygate firewall could be blocking you.

    The HJT log seems to be rather on the small side. What have you been removing from it?
    I see that MS Antispyware is not installed. Why? It is part of the read me. If it is because of update problems, you said you can update in safe mode so do it in safe mode.
     
    Last edited: Jan 29, 2006
  13. rogvalcox

    rogvalcox MajorGeek

    Thanks...I got it!! I forget about the sygate firewall being on there!!! DUH!!:rolleyes:

    Somehow it disappeared in the mist of all the crap that was on here...and I wasn't seeing it at all, so I forgot about it...but after you mentioned it, and I went into the add remove programs in the control panel...there it was!! So I uninstalled it and re-installed it and configured everything, so now we are all just peachy!!!

    Thanks again!!!!

    Roger
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds