not sure what to do next...

Discussion in 'Malware Help (A Specialist Will Reply)' started by Sin365, Jan 17, 2005.

  1. Sin365

    Sin365 Private E-2

    Done everything here:http://forums.majorgeeks.com/showthread.php?t=35407

    Didnt work. Got the Hijack This downloaded and run it...and im sure what to remove or keep.

    This all started after a patch from a game I play Starwars galaxies. Just wont load, get Fatel error everytime and a fellow gamer with same prob sent me in this direction. As far as I can tell I done everything step by step" as if a gun were pointed at my head" and still didnt work. So I went for that program Hijack This and im lost as what to do next. I look at the log file and it dont mean much to me any help with this would be great will post log file if asked


    Please help been 4 days now without my game...close to going insane!
    Thanks you for any help
    Sin
     
  2. Sin365

    Sin365 Private E-2

    Ok I tried my best to figure out what those codes ment from the guid you have and Fixed the ones that didnt fit. But it still wont work. I know if I reboot the file will morph to a differnt name...someone please help me with this virtumondo thing please!! Im just sitting here with nothing but time hitting the refresh button so any help would rock!!! PLEASE!!!

    Sin365

    P.S PLEASE!!!
     
  3. Sin365

    Sin365 Private E-2

    :( still nothing I have done everything this site has asked all in safe mode. My log file is so small it can only be 1 of a few files, I just cant find out what those files are used for or wou fix them as well. I know it has something to do with delete file on reboot but not sure what one it should be that is deleted on reboot. Can someone who knows take a fast look at my log file??? please please please help!!!
     
  4. Sin365

    Sin365 Private E-2

    grr wouldnt let me edit this in...this is the error report I have

    SWGCLIENTSETUP_R caused an exception 10H in module KERNEL32.DLL at 019f:bff80df0.
    Registers:
    EAX=002a001f CS=019f EIP=bff80df0 EFLGS=00200246
    EBX=00000000 SS=01a7 ESP=0081b928 EBP=0081b93c
    ECX=c1b418e0 DS=01a7 ESI=00000000 FS=613f
    EDX=bffc9490 ES=01a7 EDI=81db6a00 GS=0000
    Bytes at CS:EIP:
    85 c0 74 6e 83 f8 ff 75 5c 83 fe 01 1b c0 25 72
    Stack dump:
    0081b9a8 64aaca0c 00000000 81db4c18 00000001 0081b970 beb1665a 453a4c58 0000003d 0081b978 00000018 0081b964 00000004 0081b968 00000000 0081b9f4

    This is the same error alot of us in SWG are getting. Please help us our CSR/Devs cant! :(
     
  5. PhilliePhan

    PhilliePhan Guest

    Hi Sin365,

    If you are certain that you've exhausted the Tutorial's options ( including the Online Scans), then go ahead and send us a HijackThis Log. Make sure to follow the instructions below:

    Note that your HijackThis should be up-to-date (v1.99) and MUST be extracted to its own safe folder – C:\Program Files\HijackThis!
    If you need a Fresh Download of HJT, get it HERE: HijackThis v1.99

    Also note that, before you scan, you MUST close all running programs including your web browser, e-mail and items in the system tray.

    Please save your HJT Log as a .txt File and attach it via the "Manage Attachments" tool in the Additional Options section when you post.

    Please note that there are only a couple of us who give advice here in our free time and I’ve been tied up with work these days, but somebody will try to take a look at your log when they get a chance.

    Best :)
    PP
     
  6. Sin365

    Sin365 Private E-2

    I have done everything step by step! I just want it fixed willing to do anything. The file is saved in the right place and scan done here is the file
     

    Attached Files:

  7. PhilliePhan

    PhilliePhan Guest

    Is that your complete log from normal windows boot?
     
  8. Sin365

    Sin365 Private E-2

    yes..closed down this fourm...ran Hijack this..got report..closed that progarm and psted it, dont nothing since
     
  9. PhilliePhan

    PhilliePhan Guest

    At quick glance, I see nothing bad in your HJT log. Do not see Virtumundo.

    This bothers me a little O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe But it is probably nothing. You could, however, make sure that ctfmon.exe is running only out of the SYSTEM Folder and nowhere else.
    But, again, it's likely nothing to worry about.

    Are you sure you've got a malware problem? Are there any other symptoms other than not being able to play SWG?

    Take a look at the Virtumundo Sticky Thread fo an idea of what that baddie looks like - Looks like you do not have it.

    PP :)
     
  10. Sin365

    Sin365 Private E-2

    Everything is fine other then playing that 1 game. Not sure it was Virtumundo but I had same error report as alot of other so figured I would explore that route.

    I have no idea [ctfmon.exe] ctfmon.exe[/B] what that is..it bugs me too. Im overly protective of this computer all I use it for is gameing so I didnt think it was malware. But everytime I load SWG I get blue screen of death...ctrl alt del to reboot...have to do system scan because it has a few error after that. I took the time to uninstall and reinstall it(7 hours) load up and nothing. Others have same problem with same error and the malware issue fixed it. Some just had to wipe HD clean and dont really want to take that step just yet. If there is anything you might beable to think of I will try it...if not well I thank you for your help this far :)
     
  11. PhilliePhan

    PhilliePhan Guest

    Looking at the HJT log, I would rule out malware. There are a number of different scanning tools that you could run to look for super-hidden malware, but I doubt that they'd find anything. You might try posting a query in the Games Forum, though I doubt it would be as effective as posting at SWG.

    You could try DL this: Generic Detection Tool for 9x/ME ---> You’ll need to Click “Agree

    Run Find.bat and give it as much time as it needs and then attach the output log. I doubt it will find anything though.

    PP :)
     
  12. Sin365

    Sin365 Private E-2

    Well Im more then sure It is a problem that lies with in their game I just wanted to be sure that it wasnt this malware they seem to be kicking everyone to for the problem. I thank you very much for your time...and it good to know there are still people out there willing to help one another. This is a top noth site

    /salute
     
  13. PhilliePhan

    PhilliePhan Guest

    Thanks for the good word! Good luck!

    PP :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds