Possible malware infection - WU error, Very slow etc

Discussion in 'Malware Help (A Specialist Will Reply)' started by v_w, Nov 8, 2013.

  1. v_w

    v_w Private E-2

    Hello again!

    A colleague's daughter handed me her laptop (32bit W7 Starter Ed.) and said it "didn't have any internet". Upon booting the machine I found FULL-DISKfighter was running which immediately set my spidey senses a-tingling.

    WiFi was disabled with no way of enabling, same for Windows Update (WU) and various other key services.

    I started with a system restore which cured the WiFi issue. I ran System File Checker which found and fixed issues but the main issues remain - no access to WU and various other key areas of the OS.

    I went through Add/Remove programs and uninstalled a whole heap of junk - the aforementioned FULL-DISKfighter, some program masquerading itself as a Skype alternative and a few more PUPs and BHOs.

    This didn't cure the issues so I started with the Malware Remove process and herewith my scan results;

    RogueKiller - RK_W7
    Malwarebytes - MWB_W7
    TDSSKiller - TDSSK_W7
    HitmanPro - HMP_W7
    MGtools - MGlogs_W7

    NB, I foolishly ran MWB before RogueKiller, I hope this hasn't ruined anything, I wasn't thinking.

    I suspect a full reinstall will be required and this isn't related to malware at all, but I thought I'd have a go here first, just in case.

    With thanks in advance for any assistance, again(!)

    / vw
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You can rerun Hitman and have it remove all the PUP's.

    Then:
    http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool to your desktop.

    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.


    I am not seeing any malware in your logs. You may have to post in the software forum.

    Let me know if any of that helped.
     
  3. v_w

    v_w Private E-2

    Thanks for you help TimW,

    Hitman didn't detect any PUPs the second time round and I cannot remove the various items it finds without purchasing the program - I've skipped that step.

    JRT log is attached - JRT

    WU still doesn't work so I suspect you're correct in saying it's a software issue.

    Pending your response to this post, I'll head over to the software section and see if they're able to assist.

    / vw
     

    Attached Files:

    • JRT.txt
      File size:
      7.8 KB
      Views:
      1
    Last edited: Nov 9, 2013
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You're welcome.

    If you are not having any other malware problems, it is time to do our final steps:

    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.


    After doing the above, you should work thru the below link:






    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0
     
  5. v_w

    v_w Private E-2

    Unfortunately the software issues were costing me so much time I opted to reinstall and start from scratch again.

    The machine was squeaky clean before I started again though, so thank you :)
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You;re welcome.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds