Problems with Windows update

Discussion in 'Malware Help (A Specialist Will Reply)' started by TapherSutherland, May 29, 2009.

  1. TapherSutherland

    TapherSutherland Private E-2

    Hi, I am running a windows 7 beta x64 and vista x86 dual boot. I know that combofix will not run on the 64-bit OS, so I haven't messed with it too much. I have used it in the past at the workplace when we got hijacked by a spambot and blacklisted. (Why don't users know not to run .exes from people they don't know?)

    My actual problem stems from the fact that I cannot run windows update. Whenever I try to go to update.microsoft.com it goes to Google English. I have checked firewall settings, my host file for dns hijacks, and cannot find anything. I wanted to run Windows Update because I have just installed the Windows 7 RC and want it to be up to date.

    Also, I use Malwarebytes and SuperAntispyware as part of my normal suite of software. They both found trojans, which should be taken care of, but there may be lasting effects.

    I was looking around on here and stumbled upon MGtools and have a logfile from that. Any help would be appreciated. Also attached is a hijackthis! logfile, if you can do anything with that.
     

    Attached Files:

  2. TapherSutherland

    TapherSutherland Private E-2

    I've been doing some research and this sounds a lot like conficker.b or c, as a precaution can anybody give me some info on removing conficker?

    Also, where the heck is the edit button?
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    You need to attach the logs as requested in the cleaning instructions.

    There are no problems showing in the MGtools logs other than the fact that this PC has no protection software installed. You should install and antivirus, update it, and then run a full scan. Then install a firewall.
     
    Last edited: May 31, 2009
  4. TapherSutherland

    TapherSutherland Private E-2

    Here are the logs. On another note, Malware and Antivirus sites seem to be blocked as well. Which, from the research I have done, seem to be symptoms of conficker, but I can't be sure. We have been trying to get our free Macafee from Comcast (since it is free) but there all sorts of issues with that (certificate errors etc.) which I am not sure if they're part of the same issue.

    Also, it isn't just Windows Update that is blocked, I get a 404 from the entire download.microsoft.com. Most issues I've had with malware in the past are redirects, so this whole thing is strange to me.
     

    Attached Files:

  5. TapherSutherland

    TapherSutherland Private E-2

    I'm still trying to figure this out, I can't get any service packs or anything else from the download.microsoft.com string or any malware stuff. Download.cnet.com has been a decent workaround thus far...:cry
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Why have you previously (before now) been running this PC without any protection software installed?

    If you think that you might have a Conficker problem, try running the below:

    McAfee AVERT Stinger Conficker


    Also see if the below will run on your x64 version of Windows

    Trend Micro RootkitBuster


    If they do not find anything, it may just be faster/easier to reinstall your Win 7 Beta and this time get it protected properly ASAP.

    Attach logs from the above.
     
    Last edited: Jun 6, 2009

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds