Quick check please

Discussion in 'Malware Help (A Specialist Will Reply)' started by emartin1984, Mar 30, 2005.

  1. emartin1984

    emartin1984 Private E-2

    Hi everyone nice website i have learned alot from it.
    Okay heres the deal- i have had lots of problems with my computer and i think i finally after like a month got rid of everything hopefully,will u take a look at this log for me and i dont know how you tell but if you can will you tell me if everything looks good?
    what i have done-went threw the steps step by step in your instructions-
    Went to safe mode and ran

    1-Trend Micro's Free Online Virus Scan
    Results-sorry i cant remember if it logged it but it did find something if i can remember right and fixed them.

    2-Symantec Security Check-This did not work i think because my computer has something screwed up with the activex that i cant figure out.So i went down the list and tryed running Bitdefender online scan and that didnt work then finalloy i got RavAntivirus online scan and it worked and finished found some and cleaned.

    3-McAfee AVERT Stinger-Did not find nothing.
    -Dissconnected from internet (still in safe mode) and ran these-

    4-after useing ccleaner i tryed Ad-Aware SE and it started then got stuck after scanning like 127673 files,i stoped it and tryed again maybe 3 times same thing so i tryed running spybot and it found soem and cleaned then ran ad-aware again btu it froze again so i tryed again then stoped it after it found a few then i cleaned those out and ran again and it finally went all the way threw and i cleaned everything that came up.

    5-CWShredder,Kill2me,about:Buster ,HSRemove-didnt come up with nothing

    If you want a report of the things spybot has found i found a list i can show you just let me know-also i can show u the log from ad-aware if you like-
    If this isnt enough info just let me know because i have had other problems before i think i fixed on my own.sorry for haveing you read so much,i wont post hijack log yet because i guess i need your okay first so let me know thanks for the help-Oh ya also my windows is updated with everything current(so i hope so)
    -Eric
     
  2. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    • Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT
    • Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the ZIP file.
    • Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.
    • Run HijackThis and save your log file.
    • Post your log as an ATTACHMENT to your next post. (Do NOT copy/paste the log into your post).

     
  3. emartin1984

    emartin1984 Private E-2

    k here it is i have a log before i ran all the scans too if that helps let me knwo and ill post it
     

    Attached Files:

  4. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Scan with HijackThis and Check the Boxes for the following:

    Make sure All Browser Windows are Closed when you Click FIX.

    O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D3FA-F27BA787AD2D} - (no file)

    O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1

    O8 - Extra context menu item: Coupons - file://C:\Program Files\couponsandoffers\System\Temp\couponsandoffers_script0.htm

    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} -%windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)

    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

    O23 - Service: Windows Installer (MSIServer) - Unknown owner - C:\WINDOWS\system32\msiexec.exe (file missing)
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Unknown owner - (no file)
    O23 - Service: Norton Unerase Protection (NProtectService) - Unknown owner - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE (file missing)
    O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - (no file)
    O23 - Service: Speed Disk service - Unknown owner - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe (file missing)

    Again, make sure All Browser Windows are Closed when you Click FIX.

    NOW:
    Please boot into Safe Mode with the Viewing of Hidden Files & Folders Enabled and navigate to and DELETE the following if they should remain:

    C:\Program Files\couponsandoffers ←–– Delete this whole folder if it exist!

    NEXT:
    Run CCleaner and Spybot S&D and have Spybot fix what it finds.
    Note: Dont forget to update Spybot S&D by selecting "Search For Updates"

    Then, as an added precaution, Go to Start > Run and type: cleanmgr and then click OK. Make sure the boxes for these are checked:
    Temporary Files
    Temporary Internet Files
    Recycle Bin


    And Click OK.

    Reboot to Normal Windows , Scan with HijackThis and attach the new log.
     
  5. emartin1984

    emartin1984 Private E-2

    new log
     

    Attached Files:

  6. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Do you use Norton AntiVirus? If so, uninstall Norton or McAfee, take your pick.

    Reboot into Safe Mode, scan with HJT and have it fix these entries with ALL browsers closed.

    O9 - Extra button: (no name) - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - (no file)

    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Unknown owner - (no file)
    O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - (no file)

    Reboot into Normal Mode and get me a fresh HJT log.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds