Random Freezing

Discussion in 'Malware Help (A Specialist Will Reply)' started by Captain Drift, Feb 14, 2009.

  1. Captain Drift

    Captain Drift Corporal

    Hello,
    My fathers system is randomly freezing, Attached are the xp cleaning logs,
    Does this help?

    Not much was removed?
    I am thinking about getting a new Sata drive to replace the current IDE drive, but will it help?
    thank you
    Captain
     

    Attached Files:

  2. Captain Drift

    Captain Drift Corporal

    Also these logs
     

    Attached Files:

  3. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi and welcome

    We are currently reviewing your logs and will get back to you with a set of instructions as soon as possible. Thanks for your patience during this time.

    Kes
     
  4. Captain Drift

    Captain Drift Corporal

    Thank you Kestral
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    1) You need to make sure your machine is set up for normal boot mode as per requested in the R&R. To see how to do this refer to the following:

    Use MSconfig to setup for Normal Startup Mode

    2) You still have Spybot Search and Destroy's Teatimer running. To disable it, follow the instructions given in the below link:

    How to Disable Spybot's Teatimer


    3) Please go to Add or Remove Programs and uninstall the following software:

    • Java(TM) 6 Update 11

    4) Please disable all anti-virus and anti-spyware programs while we do the following (re-enable when you are finished):

    Run C:\MGtools\analyse.exe by double clicking on it (Note: if using Vista, don't double click, use right click and select Run As Administrator). This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    O2 - BHO: (no name) - {201f27d4-3704-41d6-89c1-aa35e39143ed} - (no file)
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [MSConfig] C:\windows\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto

    After clicking Fix exit HJT.

    5) Now reboot your machine and install the most current and up to date version of Java available here at the below link:

    Java Runtime 6

    6) Now Run Ccleaner!

    7) Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this.

    Thanks
    kes
     
  6. Captain Drift

    Captain Drift Corporal

    Thank you did as requested and attached are the new logs.
    I could not find
    O4 - HKLM\..\Run: [MSConfig] C:\windows\pchealth\helpctr\Binaries\MSCONFIG.EXE /auto

    On start up I get a message saying Boot.ini is missing, is this related?

    Thank you for your help
     

    Attached Files:

  7. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    checking your logs, will get back to you ASAP

    thanks, kes
     
  8. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member


    Related to what? It has nothing to do with our cleaning procedures. It must have been missing all along. You need to fix this but it is a topic for the Software Forum but I can refer you to this <click here>

    Your logs are clean....

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommed you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /u
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
      • Delete the C:\combofix folder from combofix (if it exists)
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. You can delete the C:\MGtools folder and the C:\MGtools.exe file. You can also delete the C:\MGlogs.zip
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning steps in the READ ME for your Window version and see the steps to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     
  9. Captain Drift

    Captain Drift Corporal

    Thank you Kestrel13!

    Is there anywhere on here explaining the logs? As i would like to learn to read them myself.
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You're very welcome :)

    Which logs, any in particular, or all of them? Are you looking to learn to read logs or do you wish to learn to remove malware? See the below for some useful information.

    Thanks for the inquiry; however, you need to have significant Windows OS background as well as training in recognizing malware and the tools used for performing removal techniques. Unless you have already been a recognize expert at some other site, you would have to undergo training before you would be allowed to help at any well known websites that are performing malware removal.

    Unfortunately we are too busy to offer training to anyone who is not already a recognized expert. There are a few websites that provide training rooms. The process can take awhile to complete since there is a lot to learn and the people training you are doing it in their free time. Make sure that you are serious about wanting to spend the time to learn and have the time to perform malware removal this because it takes a strong committment. Check out the below sites:

    BootCamp

    Geek U!

    What The Tech Classroom
     
    Last edited by a moderator: Feb 16, 2009
  11. Captain Drift

    Captain Drift Corporal

    Thank you kestrel13!
    yes I wanted to learn how to remove malware and read the HJ logs.
    I do have MOUS and MCSE in windows 2K but would like to learn to remove malware.
    I will check the links thank you
     
  12. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds