Request for help with malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by prwdmonkey, Mar 5, 2009.

  1. prwdmonkey

    prwdmonkey Private E-2

    I'm crawling through the READ & RUN ME religiously as we speak. I wanted to get a topic started to give anyone willing to help a quick headstart.

    My friend is requesting help with a PC that seems to be somewhat rampent with malware. I don't have any info of when or how it started.

    I'm using my own clean PC to research, post, download and w/e else I need.

    I just finished running CCleaner on all profiles including ADMIN in safe mode and I'm moving to the next step. Thank you for any and all help.
     
  2. prwdmonkey

    prwdmonkey Private E-2

    So the Malware has somehow corupted my windows installer ao I cant remove or install anything. I tried renaming the old .exe and.dll for the installer in system32 and installing a new one but then I get an error message about the Cryptographic service not running. SO! I tried to start it manuely in the services under admin tools. It gave me Error 1068: THe dependency service or group failed to start.

    and now I'm at a loss because I can't finish what is suggested already.

    Any takers?
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Have you tried running sfc?

    Go to start / run / type "sfc /scannow" without qoutes and have your xp cd handy. Run it twice.

    Or you could try downloading a newer version HERE
     
  4. prwdmonkey

    prwdmonkey Private E-2

    I had already tried installing a new windows installer. But the Cryptographic service was still holding me up. So I tried running that scan twice. And now the Add/remove progarms is gone off of my control panel. Any more ideas?
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Are you able to run any online scans:
    Using BitDefender Online Scan.

    Unfortunately if we cannot get logs to review, there isn't much we can do until the system is stable enough to do so.

    Go to Start>Run, type in "appwiz.cpl" (without the quotes) and click OK (or press Enter).

    If it doesn't start, go to Start>Run, type in "msconfig" (without the quotes), click OK and on the general tab, click the "Expand File" button. Tell it you want to extract appwiz.cpl, tell it to extract it from either C:\I386 or your XP CD (which you'll need to put in the CD drive) and tell it to extract it to C:\Windows\System32.
     
    Last edited: Mar 9, 2009

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds