System hangs during online scans

Discussion in 'Malware Help (A Specialist Will Reply)' started by mjmeyer05, Jul 11, 2006.

  1. mjmeyer05

    mjmeyer05 Private E-2

    Hi all, I've been working on getting a PC cleaned up for a few weeks now(more like a month) and I've managed to get rid of a great deal of junk. The owner ran it on a DSL line with no firewall, just an outdated version norton AV, if that weren't enough, they also did alot of downloading from kazaa. So far I have removed a slew of adware and think I have successfully removed the sasser worm.

    Now for the problem, I've gone through the read & run first steps, but I can't get a successful online scan. It either stops on the file msobshel, or the system just hangs during the start of the scan. Even just getting the webpage for panda software to load takes a good 10 minutes. I'm sure there's something I'm overlooking or need to do first before I attempt another online scan. Any assistance or advice you can provide would be greatly appreciated.
     
  2. mjmeyer05

    mjmeyer05 Private E-2

    Update on my issue, I finally got this thing to make it through the online scan for bitdefender, Actually I reran ALL of the scans listed in Read & Run first just in case I needed a current log file from them. All the scans came back clean so far, and I just started running the scan for panda. I'm a bit worried though, Panda isn't even half way through the scan and it's found 18 spyware programs and 3 potentially unwanted programs.

    As soon as it finishes, I'll save the log, and I'd like someone to take a look at it for me and give me their opinion. Thanks in advance.

    Mike
     
  3. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    No problems Mike, just keep on following the guide the best you can, but tell us if you cannot run any process and why, include any error messages, then attach the required logs.

    and one of the malware experts will give it a look, we are quite busy at present so please be patient as the guys work from the oldest post upwards.
     
  4. mjmeyer05

    mjmeyer05 Private E-2

    Here's a curious problem I just encountered, the scan finished, it says it found 21 spyware programs and 6 potentially unwanted tools, but when I click see report, it says I need an internet connection to continue. Apparantly the connection died? I'm running XP home in safe mode with networking. Any ideas on that one? I'm guessing I'll have to rescan and se if I can catch the end of the scan before I lose the connection. :mad:
     
  5. DavidGP

    DavidGP MajorGeeks Forum Administrator - Grand Pooh-Bah Staff Member

    If Panda crashes or doesnt finish for you skipped that step and tried to run and gain a log file from bitdefender instead?


    you could also try a few of the alternative scans from step 8 of the guide in lieu of Panda, ..... Ewido ( a downloaded scan ), Trend online and KAV online scans may help and then continue with step 7 the HJT scan and log.
     
  6. mjmeyer05

    mjmeyer05 Private E-2

    That's the curious part, the scan with bitdefender came up clean, so what is panda finding that bitdefender didn't? I just restarted the scan with panda and the connection already died, all I did was refresh panda's homepage. Is that due to me being in safe mode? I'll kill this scan and try one of the alternative scans.
     
  7. mjmeyer05

    mjmeyer05 Private E-2

    Oh, and the other thing is in order to get the connection back, I have to reboot.
     
  8. mjmeyer05

    mjmeyer05 Private E-2

    Ok, I ran the ewido security suite scanner, it found 11 objects. I'm attaching the log file it created. I also ran a hijack and am attaching that as well.
     

    Attached Files:

  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You have to allow Ewido to fix what it finds otherwise there is no sense in running the scan. Run it again and allow it to fix everything.

    You need follow the directions in step 7 of the READ ME exactly:
    - we need HJT logs from normal boot mode
    - you must not use MSconfig to control any startups. Normal Startup must be selected.

    Attach a new HJT log from normal boot mode.

    Do you have a log from CounterSpy?

    You do not really appear to have any malware! At least not in you HJT log. Only Ewido found a couple things to fix. What are the reasons for you coming here for malware help to begin with? The online scans are things you would try after coming here. Why did you come here initially?
     
  10. mjmeyer05

    mjmeyer05 Private E-2

    I apologize, I realized my mistake with hijack being in safe mode after I posted that message yesterday. I'm attaching one from normal boot mode. When I ran Ewido, I did have it fix what it found. I'm not sure why the log says no action taken. The issues that were found were deleted.

    Originally I posted here because I was having problems getting the online scans to run. When I run panda it will finish the scan and it finds spyware, but for some reason the internet connection drops so I can't generate the log file. But the other scans that were suggested seem to have worked. If this hijack log looks clean, then I should be good to go to create a new restore point.
     

    Attached Files:

  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Your log is clean! If you are not having any other malware problems, it is time to go back to step 1 of the READ & RUN ME to Disable System Restore which will flush your Restore Points. Then reboot and enable System Restore to create a new clean Restore Point.

    After that, you should work thru the below link:

    How to Protect yourself from malware!
     
  12. mjmeyer05

    mjmeyer05 Private E-2

    I'm relieved to hear you say that. I was looking at the log, and from the handful of tutorials that I've read about reading hijack logs, it looked clean to me. It's just good to hear it from someone who knows for sure. Many thanks to all of you guys, I appreciate your advice and you taking the time to look at the logs for me.

    I flushed the old restore point and created a new one, and installed Zone Alarm for a firewall. I'll let the owner of the pc decide on which Antivirus to use. Just out of curiosity, what do you guys use for antivirus? I see the recommendations for Avast, AVG and Antivir. Just wondering which of these you use. Thanks again!
     
  13. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    In reality we use all of them. I have over 20 PCs at home sampling ALL Windows Operating Systems and they all have an antivirus on them except the ones I use to experiment with malware.

    If I had to pick one from the llist of free antivirus programs......it would be AVG!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds