Trying to Figure Out What is Wrong..

Discussion in 'Malware Help (A Specialist Will Reply)' started by stillevenontheinside, Oct 1, 2006.

  1. stillevenontheinside

    stillevenontheinside Private E-2

    Hi.
    I have completed all steps, EXCEPT runkeys, as I was unable to download it. (it kept asking me to log in, though I was already logged in. it told me I was unauthorized to download runkeys.

    Any help would be REALLY REALLY appreciated.

    I am attatching all the requested logs except runkeys, which I was unable to obtain.

    Thanks so much.
     

    Attached Files:

    Last edited by a moderator: Oct 2, 2006
  2. stillevenontheinside

    stillevenontheinside Private E-2

    I forgot to attach my system specs, as well as my activescan file.
    Sorry..

    XP Home Edition with Service Pack 2
    Motherboard:
    CPU Type Mobile Intel Pentium M, 1200 MHz (3.5 x 343)
    Motherboard Name Dell Computer Corporation Inspiron 600m
    Motherboard Chipset Intel Odem i855PM
    System Memory 256 MB (DDR SDRAM)
    BIOS Type Phoenix (01/18/05)
    Communication Port Communications Port (COM1)
    Communication Port ECP Printer Port (LPT1)
     

    Attached Files:

    Last edited by a moderator: Oct 2, 2006
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Try again! If you could download ShowNew then you should be able to download GetRunKey. I really need this log.

    Also you appear to have totally ignored step 3 of the READ ME. You have McAfee and Symantec installed. You must uninstall one of them now and then attach a new HJT log.

    You never explained what your malware problems are but you seem to have a bunch.


    Now Download SmitfraudFix (by S!Ri) to your Desktop.

    Extract all the files to your Destop. A folder named
    SmitfraudFix will be created on your Desktop.

    Open the
    SmitfraudFix folder and double-click smitfraudfix.cmd
    Select option #1 - Search by typing 1 and press Enter
    This program will scan large amounts of files on your computer for known patterns so please be patient while it works. When it is done, the results of the scan will be displayed and it will create a log named rapport.txt in the root of your drive, eg: Local Disk C: or partition where your operating system is installed. Please attach that log in your next reply.

    Note:process.exe ( which is used my SmitFraudFIx ) is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user. The below is a link to what process.exe is.

    http://www.beyondlogic.org/consulting/proc...processutil.htm


    IMPORTANT: Do NOT run any other options until you are asked to do so!
     
    Last edited: Oct 2, 2006
  4. stillevenontheinside

    stillevenontheinside Private E-2

    Okay.
    Thank you so much for taking the time to look at all this.
    I still can't download Runkey... I am trying to do this the same way I have dowloaded everything else, and it still validates my login, then redirects me to another login screen. I can't get past this screen for this particular download. Every other download has worked, so I don't really understand..

    I forgot to mention ealier that I was unable to uninstall Symantec. My previous network required me to have Symantec on my computer, however now that I am on a new network, I am liking McAfee much better. When I try to uninstall Symantec, it asks for a password though I have never set a password on this program. I was unsure about how to get past this, so I couldn't uninstall Symantec. Sorry...

    My basic problems are numerous pop-ups about an infected computer and my "adult-browsing habits", slower processing, and redirected searches leading to commercial, rather than relevant results. My virus scans and antispyware scans through McAfee tend to show trojan/adware/pup/dialer notification, which McAfee cleans, but these tend to show back up within a couple of days...

    Thank you thank you thank you.

    I have attached rapport.txt.
     

    Attached Files:

    Last edited by a moderator: Oct 3, 2006
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay we will come back to it later.

    You need to get that password to uninstall it or you are going to have to uninstall McAfee. Having both of them on the PC can be a massive drain on system resources and they will conflict with each other making each program less effective.

    PLEASE READ ALL OF THESE INSTRUCTIONS FIRST BEFORE DOING ANYTHING. Ask any questions that you may have before starting.

    Please print out or copy these instructions to Notepad as the internet will not be (while in Safe Mode) available to you at certain points of the removal process. Make sure to work through all the Steps in the exact order in which they are listed below. Again, if there's anything that you don't understand, ask your question(s) before moving on with the fixes.

    Reboot your computer into Safe Mode per the safe directions in the READ & RUN ME.

    Open the SmitfraudFix Folder of your Desktop, then double-click smitfraudfix.cmd file to start the tool.

    Select option #2 - Clean by typing 2 and press Enter.
    Wait for the tool to complete and disk cleanup to finish.
    You will be prompted : "Registry cleaning - Do you want to clean the registry ?" answer Yes by typing Y and hit Enter.

    The tool will also check if wininet.dll is infected. If it is infected and a clean version is found, you will be prompted to replace the infected wininet.dll with the clean file. Answer Yes to the question "Replace infected file ?" by typing Y and hit Enter.

    A reboot may be needed to finish the cleaning process, if you computer does not restart automatically please do it yourself manually. BUT Reboot in Safe Mode.

    The tool will create a log named rapport.txt in the root of your drive, eg: Local Disk C: or partition where your operating system is installed. Please attach this log along in your next reply.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds