Two PCs with identical malware issues.

Discussion in 'Malware Help (A Specialist Will Reply)' started by studiolynx6, Nov 4, 2014.

  1. studiolynx6

    studiolynx6 Private E-2

    Hello,
    I have two computers with very similar issues, a dell laptop running Windows XP 32 bit, and an HP desktop running Windows 7 64-bit. I started having problems on both machines after I installed Xampp, AVG AntiVirus 2015 and AVG PC TuneUp on both computers, all on the same day. Immediately after installing AVG's package, I ran AVG PC TuneUp, Registry Defrag, and Registry Cleaner on both machines and had AVG fix any errors it found.

    After the laptop and the desktop rebooted, I noticed an abundance of programs were installed for both Windows and Microsoft Office. Browser toolbars were installed, and IE was updated and was changed to my default browser.

    I tried unistalling both AVG programs through Windows uninstaller with no success. Then, I downloaded Revo uninstaller, which seemed to unistall it and any traces of it - but after rebooting, it is still listed as an installed program.

    Chrome started redirecting me to other sites and opened browser windows automatically so I unistalled it and installed C-Cleaner, ran it and multiple copies of msi.exe and other miscellaneous files were found. Afterwards, I rebooted and reinstalled Chrome again.

    I started to have more issues. If I had multiple browser and program windows open, the order of the windows would suddenly change. For instance, I was working in Notepad a few days ago and suddenly, it disappeared. One of the browser windows I had open through Chrome came up to the front, and pushed Notepad behind it.

    So, I unistalled Chrome, and ran C-Cleaner a second time. C-Cleaner found more copies of msi.exe and miscellaeous files. Lastly, I installed Defraggler and performed defrags on both systems again.

    Now, I can't download Chrome or any other browser. I am currently using Internet Explorer which is bad news given the security risks involved.

    Since I came to this website:
    -------------------------------------------------------------------------
    I followed all of the Malware Removal instructions. However, the laptop would not let me run RogueKiller. The program quit and my screen turned blue and displayed the following error:

    "A problem has been detected and windows has been shut down to prevent damage to your computer.
    Technical Information:

    Stop: 0x0000008E ()xc0000005, 0xb7997c89, 0xBA5076A0, 0x00000000)
    dxec01.sys - Address B7997c89 base at B7986000, DateStamp 454a39be
    Beginning dump of physical memory
    Physical memory dump complete"

    I was able to run the other programs. With both computers being out of service, I am not able to work. Please help me.
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not finding any malware in your logs. I suggest you post in the software forum for additional assistance.

    Since you are not having any malware problems, it is time to do our final steps:

    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    7. After doing the above, you should work thru the below link:

     
  3. studiolynx6

    studiolynx6 Private E-2

    Will do. Thank you for your help. Should I provide the logs for the HP desktop at this time? Although the problems were identical for both machines, the desktop is still giving me issues.

    My apologies. I didn't include the desktop logs initially as I thought asking for assistance for one computer at a time would be more polite.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Start a new thread for the desktop issues. That way there is no confusion. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds