virus?

Discussion in 'Malware Help (A Specialist Will Reply)' started by delcancro, Mar 8, 2007.

  1. delcancro

    delcancro Private E-2

    hi all,
    i start by saying u i'm not an expert with pc...
    i will be very grateful to anyone which read this (even suggests me what shall i do).
    a weeks ago i made a mistake with my pc:
    looking for some programs i installed some like Actvi Desktop Calendar and a newer direct x version,was the start of the end.
    since this moment i encountered problems playng on-line and generally navigating and even using pc disconnected.
    well,i made a format.
    after this i needed to update SP1 (genuine) in microsoft official site:
    high priority updates and SP2.
    this process took too much time but i let it done(even if i thought it seems very strange and there could be a problem in fact progress bar was blocked for 2 hours in the same point),when finished i start using my pc but it was very strange that programs didn't run fast like usually after format,or rather it was very slow blocking frequently, diplaying a very strange windows messages of alert like this:
    "impossible to save file in c:\$Mft ... hardware or net connection problem".
    then i made a scan disk to ensure it was no a disc damage, no damage related.
    i tried with several programs, they found a lot of problems with registry keys and uncorrect directory, but pc was unable to go on , it tooks very long time to everithyng , even open a window.
    now i made a format and using pc with SP1 , it's ok but if i connect i know i'll encounter problems,what should i do? now i ran hijackthis without installing anything on my pc ... is there anyone who can say me what's the matter???
    ... i'm going scanning with "smitfraudfix" in safe mode...
    i'm desperate:cry
     

    Attached Files:

  2. delcancro

    delcancro Private E-2

    safe mode administrator account?

    i even try with smitfraudfix and when in safe mode, it appears admin account...
    here is the fix rapport
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Majorgeeks!

    A PC that has been properly reinstalled will not be infected. By properly reinstalled I mean this:
    • deleting partitions
    • repartioning
    • formatting
    • and then reinstalling from uninfected original CDs
    Thus I would expect that your problems are not malware related. Check for Hardware issues.

    If you want to check for malware, you will have to do the below but I seriously doubt that anything will be found.

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, renaming, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.

    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  4. delcancro

    delcancro Private E-2

    perplexed

    hi ,thank you for advices, but there is something new.
    before reading your answer i try to do something other but something goes wrong.
    this is: i ran hijackthis and inattentively i fixed or deleted what hijackthis found.
    now is impossible to format my pc,it appear a mesage saying that hard disk could be damaged. was my mistake the cause? i think that cd-rom and cpu can't communicate each other, even if i try with "ubuntu" is impossible to install OS, even operate in live-mode, i made only a scan for errors
    what kind of problem could i make out? fortunately(?) u can see in my first hijackthis attached log what i delete with my wonderfull stupidity acts...is it reversible for me? what should i do? i'm thinking tho advise the producer and send to them my pc for assistance, what do u think about it?
    thank u very much for all. :eek:
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Re: perplexed

    HijackThis is not malware scanning/reporting tool. If you fixed everything reported in a HijackThis log you will break your whole boot up process. You should not be experimenting with tools on your own. Our sticky threads even warn you that HijackThis is a tool for expert PC users!!!!

    If your PC still runs and boots up, restore everything from the Backups that HijackThis creates.

    If it does not boot up then you will need re-install.
     
  6. delcancro

    delcancro Private E-2

    starting with a virus

    thank you chaslang,but after that hijacked problems my pc never reboot itself,never witch recovery cd,so i started Ubuntu live mode and tested disk version, all is known,now.
    it was an hard drive problem, a lot of clusters damaged, windows was (i think) corrupted so its scandisk application too...(i suppose ).
    could it be a long time problem that finished with a malicious code?.
    it started with messenger windows designing something black areas.
    I changed hard drive for my notebook, now i think it should be ok.
    now i'm starting your READ & RUN ME FIRST twice in my life...

    thank you for all...
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Re: starting with a virus

    You're welcome. You should not really need to run the READ & RUN ME if you just installed a new hard disk and reinstalled your OS. But it does not hurt anything to run the READ ME.

    However, you do need to follow the steps in the below guide!

    How to Protect yourself from malware!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds