Win Update Failing, Logs Attached

Discussion in 'Malware Help (A Specialist Will Reply)' started by huntin, Mar 13, 2016.

  1. huntin

    huntin Private E-2

    having some trouble with windows update. first of all it wouldn't tell me what it was updating when i tried to check using windows update, kept hanging on the checking for updates screen.

    went through run and read me first, found some stuff in everything except tdk maybe?

    then i tried windows update again, same problem, but got the ! on my shutdown, so tried that out. windows hung on 35 of 57 updates completed for like an hour, so i force rebooted it.

    i've tried looking for updates again, its just constantly searching.. are my logs clear? help! :p

    computer seems to think it's never done a windows update, but according to records some of the updates i did were successful and there were more done about four months ago. not sure whats going on there.
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Hi there.

    WhiteSmokeTranslator
    <<< Uninstall this using Revo Uninstaller.


    Re run Hitman Pro, activate/enable the free trial and let it remove all that it finds.

    Re run Malware Bytes and let it remove anything else it *may* find.



    Fix items using RogueKiller.

    Double-click RogueKiller.exe to run. (Vista/7/8 right-click and select Run as Administrator)
    When it opens, press the Scan button
    Now click the Registry tab and locate these detections:

    • [PUP] (X64) HKEY_LOCAL_MACHINE\Software\Tarma Installer -> Found
    • [PUP] (X86) HKEY_LOCAL_MACHINE\Software\Babylon -> Found
    • [PUP] (X86) HKEY_LOCAL_MACHINE\Software\Fun Web Products -> Found
    • [PUP] (X86) HKEY_LOCAL_MACHINE\Software\MyWebSearch -> Found
    • [PUP] (X86) HKEY_LOCAL_MACHINE\Software\Paretologic -> Found
    • [PUP] (X86) HKEY_LOCAL_MACHINE\Software\PerformerSoft -> Found

    Place a checkmark next to each of these items, leave the others unchecked.
    Now press the Delete button.
    When it is finished, there will be a log on your desktop called: RKreport[2].txt
    Attach RKreport[2].txt to your next message. (How to attach)
    Reboot the machine.



    http://imageshack.us/a/img841/7292/thisisujrt.gif Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Attach JRT.txt to your next message.


    Re run RogueKiller, scan only and upload FRESH log.
    Run the C:\MGtools\GetLogs.bat file by double clicking on it. (Right click and run as admin if using Vista, Windows7 or Win8) Then attach the new C:\MGlogs.zip file that will be created by running this. Let me know how things are running!
     
  3. huntin

    huntin Private E-2

    Okay, problems i had. I think I used the too deep revo uninstaller method. i told it to remove all it found for that program.

    hitman found some stuff, told it to remove,

    MB didnt find anything.

    roguekiller only found 2 of the 6 things you asked me to remove, and 7 more things that i did not touch. each time i use it it tells me to specific a file name, i think the newer version has this, so my file names are my own brand of memory

    . jrt found some stuff i think.

    last run of roguekiller found those same 7 things. not sure how getlogs worked or didn't.

    im trying to do the windows updates to newest as i go, i hope that doesnt stuff with anything, i haven't brought UAC back in or anything.

    after the RK reboot chrome seemed to work badly and gave some error like the window was broken and should be killed, was a little weird, but then after waiting another 10 seconds everything worked normally. not sure what that was about.

    let me know how im looking, ill keep doing windows updates.

    Oh no i stuffed up i deleted the 2nd last RK log, thinking it was just the last one you wanted. uhh. sorry.
     

    Attached Files:

  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.

    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.
     
  5. huntin

    huntin Private E-2

    I got a success message. Continuing with windows update.
     
  6. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    All is running well now?
     
  7. huntin

    huntin Private E-2

    no. windows update appears to be working. i am held back because i would like to move to windows 10, but the operating system hard drive is partitioned to be only 75 gig (which is almost full).

    there is 210 gig in a spare partition which i would like to merge, but..

    . i am trying to wipe this partition so i can merge the two. i am having two problems with this. the files i want to keep are hard to transfer using usb 2.0, taking hours to transfer the 20gb left. secondly, there is two folders with strange names like 4d2deae3386ac0d8b38e37eb1272 on the second drive which i cannot delete. there appears to be some icons in there that say .net framework, perhaps that is where they are installed.

    opening chrome seems to be glitchy, every time i try and open it it stalls for about 15 seconds, and then it opens strangely, "https://www.google.com/?trackid=sp-006" to here. which then redirects somewhere else. i am going to change that now, didn''t realize it was set there.

    my plan is to try and finish moving these 2400 files to the large flash drive i have plugged in, im about halfway, then maybe boot into safe mode to wipe those two strange folders and the whole partition, then merge that partition with the OS one and install windows 10. Is that an adequate plan or do you think i should attempt something different?

    there was 5100 files originally, they are moving, but yeah. usb 2.0 not fast, and its moving at 600 kb a second for some reason, now instead of 2mb a second. dunno why that is.


    TL;DR
    I think i am having some hardware space issues now which I have a plan to resolve. I am unsure if I still have malware issues. If my last logs look clear, it feels like I should be good from here on in. Thankyou for your help, If I run into more malware trouble I will bump here or repost or something.
     
    Last edited: Mar 15, 2016
  8. huntin

    huntin Private E-2

    Okay that means i've forgotten the fixes im supposed to do after im done with malware removal. im supposed to run the program that gives me back my user account control, and im supposed to run the thing that clears the mgtools program. i forgot that stuff. do you think im ready for those steps yet, or should i wait until i've got windows 10 and the windows update telling me i have no new updates?
     
  9. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Google Chrome from what we have been seeing is not the best browser to be surfing around on. The issues you are having do indeed sound non malware related, so I would suggest you post in the software forum or wherever approapriate about that. :)

    Let's have one final run of a tool here and I will check the log.

    Please download the latest version of Farbar Recovery Scan Tool and save it to your desktop.

    Note: Make sure you download the correct version for your PC. Only the correct version will work.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  10. huntin

    huntin Private E-2

    well that program was easy to use.
     

    Attached Files:

  11. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    The logs look good. ;)

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds