Windows 7 Malware Removal with Logs

Discussion in 'Malware Help (A Specialist Will Reply)' started by nlewis84, Aug 25, 2012.

  1. nlewis84

    nlewis84 Private E-2

    For about the last two weeks I have been noticing strange behaviors with my desktop computer. Some of those weird things are listed below:

    - Right-click, properties is not working on any files/folders
    - Unable to disable UAC
    - Unable to boot in Safe Mode (get a black screen with a pointer that can be moved around)
    - Unable to extract zip files using built in explorer feature
    - Unable to open Notepad files
    - Several strange error messages that I have not written down, but that

    I will keep track of from now on and can update you with as I see them
    Have have read and followed the Malware Removal sticky and below are all the steps that I have followed with any issues that I had. I continued all the way to the end, even if something didn't work. I think that I have followed all of the forum guidelines and if I haven't I will work to make sure I figure it out!

    Step 1 - Done

    Step 2 – There is only one antivirus program installed.

    Step 3 - Currently running: Windows 7 64-bit
    I am unable to enable viewing of hidden files, system files and file extensions. When I follow those steps, and I get to the Control Panel\Appearance and Personalization page, nothing happens when I click on Folder Options. No windows open. I see the spinning wheel on my pointer for a very brief second.

    Step 4 - I don’t have any disk emulation software installed.

    Step 5 – CCleaner installed and run. Only one User Account to run this on.

    Windows 7 Malware Removal

    Step 1 – Downloaded and installed everything.

    Step 2 – I am unable to disable User Account Control through the Control Panel. I was able to have success through the cmd prompt. Something weird did happen though. After typing in the appropriate command, a message popped up in my Action Center saying that I needed to restart for the changes to take effect. When I clicked on that window on my action center, an error message popped up and said I was not authorized to restart my computer. I went to the Start menu and restarted my computer immediately at that point.

    Step 3 – When trying to open the Malwarebytes Log, to make sure I had the correct one, I get the error message “The version of this file is not compatible with the version of Windows you’re running. Check your computer’s system information to see whether you need an x86 or x64 version of the program, and then contact the software publisher.” It should be the correct log, because it was made today.

    With HitmanPro, I am unable to get it to run. I downloaded the x64 version, which should work, but I also tried the x86 version to rule that out as a problem. When I run the x86 version, I get the expected error message saying “64-bits operating system detected. This version only supports a 32-bits version of Windows.” Nothing opens when I double-click on the x64 version, except for the spinning wheel to show me the computer is processing. Right-click, run as administrator has the same effect.


    I am still experiencing all of the same problems as before all the scans. I have rebooted and tried to boot into Safe Mode (no luck). Thanks for your help with my problems!
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not finding any malware in your logs. You desperately need to clean out this folder:
    C:\Users\Nathan\AppData\Local\Temp

    I suggest you post in the software forum for additional assistance.

    Since you are not having any malware problems, it is time to do our final steps:

    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. You can uninstall RogueKiller and HitManPro.
    2. Go back to step 6 oof the READ ME and renable your Disk Emulation software with Defogger if you had disabled it.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista or Win 7, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders
      related to MGtools and some other items from our cleaning procedures.
    7. After doing the above, you should work thru the below link:


    Malware removal from a National Chain = $149
    Malware removal from MajorGeeks = $0
     
  3. nlewis84

    nlewis84 Private E-2

    Thanks for looking at my logs and your help! I'll follow up with the software forum. :)
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome. Good luck. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds