Member Panel


Sponsors and Ads

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Resolved] Desktop Problems...

[Fixed] Hijackthis! Logs - [Resolved] Desktop Problems... posted in the Security & Safety forums; Hey my friend is having a problem....his desktop wont display icons at all. Does anybody know what the problem is? HJT log attatched. P.S. it does show desktop background. On ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 07-11-2006
gmsdrmmrboi's Avatar
Bronze Member
 
Join Date: Oct 2005
Posts: 49
gmsdrmmrboi - See this Members User comments on their Profile page
Send a message via AIM to gmsdrmmrboi
Default [Resolved] Desktop Problems...

Hey my friend is having a problem....his desktop wont display icons at all. Does anybody know what the problem is? HJT log attatched.

P.S. it does show desktop background. On C:\Documents and Settings\User\Desktop , it does have the icons...
Attached Files
File Type: log hijackthis.log (2.5 KB, 3 views)



Last edited by gmsdrmmrboi; 07-11-2006 at 05:14 AM. Reason: Forgot to include log
  #2  
Old 07-11-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Hi Gmsdrmmrboi , you should know better then to post this in the XP section. I'll move it to the rightplace..


First have a look in add/remove programs for E2give Plug-in, and uninstall it if present.

1. Please download The Avenger by Swandog46 to your Desktop.
  • Click on Avenger.zip to open the file
  • Extract avenger.exe to your desktop
2. Copy all the text contained in the code box below to your Clipboard by highlighting it and pressing (Ctrl+C):

Files to delete:
C:\iexplorer.exe
%Windir%\pi1.exe
%System%\pruttct.exe
%System%\skytown.exe
%System%\prutpct.exe
%System%\ptech.exe
%System%\prutsct.exe
%System%\ptech.exe
%System%\askearth17.exe
%UserProfile%\Desktop\filgmo.exe
%UserProfile%\Local Settings\Temp\ei.exe
C:\WINDOWS\SYSTEM32\windwl32.dll
C:\WINDOWS\SYSTEM32\inicfg32.dll

Folders to delete:
C:\Program Files\winupdates
C:\Program Files\E2G
Note: the above code was created specifically for this user. If you are not this user, do NOT follow these directions as they could damage the workings of your system.
3. Now, start The Avenger program by clicking on its icon on your desktop.
  • Under "Script file to execute" choose "Input Script Manually".
  • Now click on the Magnifying Glass icon which will open a new window titled "View/edit script"
  • Paste the text copied to clipboard into this window by pressing (Ctrl+V).
  • Click Done
  • Now click on the Green Light to begin execution of the script
  • Answer "Yes" twice when prompted.
4. The Avenger will automatically do the following:
  • It will Restart your computer. ( In cases where the code to execute contains "Drivers to Unload", The Avenger will actually restart your system twice.)
  • On reboot, it will briefly open a black command window on your desktop, this is normal.
  • After the restart, it creates a log file that should open with the results of Avenger’s actions. This log file will be located at C:\avenger.txt
  • The Avenger will also have backed up all the files, etc., that you asked it to delete, and will have zipped them and moved the zip archives to C:\avenger\backup.zip.
Then boot youre pc in safemode and fix these with hjt:
(if still present)

O2 - BHO: CControl Object - {3643ABC2-21BF-46B9-B230-F247DB0C6FD6} - C:\Program Files\E2G\IeBHOs.dll
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\Run: [MyVBApp] C:\iexplorer.exe
O20 - AppInit_DLLs: inicfg32.dll
O20 - Winlogon Notify: windwl32 - C:\WINDOWS\SYSTEM32\windwl32.dll
And reboot to normal mode.


5. Please copy/paste the content of c:\avenger.txt into your reply along with a fresh HJT log by Attaching it.


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -


Last edited by joe5; 07-11-2006 at 09:09 PM.
  #3  
Old 07-11-2006
Computwiz's Avatar
Bronze Member
 
Join Date: Jul 2006
Posts: 29
PC Experience: PC Helpdesk Op. Very Experienced
Computwiz - See this Members User comments on their Profile page
Default

If you go to your desktop and right click in some free space and then go to Arrange Icons By. Is Show Desktop icons ticked or un-ticked??

Computwiz


  #4  
Old 07-12-2006
Pancake's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Victoria, Australia
Posts: 2,532
PC Experience: Elite PC Guru
Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page
Default

This will assist you in removing a lot of those E2G files

Please download E2TakeOut from here:
http://www.malwarebytes.org/E2TakeOut.zip
  • Extract the file to your Desktop
  • Double click E2TakeOut.exe
  • Click the Begin Removal button
  • Wait until the program is finished scanning
  • Once done, it will produce a popup stating that the infection has
    been found and you need to reboot you computer to complete the removal
  • Reboot your computer
  • Once your computer has rebooted E2TakeOut will open and produce a
    report
  • Please copy/paste that report into your next reply


__________________
  • An Australian Member of
  • and
My real name is Eddy
  #5  
Old 07-12-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Thanks PC. I didn't know that one. I take it that uninstalling it trough add/remove programs doesn't (fully) work , since they made a special tool for it?


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #6  
Old 07-12-2006
Pancake's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Victoria, Australia
Posts: 2,532
PC Experience: Elite PC Guru
Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page Pancake - See this Members User comments on their Profile page
Default

It removes it and the orphan files that get left behind .


__________________
  • An Australian Member of
  • and
My real name is Eddy

Reply
New! Norton Internet Security 2008 – Download Now Click Here

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 03:02 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top