Scan your PC for Errors

Member Panel



Join the PC Help Forum Team

Join PC Help Forum on Facebook

Join the PCHF Distributed Computing Teams

Try the NEW PC Help Forum Dark style

Link to PCHF from other parts of the Internet
PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Resolved] Malware and system restore errors

[Fixed] Hijackthis! Logs - [Resolved] Malware and system restore errors posted in the Security & Safety forums; kohl: Hang a bit, something is quite funky here. Your log doesn't show too much of anything bad going on, yet something keeps shutting down scans, which is indicative of ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #22  
Old 02-23-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,672
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

kohl:

Hang a bit, something is quite funky here. Your log doesn't show too much of anything bad going on, yet something keeps shutting down scans, which is indicative of a rootkit in action. I've asked for some assistance on the matter, and will post back shortly. Be patient, and I thank you for understanding.

v


__________________
M.C.S.A.
M.C.P - MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

  #23  
Old 02-24-2007
Bronze Member
 
Join Date: Feb 2007
Posts: 16
kohl - See this Members User comments on their Profile page
Default

Thanks - hope it can be sorted, otherwise should I start thinking about reformatting?



Last edited by kohl; 02-24-2007 at 02:55 PM.
  #24  
Old 02-25-2007
ladygreenwitch's Avatar
HR Director
My PC
 
Join Date: Jul 2005
Location: Bay Area California
Posts: 5,778
PC Experience: PC Illiterate
ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page
Default

Hey Guys,

Sorry it took me so long to get here.

@Kohl - Please copy and paste the following links to your desktop. Panda Active Scan, Kaspersky, Bitdefender, along with Housecall.

Also please download CCleaner, and RegSupremePro from my signature. Right-click on My Computer, choose Explore, click on Tools, Folder Options, and put a check next to Display the contents of System Folders, choose Show Hidden Files and Folders, and deselect Hide known file extentions. Then boot into Safe Mode with Networking.

Run CCleaner, make sure all options are selected including Advanced, answer OK to all warnings. Click on Analyze, then Run Cleaner. Repeat until either no futher files appear to be cleaned, or the same files appear, and cannot be cleaned. If you have files that cannot be cleaned. Navigate to the file, right-click on it, and choose Properties. Then click on the Security tab, Advanced button, give yourself full ownership of the file, and manually delete it.

Next you may have to manually start your firewall, then use IE, not FireFox, to run the online AV scans. Let each scan fix whatever it finds. Follow the instructions for rebooting etc. given to you by each, but make sure that you boot into Safe Mode with Networking each time if is necessary to reboot. Save the logs to post back here. We will wait untill we know you are clean to run RegSupremePro.

Looking forward to your reply,

TTFN

LGW


  #25  
Old 02-25-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,672
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

thanks for the assistance, lgw.....much appreciated....


__________________
M.C.S.A.
M.C.P - MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

  #26  
Old 02-25-2007
ladygreenwitch's Avatar
HR Director
My PC
 
Join Date: Jul 2005
Location: Bay Area California
Posts: 5,778
PC Experience: PC Illiterate
ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page ladygreenwitch - See this Members User comments on their Profile page
Default

Any time my friend, any time.

I've noticed some very difficult virus' going around lately. This may be one of them. We'll see.

TTFN

LGW


  #27  
Old 02-25-2007
Bronze Member
 
Join Date: Feb 2007
Posts: 16
kohl - See this Members User comments on their Profile page
Default

My computer doesn't seem to want to let me boot into safe mode! I selected safe mode with networking, some start upish screens appeared, but then it automatically re-boots. Where do I go from here?


  #28  
Old 02-25-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,672
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

wait for lady green witch to respond......she is working on several threads, and you WILL be responded to, just be patient.....


__________________
M.C.S.A.
M.C.P - MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall


Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off