Member Panel


Sponsors and Ads

Join the Team

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » [Fixed] Not your typical Malware? Problem (don't move just yet)

[Fixed] Hijackthis! Logs - [Fixed] Not your typical Malware? Problem (don't move just yet) posted in the Security & Safety forums; First of all, I would like to ask that you not move this to the HJT Forum, because of what's on my computer, Everytime I click on the HJT Forum ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 06-25-2007
HelpthisPCU's Avatar
Bronze Member
 
Join Date: Jun 2007
Posts: 6
HelpthisPCU - See this Members User comments on their Profile page
Unhappy [Fixed] Not your typical Malware? Problem (don't move just yet)

First of all, I would like to ask that you not move this to the HJT Forum, because of what's on my computer, Everytime I click on the HJT Forum links, I am instantly knocked off the internet. Even when I try to run my currently installed HJT program, It is instantly shut down (among other programs).

Like the poster below, Just the other day I started recieving hidden audio sounds from my desktop that do not belong to me. They seem to be from an online radio station or something. It's pretty much the same loops over and over.

Aside from the audio and the expected slowdown, I am also recieving annoying popups even when I am not Logged on to the Net. Naturally, the first thing I did was run Ad-aware - with no luck. I even tryed running HJT in SafeMode, but, Even in SafeMode, before I can push one of the option buttons on the HJT screen, The program is instantly shut down! Even if I quickly push one of the buttons, the scan will begin - but that dosent stop that "something" from knocking the program off! Leaving me with a 5% completed logFile.

How am I supposed to post a HJT Log if I can't even run HJT!?


Soon, I am going to begin "Prework" but before I begin I will check back here. Hopefully, somebody has an idea on how I can fix this problem.
If I do everyting in the "Prework" section leading up the the HJT instructions, would that perhaps fix my computer enough to be able to run HJT?

Please Help.
Thanks Very much in Advance!



Last edited by HelpthisPCU; 06-25-2007 at 12:24 PM.
  #2  
Old 06-25-2007
chiaz's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Singapore
Posts: 2,525
PC Experience: PC Guru
chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page
Default

Hello, and welcome to PCHF.


If I do everyting in the "Prework" section leading up the the HJT instructions, would that perhaps fix my computer enough to be able to run HJT?
That would sure help a lot. Everything in the Prework will help remove most of the nasties on the system, leaving us only with the really persistent ones.


Try renaming hijackthis.exe to rename.exe. That may allow HijackThis to execute.


  #3  
Old 06-25-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,606
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

Let's see if it lets you d/l and run AVG:


First download AVG Anti-Spyware from HERE and save that file to your desktop.
This is a 30 day trial of the program. After the trial period, the scanner will continue to work, and you will still be able to receive updates; however, certain advanced setting will no longer be available unless purchsased
  1. Once you have downloaded AVG Anti-Spyware, locate the icon on the desktop and double-click it to launch the set up program.
  2. Once the setup is complete you will need run AVG Anti-Spyware and update the definition files.
  3. On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  4. Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  5. Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  6. Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close AVG Anti-Spyware, Do Not run a scan just yet, we will shortly.
  1. Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
    IMPORTANT: Do not open any other windows or programs while AVG Anti-Spyware is scanning, it may interfere with the scanning proccess:
  2. Lauch AVG Anti-Spyware by double-clicking the icon on your desktop.
  3. Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
  4. AVG Anti-Spyware will now begin the scanning process, be patient this may take a little time.
    Once the scan is complete do the following:
  5. If you have any infections you will prompted, then select "Apply all actions"
  6. Next select the "Reports" icon at the top.
  7. Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
  8. Close AVG Anti-Spyware and reboot your system back into Normal Mode and post the results of the AVG Anti-Spyware report scan as well as a new hjt log.
One other thing to get your hjt log up is to rename the hijackthis.exe to something like pchf.exe and then run it. That should get past whatever is kicking it out.


Thanks,

v


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall
  #4  
Old 06-26-2007
HelpthisPCU's Avatar
Bronze Member
 
Join Date: Jun 2007
Posts: 6
HelpthisPCU - See this Members User comments on their Profile page
Question

Originally Posted by chiaz
Try renaming hijackthis.exe to rename.exe. That may allow HijackThis to execute.
I renamed the .exe to uDontknowJ.exe BUT The description still reads HijackThis. So It still gets knocked off. Is there a way to change the description?

I am now doing the Prework and I am now on step 3 though I have another question: Am I supposed to also download CCleaner from step 5 along with the software from step 3? Since Step 4 tells me to Boot into Safe Mode.

And, Am I supposed to Install all of them in normal mode, then run them in SafeMode?
The PreWork directions say "Run" in SafeMode, but does that incluce "Install" in SM or NM?


  #5  
Old 06-26-2007
chiaz's Avatar
Senior Security Analyst
 
Join Date: Jun 2006
Location: Singapore
Posts: 2,525
PC Experience: PC Guru
chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page chiaz - See this Members User comments on their Profile page
Default

I am now doing the Prework and I am now on step 3 though I have another question: Am I supposed to also download CCleaner from step 5 along with the software from step 3? Since Step 4 tells me to Boot into Safe Mode.
I've edited the instructions accordingly, thanks for informing us.


And, Am I supposed to Install all of them in normal mode, then run them in SafeMode?
Right.


  #6  
Old 06-26-2007
valis's Avatar
Senior Security Analyst
My PC
 
Join Date: Jan 2007
Location: texas, USA
Posts: 2,606
PC Experience: PC Illiterate
valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page valis - See this Members User comments on their Profile page
Default

Originally Posted by chiaz
Try renaming hijackthis.exe to rename.exe. That may allow HijackThis to execute.
oooops.....sorry, chiaz, totally missed this......


__________________

M.C.S.A.
M.C.P.
- MS Server 2k3, Network Architecture

"Ask Bill why the string in function 9 is terminated by a dollar sign. Ask him, because he can't answer. Only I know that."
- Gary Kildall

Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 02:24 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top