Jump to content

iyzmi

Members
  • Posts

    8
  • Joined

  • Last visited

Reputation

0 Neutral
  1. The JavaRA log opened as a blank txt file and it didn't seem to save anything on the C drive. It didn't give me any errors while running though. The computer is working much better now. Here's the Security Check log: Results of screen317's Security Check version 0.99.82 Windows 7 Service Pack 1 x64 (UAC is disabled!) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Adobe Flash Player 12.0.0.77 Flash Player out of Date! Adobe Reader 10.1.9 Adobe Reader out of Date! Mozilla Firefox (28.0) Google Chrome 34.0.1847.116 Google Chrome 34.0.1847.131 ````````Process Check: objlist.exe by Laurent```````` Norton ccSvcHst.exe Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: 0% ````````````````````End of Log``````````````````````
  2. Is there anything else I need to do after that?
  3. I had to run the steps out of order because MBAR was freezing on me at the same spot during multiple attempts. So I did step 4>5>3>6>7>8. The computer seems much better now and it looks like a lot of stuff was removed! ESET still found some things that per your instructions I did not remove. Please see the attached logs. Thank you! Addition.txt AdwCleanerS0.txt eset log.txt FRST.txt JRT.txt malwarebytes log.txt mbar-log-2014-04-26 (21-11-24).txt system-log.txt
  4. I was not able to complete step 2, but here is the log from step 3: RogueKiller V8.8.15 _x64_ [Mar 27 2014] by Adlice Software mail : http://www.adlice.com/contact/Feedback : http://forum.adlice.comWebsite : http://www.adlice.com/softwares/roguekiller/Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits versionStarted in : Normal modeUser : Renee Petrie [Admin rights]Mode : Scan -- Date : 04/25/2014 19:22:09| ARK || FAK || MBR | ¤¤¤ Bad processes : 0 ¤¤¤ ¤¤¤ Registry Entries : 9 ¤¤¤[HJ POL][PUM] HKCU\[...]\System : DisableCMD (0) -> FOUND[HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> FOUND[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> FOUND[HJ POL][PUM] HKLM\[...]\System : DisableCMD (0) -> FOUND[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> FOUND[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> FOUND[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableCMD (0) -> FOUND[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Scheduled tasks : 5 ¤¤¤[V2][ROGUE ST] 4803 : wscript.exe - C:\Users\RENEEP~1\AppData\Local\Temp\launchie.vbs //B -> FOUND ¤¤¤ Startup Entries : 0 ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ Browser Addons : 0 ¤¤¤ ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤[Address] EAT @explorer.exe (WlanAllocateMemory) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F8AC8)[Address] EAT @explorer.exe (WlanCloseHandle) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F38A0)[Address] EAT @explorer.exe (WlanConnect) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F5558)[Address] EAT @explorer.exe (WlanDeleteProfile) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F6D10)[Address] EAT @explorer.exe (WlanDisconnect) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F57E8)[Address] EAT @explorer.exe (WlanEnumInterfaces) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F3A80)[Address] EAT @explorer.exe (WlanExtractPsdIEDataList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F8394)[Address] EAT @explorer.exe (WlanFreeMemory) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2FA5A0)[Address] EAT @explorer.exe (WlanGetAvailableNetworkList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4F88)[Address] EAT @explorer.exe (WlanGetFilterList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F7F9C)[Address] EAT @explorer.exe (WlanGetInterfaceCapability) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4188)[Address] EAT @explorer.exe (WlanGetNetworkBssList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F5268)[Address] EAT @explorer.exe (WlanGetProfile) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F6A20)[Address] EAT @explorer.exe (WlanGetProfileCustomUserData) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F7B1C)[Address] EAT @explorer.exe (WlanGetProfileList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F7404)[Address] EAT @explorer.exe (WlanGetSecuritySettings) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F8D88)[Address] EAT @explorer.exe (WlanHostedNetworkForceStart) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F935C)[Address] EAT @explorer.exe (WlanHostedNetworkForceStop) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F9418)[Address] EAT @explorer.exe (WlanHostedNetworkInitSettings) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F99D8)[Address] EAT @explorer.exe (WlanHostedNetworkQueryProperty) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F94D4)[Address] EAT @explorer.exe (WlanHostedNetworkQuerySecondaryKey) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2FA020)[Address] EAT @explorer.exe (WlanHostedNetworkQueryStatus) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F9B50)[Address] EAT @explorer.exe (WlanHostedNetworkRefreshSecuritySettings) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F9A94)[Address] EAT @explorer.exe (WlanHostedNetworkSetProperty) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F9744)[Address] EAT @explorer.exe (WlanHostedNetworkSetSecondaryKey) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F9D78)[Address] EAT @explorer.exe (WlanHostedNetworkStartUsing) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F91EC)[Address] EAT @explorer.exe (WlanHostedNetworkStopUsing) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F92A4)[Address] EAT @explorer.exe (WlanIhvControl) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4A00)[Address] EAT @explorer.exe (WlanOpenHandle) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F1960)[Address] EAT @explorer.exe (WlanQueryAutoConfigParameter) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F3EE8)[Address] EAT @explorer.exe (WlanQueryInterface) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4668)[Address] EAT @explorer.exe (WlanReasonCodeToString) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F8A54)[Address] EAT @explorer.exe (WlanRegisterNotification) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F5A08)[Address] EAT @explorer.exe (WlanRegisterVirtualStationNotification) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2FA358)[Address] EAT @explorer.exe (WlanRenameProfile) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F6F4C)[Address] EAT @explorer.exe (WlanSaveTemporaryProfile) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F87D0)[Address] EAT @explorer.exe (WlanScan) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4D40)[Address] EAT @explorer.exe (WlanSetAutoConfigParameter) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F3D10)[Address] EAT @explorer.exe (WlanSetFilterList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F7DCC)[Address] EAT @explorer.exe (WlanSetInterface) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F4470)[Address] EAT @explorer.exe (WlanSetProfile) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F6760)[Address] EAT @explorer.exe (WlanSetProfileCustomUserData) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F78A4)[Address] EAT @explorer.exe (WlanSetProfileEapUserData) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F5CC4)[Address] EAT @explorer.exe (WlanSetProfileEapXmlUserData) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F5F9C)[Address] EAT @explorer.exe (WlanSetProfileList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F71A8)[Address] EAT @explorer.exe (WlanSetProfilePosition) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F7644)[Address] EAT @explorer.exe (WlanSetPsdIEDataList) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F81B0)[Address] EAT @explorer.exe (WlanSetSecuritySettings) : MLANG.dll -> HOOKED (C:\windows\system32\Wlanapi.dll @ 0xEE2F8B58) ¤¤¤ External Hives: ¤¤¤ ¤¤¤ Infection : ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤--> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) TOSHIBA MK3275GSX SATA Disk Device +++++--- User ---[MBR] f15bde6cfeb2a07fac1798f7125cda38[bSP] e4b67e3f6960bb73f78a032d786d7473 : Windows Vista MBR CodePartition table:0 - [ACTIVE] ACER (0x27) [VISIBLE] Offset (sectors): 2048 | Size: 1500 MB1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 3074048 | Size: 289710 MB2 - [XXXXXX] NTFS (0x17) [HIDDEN!] Offset (sectors): 596400128 | Size: 14034 MBUser = LL1 ... OK!User = LL2 ... OK! Finished : << RKreport[0]_S_04252014_192209.txt >>
  5. Still no luck after scanning with the new version of MB. The same problem occurs.
  6. Hi, thanks for your response! I have performed step 1 and I am still getting stuck on the heuristic analysis part of the MB scan. Because nothing has changed, I did not make a new FRST log file. The original one I posted should still be accurate, but let me know if you'd like a new one. I have attached the CheckResults.txt file. Please let me know if you need anything else, I can post a Hijackthis log if it would help too. Thanks again!! CheckResults.txt
  7. I have tried running Malwarebytes multiple times over night but it always seems to get stuck at the heuristic analysis. It has over 2000 detected objects but never completes the scan or removes anything. I have attached my FRST and addition files. Please take a look, any help would be greatly appreciated. Thanks! FRST.txt Addition.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.