WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionMalwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 EmptyRe: Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site

more_horiz
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10c.exe"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'explorer.exe'(3508)
c:\windows\system32\WININET.dll
c:\program files\McAfee\SiteAdvisor\saHook.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Java\jre6\bin\jqs.exe
c:\progra~1\McAfee\MSC\mcmscsvc.exe
c:\progra~1\COMMON~1\McAfee\MNA\McNASvc.exe
c:\progra~1\COMMON~1\McAfee\McProxy\McProxy.exe
c:\progra~1\McAfee\VIRUSS~1\Mcshield.exe
c:\program files\McAfee\MPF\MpfSrv.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\windows\SYSTEM32\searchindexer.exe
c:\progra~1\McAfee.com\Agent\mcagent.exe
c:\program files\Canon\CAL\CALMAIN.exe
c:\windows\SYSTEM32\wscntfy.exe
c:\progra~1\McAfee\MSC\mcupdmgr.exe
c:\program files\Common Files\McAfee\HackerWatch\hwupdchk.exe
.
**************************************************************************
.
Completion time: 2009-09-03 21:19 - machine was rebooted
ComboFix-quarantined-files.txt 2009-09-03 02:19

Pre-Run: 226,344,452,096 bytes free
Post-Run: 231,022,313,472 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

251 --- E O F --- 2009-08-26 11:32

descriptionMalwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 EmptyRe: Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site

more_horiz
Click Start > Run and copy/paste the following bolded text into the Run box and click OK:

ComboFix /u

Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 CF_Cleanup

This will also reset your restore points.

How is the machine running now?

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 DXwU4
Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 VvYDg

descriptionMalwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 EmptyRe: Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site

more_horiz
The machine seems to be fixed. I can run Malwarebytes, run setup.exe files, and, IE is working normally again. When I ran Malwarebytes, it removed RoguePersonalAntiVirus. Is this what caused all the issues?

THANK YOU!!!!

descriptionMalwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 EmptyRe: Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site

more_horiz
The rootkit was the main problem, the personalAV is what you can see and keeps you busy while the rootkit does it's work.

............................................................................................

Site Admin / Security Administrator

Virus Removal ~ OS Support ~ Have we helped you? Help us! ~ GeekChat
- Please PM me if I fail to respond within 24hrs.
Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 DXwU4
Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 VvYDg

descriptionMalwarebytes doesnt work,setup.exes won't run,google searches point to ad site - Page 1 EmptyRe: Malwarebytes doesnt work,setup.exes won't run,google searches point to ad site

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum