Jump to content

JeanInMontana

Honorary Members
  • Posts

    3,859
  • Joined

  • Last visited

Everything posted by JeanInMontana

  1. Since this topic has had no reply for over 5 days it will be closed to prevent other from posting into it. Should you decide to resume with your assistance PM any staff member and we will be happy to reopen the topic. Note: the fixes in this topic are for this system only. Applying them to your system can cause severe damage and result in utter system failure. If you need help start your own topic and someone will be happy to assist you.
  2. Since this issue is resolved I will close the thread to prevent others from posting into it. If you need assistance please start your own topic and someone will be happy to assist you. The fixes and advice in this thread are for this machine only. Do not apply to your machine. Please start a thread of your own and someone will be happy to help you.
  3. Since this topic has had no reply for over 5 days it will be closed to prevent other from posting into it. Should you decide to resume with your assistance PM any staff member and we will be happy to reopen the topic. Note: the fixes in this topic are for this system only. Applying them to your system can cause severe damage and result in utter system failure. If you need help start your own topic and someone will be happy to assist you.
  4. Since this topic has had no reply for over 5 days it will be closed to prevent other from posting into it. Should you decide to resume with your assistance PM any staff member and we will be happy to reopen the topic. Note: the fixes in this topic are for this system only. Applying them to your system can cause severe damage and result in utter system failure. If you need help start your own topic and someone will be happy to assist you.
  5. Since this issue is resolved I will close the thread to prevent others from posting into it. If you need assistance please start your own topic and someone will be happy to assist you. The fixes and advice in this thread are for this machine only. Do not apply to your machine. Please start a thread of your own and someone will be happy to help you.
  6. Since this topic has had no reply for over 5 days it will be closed to prevent other from posting into it. Should you decide to resume with your assistance PM any staff member and we will be happy to reopen the topic. Note: the fixes in this topic are for this system only. Applying them to your system can cause severe damage and result in utter system failure. If you need help start your own topic and someone will be happy to assist you.
  7. Hi Kestrel6 and welcome to Malwarebytes. Please update MBAM and run a quick scan post that log and a new HJT log. We need to be sure and you used a very out dated MBAM.
  8. Please post your logs in the body of your reply not as an attachment.
  9. Hi and welcome to Malwarebytes. Please get the following tool and post the resutlts from the scan with it to be sure your clean. With a rootkit you can never be sure your clean, and you must immediately contact any banks, credit cards, etc, change all passwords to those institutions and to any websites you belong to. A reformat is the only sure way to be clean. OK let's go for another special scan tool. Download GMER get the zip file and save to your desktop. Just run gmer.exe. All required files ( gmer.dll and gmer.sys ) will by copied to the system during the first lanuch. . Do not click scan.Use the copy button to copy to your clipboard. Post the log in your next reply.
  10. You need to post logs and follow instructions. We need the logs to help you. Post a log from an updated MBAM scan, and from HJT.
  11. Please try renaming the MBAM installer to hellothere.exe install it in Safe Mode if needed and then see if you can run MBAM. Be sure to take action for all items found post that log. Please get HiJack This! install it to C:\Program Files Close all programs leaving only HijackThis running, and click on scan and save a log. Post that log as a reply here in the body of the post, not as an attatchement. You may have to rename HJT also, choose any name and be sure you keep the .exe extension in tact. Post that log also.
  12. Hello ingenue and welcome to Malwarebytes. Please consider yourself a special case and in no way typical of all women. Please change the name of MBAM to ingenue.exe and see if that helps. Right click the program icon in the program folder and choose rename, put in ingenue.exe and see if that works. Post that log in the body of your next reply. Please get HiJack This! install it to C:\Program Files Close all programs leaving only HijackThis running, and click on scan and save a log. Post that log as a reply here in the body of the post, not as an attatchement.
  13. Hi camomile01 and welcome to Malwarebytes. Try renaming the program to camomile01.exe besure to update it, before the scan. Do the same for this but no update is needed. Please get HiJack This! install it to C:\Program Files Close all programs leaving only HijackThis running, and click on scan and save a log. Post that log as a reply here in the body of the post, not as an attachments.
  14. Hi Diane and welcome to Malwarebytes. It may not have been your friend, the address could have been spoofed. To be sure please have your friend download MBAM and scan also. Please update MBAM and run a new quick scan and post that log, be sure to remove all items found, and post that log then I need a log from this program too please. Please get HiJack This! install it to C:\Program Files Close all programs leaving only HijackThis running, and click on scan and save a log. Post that log as a reply here in the body of the post, not as an attatchement. Post the MBAM log and then HJT in the same post. Be sure you have allowed email from this site and chosen to receive email notification of threads you have posted to.
  15. Hello, sorry for the delay in anyone responding. Please update MBAM, run a quick scan post the log not as an attachment but as a reply in the body of the reply do the same for a new HJT log after the MBAM scan and you remove all that is found.
  16. What is the error code? I need all this information please. Is the error code for MBAM? What explorer can you go through ? I need to know why you can't update and scan with MBAM. Rename the program to totalrapture.exe and see if you can open it and update then run a quick scan. Do the same for HJT and post both logs please.
  17. OK, we still have work to do. Please set your system to show all files; Click Start. Open My Computer. Select the Tools menu and click Folder Options. Select the View Tab. Under the Hidden files and folders heading select Show hidden files and folders. Uncheck the Hide protected operating system files (recommended) option. Click Yes to confirm. Click OK. [*]Close all programs leaving only HijackThis running. Place a check against each of the following, making sure you get them all and not any others by mistake: R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O16 - DPF: {10000000-1000-0000-1000-000000000000} - O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/250d3895325f1f...ip/RdxIE601.cab O16 - DPF: {D30CA0FD-1CA0-11D4-AC78-006008A9A8BC} (WebBasedClientInstall Class) - http://antivirus.temple.edu/webinstall/webinst.cab O23 - Service: Task Scheduler (Schedule) - Microsoft Corporation - C:\WINNT\System32\svchost.exe Click on Fix Checked when finished and exit HijackThis. Please install SP3 reboot update MBAM run a quick scan, post a new log from it and a new HJT log please.
  18. Ashely your not posting the entire MBAM log and you didn't take any action with the malware found. Please update MBAM, run a quick scan, with any extra programs shut down, browsers etc and post the full log. Then post a new HJT log both in one reply please.
  19. Hi hellothere and welcome to Malwarebytes. Please post all logs in the body of your reply. Please install MBAM if you have not already, update it, run a quick scan, be sure to take action on what is found, and post that log and a HJT log after the MBAM scan.
  20. Hi Bridget and welcome to Malwarebytes. Hi read and follow the instructions here then post a log here . Someone will be happy to help you. You will need to use the machine your on now to post logs etc and do updates, but it sounds like maybe your still infected. Some of the prepost instructions will also be impossible, most important are a HJT log and MBAM log.
  21. You need to update MBAM and take this discussion to the proper forum. Please follow these instructions here and begin your own topic in that forum.
  22. Hi Ashley and welcome to Malwarebytes. Please set your system to show all files; Click Start. Open My Computer. Select the Tools menu and click Folder Options. Select the View Tab. Under the Hidden files and folders heading select Show hidden files and folders. Uncheck the Hide protected operating system files (recommended) option. Click Yes to confirm. Click OK. Open SB S&D Make sure you are in Advanced Mode. Click on the Mode link at the top of the program and then Advanced Mode. Click on the Tools section and then Resident. You will see two items. 1. Resident "SD helper" (Internet Explorer bad download blocker.) active 2. Resident "Tea Timer" (Protection of over-all system settings.) active. Uncheck number 2.. Leave number 1 checked always. You can enable Tea Timer again if you wish once all special fixes have been done. Now please update MBAM run a quick scan, when it says delete on reboot you must reboot. Post the full log and a new HJT log.
  23. Hi metrotheme and welcome to Malwarebytes. The Panda log should be posted as a text file, but we will proceed without it. Please update MBAM run a quick scan post the log and a new HJT log.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.