Jump to content

Firefox

Trusted Advisors
  • Posts

    19,941
  • Joined

  • Last visited

  • Days Won

    9

Everything posted by Firefox

  1. it really looks like a DNS issue, but lets try and update the database manuelly so that you can do a quick scan see if any infections come up. Follow the instructions below you you can update it and do a quick scan. Let us know if it found anything. Manual Update of Definition Database If you cannot update the database to the latest version within the MBAM window, you may follow the instructions below and update it manually: ISSUE: I need to get the latest database onto a computer that cannot access the Internet. SOLUTION: You can manually copy the database from a working computer using a flash drive or CD onto the infected PC. Our database file is stored in the following locations. Windows XP and 2000 C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref Windows Vista and Windows 7: C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref You can also download a manual update from HERE - ***NOTE: This manual update will always be way behind in version level compared to updates from within the program. **NOTE: Please note though that this should be a last resort and if at all possible you should attempt to download updates from within the program. Once the system is clean and stable again you should update again from within the program.
  2. The exceptions you have to do are listed in POST # 4 above..... To enter exceptions in Symantec Endpoint Protection do this: * Right Click on your Symantec Endpoint Protection in the system trey * Click on Open Symantec Endpoint Protection * In the Status Window Click on Options in the section Antivirus and Antispyware Protection. * Click on Change Settings * Click on File System Auto-Protect Tab * Click on Centralized Exceptions Button * Click on Add.... * Click on Security Risk Exception * Click on File and browse to the location where the files are located (as listed above in Post #4) * Repeat steps 7-9 until you have added all the files to the exceptions * Click Close when done adding exceptions * Click OK * Exit Symantec Endpoint Protection.
  3. Hello and Being that you just formated your hard drive, it is possible that it may be ok, the issue may lay someplace else, lets try some simple trouble shooting first. Did you enter exceptions from Malwarebytes in your Anti-virus software and Firewall? Do you use a router for your internet connection? (it may have been hijacked) (resetting it back to factory default settings may help) Here are some steps to diagnose update issues: Step 1 Click on this link and let me know what it says. It should be just a 4-digit number in the upper-left corner. Step 2 Please download and run the traceroute utility at this link. It will run a traceroute to our update servers to see if it can find the connection issue, and then it will write it to a log, and open that log in Notepad when it is done. Please either save the log as a Text File and then attach it to a reply, or copy and paste it into a reply, and I will forward it on to our server guy. Note that it may take several minutes to run, and it may look like it is not doing anything for a few minutes. Normally it takes longer when there are errors that it has to log, but it's rare for it to go more than 10 minutes. Step 3 Please download TCPView from Microsoft at this link. This utility will monitor everything that is accessing the Internet or your local network. All you have to do is run TCPView, and then run Malwarebytes' Anti-Malware and start the update. Watch TCPView to see if mbam.exe shows up in the list. It will be pretty obvious, because it highlights it in green. I need to know what "Remote Address" Malwarebytes' Anti-Malware is trying to connect to. Once it shows up in the list, you can right-click on the line for mbam.exe, and select 'Copy' in order to paste it into a reply. It will tell me what I need to know. Below is an example of what the line you are looking for will look like inside the following code box: mbam.exe:3656 TCP vista-x64:52135 cdn-208-111-168-7.ord.llnw.net:http ESTABLISHED
  4. When I go to the link in step 1 I get 4157.... Since you can not get to the site then something is blocking you. That traceroute log shows a DNS issue, and it's possible that your DNS settings have been hijacked. If you connect to the Internet through a router, then I would highly recommend that you reset it to it's factory default settings by holding the 'Reset' button on the back of the router until the power light starts blinking. This will clear all of the settings, including DNS settings, and reset them to the factory defaults, which should resolve the issue. Please note that you will need to set the router back up after performing this reset. Also, if you know how to check the router's DNS settings manually, then you can change the DNS settings in the router to resolve the issue without resetting it.
  5. This sounds like your router may need to be reset.... do you use a router in your home? If you need help with ther router let us know, but first try the steps below.... The reason I say this is cause you say you have re-done your computer and the problem still exists.... Here is something to ponder on.... Here are some steps to diagnose update issues: Step 1 Click on this link and let me know what it says. It should be just a 4-digit number in the upper-left corner. Step 2 Please download and run the traceroute utility at this link. It will run a traceroute to our update servers to see if it can find the connection issue, and then it will write it to a log, and open that log in Notepad when it is done. Please either save the log as a Text File and then attach it to a reply, or copy and paste it into a reply, and I will forward it on to our server guy. Note that it may take several minutes to run, and it may look like it is not doing anything for a few minutes. Normally it takes longer when there are errors that it has to log, but it's rare for it to go more than 10 minutes. Step 3 Please download TCPView from Microsoft at this link. This utility will monitor everything that is accessing the Internet or your local network. All you have to do is run TCPView, and then run Malwarebytes' Anti-Malware and start the update. Watch TCPView to see if mbam.exe shows up in the list. It will be pretty obvious, because it highlights it in green. I need to know what "Remote Address" Malwarebytes' Anti-Malware is trying to connect to. Once it shows up in the list, you can right-click on the line for mbam.exe, and select 'Copy' in order to paste it into a reply. It will tell me what I need to know. Below is an example of what the line you are looking for will look like inside the following code box: mbam.exe:3656 TCP vista-x64:52135 cdn-208-111-168-7.ord.llnw.net:http ESTABLISHED
  6. @ MAM Check your PM.... Edited by Firefox
  7. Just to jump in and answer your question about windows 7..... More than likely installing a fresh copy of windows would fix the problem. If you do install windows 7 I recommend you backup your data, then do a fresh install, (format the hard drive) as apposed to an upgrade install. If you do an upgrade install, it may bring the problem over to windows 7 as well, so a clean install would be best.
  8. MBAM_ERROR_LOAD_DATABASE Error.... Please follow the instructions below to correct this error..... Show Hidden Files and Folders in Windows XP: Click Start and select My Computer Click the Tools item from the menu at the top of the window (if you don't see Tools press the Alt key on your keyboard and it will appear) Select Folder Options Click the View tab and make sure Show hidden files and folders is selected under Hidden files and folders Next, uncheck the box next to Hide protected operating system files (Recommended) Then, uncheck the box next to Hide extensions for known filetypes Click Apply then click OK Then go to C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware and delete rules.ref. Once you've done that, start MBAM and when it shows the error and asks to update, let it do so and see if that corrects it. Show Hidden Files and Folders in Windows Vista and Windows 7: Click on the Start button and select Computer Press the Alt key on your keyboard and click on Tools Select Folder Options Click the View tab and make sure that Show hidden files and folders is selected under Hidden files and folders Next, uncheck the box next to Hide protected operating system files (Recommended) Then, uncheck the box next to Hide extensions for known filetypes Click Apply then click OK Then go to C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware and delete rules.ref. Once you've done that, start MBAM and when it shows the error and asks to update, let it do so and see if that corrects it. Reset Hidden Files and Folders in Windows XP: Click Start and select My Computer Click the Tools item from the menu at the top of the window (if you don't see Tools press the Alt key on your keyboard and it will appear) Select Folder Options Click the View tab and make sure Do not show hidden files and folders is selected under Hidden files and folders Next, check the box next to Hide protected operating system files (Recommended) Then, check the box next to Hide extensions for known filetypes Click Apply then click OK Reset Hidden Files and Folders in Windows Vista and Windows 7: Click on the Start button and select Computer Press the Alt key on your keyboard and click on Tools Select Folder Options Click the View tab and make sure that Do not show hidden files and folders is selected under Hidden files and folders Next, check the box next to Hide protected operating system files (Recommended) Then, check the box next to Hide extensions for known filetypes Click Apply then click OK
  9. Manual Update of Definition Database If you cannot update the database to the latest version within the MBAM window, you may follow the instructions below and update it manually: ISSUE: I need to get the latest database onto a computer that cannot access the Internet. SOLUTION: You can manually copy the database from a working computer using a flash drive or CD onto the infected PC. Our database file is stored in the following locations. Windows XP and 2000 C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref Windows Vista and Windows 7: C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref You can also download a manual update from HERE - ***NOTE: This manual update will always be way behind in version level compared to updates from within the program. **NOTE: Please note though that this should be a last resort and if at all possible you should attempt to download updates from within the program. Once the system is clean and stable again you should update again from within the program.
  10. What kind of exe file is this? Depending on how bad the infection is and what the exe is designed to do it may work?
  11. Greetings philb101 The Pro version will allow you to schedule updates and scans as well as give you real time protection. It also includes a protection module. There are 2 primary functions currently in the Pro version of Malwarebytes' Anti-Malware's Protection Module: Execution Protection: This component will block the execution of malicious software when it attempts to run and prompt the user with a pop up message allowing them to remove the threat, ignore the threat or disable the Protection Module in case the user desires to do so. IP Protection: This component blocks known malicious IP addresses and IP ranges that are known for hosting malware and identity theft/fraud scams to prevent you getting infected by accidentally visiting an infected website or when a safe site gets hacked and has embedded content from a malicious website (this commonly happens on popular sites like social networking sites, news sites and download sites because of the traffic that they generate). If you have any further questions or issues please post. Thanks
  12. Hello and - A locked file is a file that can not be deleted, or locked by windows so no actions can be taken against it. It is normal to have locked files in your system (although sometimes malware will lock a file so that you can not delete it to keep you from removing an infection). -If you install Malwarebytes and update it and run a quick scan it can detect to see if you have any malware on your computer. - Running a scan can tell you if they are malicious. If you need help with running Malwarebytes let us know.
  13. Looks like your friend may have deleted the recovery partition set by IBM. If he did that explains the different menu. Second, you need to run some test on that Hard Drive, it may be going out, or is already out.
  14. Hi, and Welcome to Malwarebytes! Sorry to hear you are having issues, since this was due to malware, lets have the experts take a look at it. Please read the following so that you can begin the cleaning process: As we don't deal with malware removal in the General Malwarebytes' Anti-Malware Forum, you need to start a topic in the Malware Removal forum so a qualified helper can help you fix any malware related problems/infections you may have. Please read and follow the directions here, skipping any steps you are unable to complete. Then post a NEW topic here. After posting your new post, make sure under options, you select Track this topic and choose Immediate Email Notification, so that you're alerted when someone has replied to your post. One of the expert helpers there will give you one-on-one assistance when one becomes available. Please refrain from making any further changes to your computer (Install/Uninstall programs, use special fix tools, delete files, edit the registry, etc...) unless advised by a malware removal helper. Doing so can result in system changes which may hinder the attempts by a helper to clean your machine. NOTE: Please DO NOT post back to (bump) your topic within the first 48 hours. Replying to your own posts changes the post count and helpers are looking for topics with zero replies. If you reply to your own post helpers may think that you're already being helped and thus overlook your post. If there is no reply from any experts after 48 hours, you can reply to the topic, asking for help again. Or You may send a Private Message to a Moderator asking for assistance. Alternatively, as a paying customer, you can contact the help desk at support@malwarebytes.org or here. Please be patient, someone will assist you as soon as it is possible. PS: Please use the "ADDREPLY" button instead of other ones when you start replying.
  15. I am glad it worked for you, if you have any other issues or questions don't hesitate to ask.
  16. Hi, and Welcome to Malwarebytes! you may have a rootkit infection, or it could be p2p software like utorrent, limewire, but if you dont use that then follow these instructions to be sure your not infected.... Please read the following so that you can begin the cleaning process: As we don't deal with malware removal in the General Malwarebytes' Anti-Malware Forum, you need to start a topic in the Malware Removal forum so a qualified helper can help you fix any malware related problems/infections you may have. Please read and follow the directions here, skipping any steps you are unable to complete. Then post a NEW topic here. After posting your new post, make sure under options, you select Track this topic and choose Immediate Email Notification, so that you're alerted when someone has replied to your post. One of the expert helpers there will give you one-on-one assistance when one becomes available. Please refrain from making any further changes to your computer (Install/Uninstall programs, use special fix tools, delete files, edit the registry, etc...) unless advised by a malware removal helper. Doing so can result in system changes which may hinder the attempts by a helper to clean your machine. NOTE: Please DO NOT post back to (bump) your topic within the first 48 hours. Replying to your own posts changes the post count and helpers are looking for topics with zero replies. If you reply to your own post helpers may think that you're already being helped and thus overlook your post. If there is no reply from any experts after 48 hours, you can reply to the topic, asking for help again. Or You may send a Private Message to a Moderator asking for assistance. Alternatively, as a paying customer, you can contact the help desk at support@malwarebytes.org or here. Please be patient, someone will assist you as soon as it is possible. PS: Please use the "ADDREPLY" button instead of other ones when you start replying.
  17. I have a special email addy I use for just this kind of stuff....
  18. I am glad it worked for you, if you have any other issues or questions don't hesitate to ask.
  19. Your welcome, I have one that is 64GB in size.....
  20. So how long does the training take in these schools?
  21. no thank you sir, I will stick to the traffic in my area...... LOL
  22. I am not keen to that myself, I was just quoting what the article stated....
  23. Oh yeah they are out there on the market, I use the ones that are name brand of Kanguru, you can find them on CDW, and Tigerdirect like this one on TigerDirect
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.