Jump to content

can't connect to server to update database


Recommended Posts

I'm running Malwarebytes Anti-Malware 2.2.1.1043, on my Win Vista SP2 64 bit computer. A few weeks ago, I upgraded to the Premium version of Malwarebytes.Prior to that I ran the freeware version of Malwarebytes Anti-Malware for years. All the functions of the freeware version always worked well. And the Premium version of Malwarebytes worked well for a couple of weeks. Then it gave me warnings that the database need to be updated. But suddenly it couldn't connect to the server.It just searches endlessly without updating. I have the exact same problem with Windows updates.

I have good internet connection, Firefox works well. And my other software will connect and update. I only have problems with Win updates and now the Premium version of Malwarebytes.

I ran a hijack this, and it found a issue on IE.Fixed that , and ran other security scans which turned up nothing. I do get frequent blocks of Malicious websites, whenever I connect to the internet.

Including e-mail. I'll a attach a log of those blocks. Any idea what causing my failed update problems ? Thanks.

Log.txt

Link to post
Share on other sites

On 3/14/2017 at 0:46 PM, Porthos said:

Why don't work thru the steps in this post and post all the logs.

 

I already posted the problem. My system never crashes.Every-time I click on update, Malwarebytes searches for updates, but never finds any to download.I get frequent warnings about a malicious web-site being blocked, whenever I connect to a web-page with my browser or e-mail. And I attached that log in my last post. And now I'm attaching the other information you requested. 

Logs.zip

Addition.txt

CheckResults.txt

FRST.txt

Link to post
Share on other sites

  • Root Admin

Hello @leoliver

Let me have you run the following please.

 

Please restart the computer first and then run the following steps and post back the logs when ready.

STEP 01
Please download Junkware Removal Tool to your desktop.

  • Shutdown your antivirus to avoid any conflicts.
  • Right click over JRT.exe and select Run as administrator on Windows Vista or Windows 7, double-click on XP.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next reply message
  • When completed make sure to re-enable your antivirus

STEP 02

adwcleaner_new.png Fix with AdwCleaner

Please download AdwCleaner by Xplode and save the file to your Desktop.

  • Right-click on adwcleaner_new.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Accept the Terms of use.
  • Wait until the database is updated.
  • Click Scan.
  • When finished, please click Clean.
  • Your PC should reboot now.
  • After reboot, logfile will be opened. Copy its content into your next reply.

Note: Reports will be saved in your system partition, usually at C:\Adwcleaner

STEP 03
Download Sophos Free Virus Removal Tool and save it to your desktop.
 

  • Double click the icon and select Run
  • Click Next
  • Select I accept the terms in this license agreement, then click Next twice
  • Click Install
  • Click Finish to launch the program
  • Once the virus database has been updated click Start Scanning
  • If any threats are found click Details, then View Log file (bottom left-hand corner)
  • Copy and paste the results in your reply
  • Close the Notepad document, close the Threat Details screen, then click Start cleanup
  • Click Exit to close the program
  • If no threats were found, please confirm that result.

STEP 04
Please download the Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatible with your system. You can check here if you're not sure if your computer is 32-bit or 64-bit

  • Double-click to run it. When the tool opens, click Yes to disclaimer.
  • Press the Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). If you've, run the tool before you need to place a check mark here.
  • Please attach the Additions.txt log to your reply as well.

 

Thanks

Link to post
Share on other sites

The other day, I downloaded and ran the Microsoft Malicious software removal. It didn't detect any threats. Later on I rebooted my computer, and after reboot   Malwarebytes connected to my computer and updated my database. But I still don't know why it stopped updating previously. And I followed all the steps you outlined in your last reply to my post.

With......................

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.2 (03.10.2017)
Operating System: Windows (TM) Vista Home Premium x64
Ran by leoliver (Administrator) on Sat 03/18/2017 at 13:03:38.07
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 


File System: 18

Successfully deleted: C:\ProgramData\Start Menu\Programs\ebay.lnk (Shortcut)
Successfully deleted: C:\Users\Public\Desktop\ebay.lnk (Shortcut)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U9M35IT (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NS8NYG0 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G5ZB58KM (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M5M8VNOQ (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RORY979C (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UGFI3ED2 (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UHXXFROW (Temporary Internet Files Folder)
Successfully deleted: C:\Users\leoliver\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VJ3JWCWY (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U9M35IT (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6NS8NYG0 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\G5ZB58KM (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M5M8VNOQ (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RORY979C (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UGFI3ED2 (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UHXXFROW (Temporary Internet Files Folder)
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\VJ3JWCWY (Temporary Internet Files Folder)

Deleted the following from C:\Users\leoliver\AppData\Roaming\Mozilla\Firefox\Profiles\d9xirt4a.default\prefs.js
user_pref(browser.search.defaultenginename, AVG Secure Search);

 

Registry: 8

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} (Registry Value)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{A31B799D-5942-4788-A31F-089767B3BEB2} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{A31B799D-5942-4788-A31F-089767B3BEB2} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL (Registry Value)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page (Registry Value)

 


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 03/18/2017 at 13:06:26.13
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

# AdwCleaner v6.044 - Logfile created 18/03/2017 at 14:54:58
# Updated on 28/02/2017 by Malwarebytes
# Database : 2017-03-17.2 [Local]
# Operating System : Windows (TM) Vista Home Premium Service Pack 2 (X64)
# Username : leoliver - LEOLIVER-PC
# Running from : C:\Users\leoliver\Desktop\AdwCleaner.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support

 

***** [ Services ] *****

 

***** [ Folders ] *****

[#] Folder deleted on reboot: C:\Users\leoliver\AppData\Roaming\Mozilla\Firefox\Profiles\d9xirt4a.default\adblocker


***** [ Files ] *****

 

***** [ DLL ] *****

 

***** [ WMI ] *****

 

***** [ Shortcuts ] *****

 

***** [ Scheduled Tasks ] *****

 

***** [ Registry ] *****

[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A}
[-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A31B799D-5942-4788-A31F-089767B3BEB2}


***** [ Web browsers ] *****

 

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [1247 Bytes] - [18/03/2017 14:54:58]
C:\AdwCleaner\AdwCleaner[S0].txt - [1546 Bytes] - [18/03/2017 14:54:29]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [1393 Bytes] ##########


And Sophos Virus Removal Tool detected no threats.

If you can determine what caused my updating issues, please let me know.                      Thanks!

FRST.txt

Addition.txt

Link to post
Share on other sites

  • Root Admin

Very difficult to tell what may have caused the update failure. Many times a computer restart will fix some things on it's own.


Please download the attached fixlist.txt file and save it to the Desktop.
NOTE. It's important that both files, FRST or FRST64 and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system.

Run FRST or FRST64 and press the Fix button just once and wait.
If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after restart.
The tool will make a log on the Desktop (Fixlog.txt). Please attach or post it to your next reply.

Note: If the tool warned you about an outdated version please download and run the updated version.

fixlist.txt

Thanks

 

Link to post
Share on other sites

  • Root Admin

Glad we could help. :)If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.