We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Hijack log - can anyone check it please?

24

Comments

  • linni
    linni Posts: 1,480 Forumite
    Part of the Furniture 1,000 Posts Photogenic Combo Breaker
    Hi AlienRIK. Combofix asks me to turn of Superantispyware butI can't seem to do it. I go into Control Panel but it wont turn off.. Combofix is now stuck on the screen and I can't close it down either and when I do 'end task' it doesn't appear so I can't end it.
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    I cant give direct instructions as I dont have SAS on mine

    But RIGHT CLICKING on the icon bottom right will bring up the menu

    Find where it auto starts with windows and UNTICK it

    Reboot and make sure its not starting with windows

    When you get it right, restart combofix
    :idea:
  • linni
    linni Posts: 1,480 Forumite
    Part of the Furniture 1,000 Posts Photogenic Combo Breaker
    I did the above but still couldn't stop Superantispyware interfering with Combofix so I uninstalled it. Combofix ran until the part where it says don't do anything until report ready, but the computer just froze, so I had to restart it. Sorry aliEnRIK but I think i'll have to admit defeat. Thanks for your help as always.
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    open c drive
    Hopefully theres a log report there
    :idea:
  • linni
    linni Posts: 1,480 Forumite
    Part of the Furniture 1,000 Posts Photogenic Combo Breaker
    OK i'll have a look. I've just re-installed Superantispyware and did a full scan and it has found a trojan.agent/gen in file c:\WINDOWS\MBR.EXE
  • dogmaryxx
    dogmaryxx Posts: 2,446 Forumite
    Part of the Furniture 1,000 Posts Name Dropper
    From Major Geeks.com

    (The detection by SUPERAntiSpyware was a false detection of the MBR.exe file from GMER which ComboFix makes use of to look for MBR type infections.)

    Probably same for you.
  • linni
    linni Posts: 1,480 Forumite
    Part of the Furniture 1,000 Posts Photogenic Combo Breaker
    aliEnRIK - I've looked and the log report is only 4 l ines long. Just name of the computer and AVG disabled and Defender enabled.

    dogmaryxx - thanks for that, I thought i'd found a nasty!
  • If your mouse is working then a good tip is to go to start-all programs-system tools( I think; it has been disabled on this library PC) and use Windows Virtual Keyboard. A little tedious, but better than nothing!

    I don't want to HijackThis thread :) ,so if any of you techie types would care to take a look at the log I have just posted on # 24 here, I'd be very grateful.
    https://forums.moneysavingexpert.com/discussion/comment/38162236#Comment_38162236
    Also, I cannot run Combofix until I have (reinstalled?) Recovery Console from the XP CD (see screenprint on #25).
    Actually it's start-all programs-accessories. Surprised nobody's corrected this!

    BTW I've now gone over 3 weeks without internet at home now; Could anyone analyse my log, please?
  • espresso
    espresso Posts: 16,448 Forumite
    Part of the Furniture 10,000 Posts Combo Breaker
    BTW I've now gone over 3 weeks without internet at home now; Could anyone analyse my log, please?

    You have both Avast and Symantec products running simultaneously. Use the relevant removal tool - Symantec here or Avast here to fully remove one product.
    :doh: Blue text on this forum usually signifies hyperlinks, so click on them!..:wall:
  • espresso wrote: »
    You have both Avast and Symantec products running simultaneously. Use the relevant removal tool - Symantec here or Avast here to fully remove one product.
    I presume Symantec is a Norton product. I haven't had either running for weeks now as I can't connect to the 'net.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.5K Banking & Borrowing
  • 253.7K Reduce Debt & Boost Income
  • 454.5K Spending & Discounts
  • 245.5K Work, Benefits & Business
  • 601.5K Mortgages, Homes & Bills
  • 177.6K Life & Family
  • 259.5K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.