Something is killing any scanner I try to use

View previous topic View next topic Go down

Something is killing any scanner I try to use

Post by ExtraElf on Wed 27 Jul 2011, 12:35 pm

Whatever is wrong with my computer is not letting any antimalware applications run. It kills MS Security Essentials, Spybot S&D and Malware bytes. Even some utilities get killed.

I followed the post, but OTL gets killed as well. I did managed to get the aswMBR and SecurityCheck to run though, and I posting the results below.

The only other symptom I can report, is sometimes a new browser window opens up with waaay too many tabs, most of them are bad URLs as well as a couple that looks like spam. After a while, the computer just freezes. I'd appreciate any help.

Code:

CHECKUP.TXT
ybo Results of screen317's Security Check version 0.99.17 
 Windows XP Service Pack 3 
 Internet Explorer 8 
[b]``````````````````````````````
[u]Antivirus/Firewall Check:[/u][/b]
 Windows Firewall Disabled! 
 Microsoft Security Essentials   
 Antivirus up to date! 
[b]```````````````````````````````
[u]Anti-malware/Other Utilities Check:[/u][/b]
 Malwarebytes' Anti-Malware   
 Java(TM) 6 Update 20 
 [color=red][b]Out of date Java installed![/b][/color]
 Adobe Flash Player    10.3.181.26 
 Mozilla Firefox (x86 en-US..)
[b]````````````````````````````````
Process Check: 
[u]objlist.exe by Laurent[/u][/b]
[b]``````````End of Log````````````[/b]



Code:

aswMBR.txt
aswMBR version 0.9.8.977 Copyright(c) 2011 AVAST Software
Run date: 2011-07-26 21:27:55
-----------------------------
21:27:55.515    OS Version: Windows 5.1.2600 Service Pack 3
21:27:55.515    Number of processors: 1 586 0x1601
21:27:55.515    ComputerName: CHICHI  UserName: Meg
21:27:55.968    Initialize success
21:28:19.296    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
21:28:19.296    Disk 0 Vendor: ST3160815AS 4.ADA Size: 152587MB BusType: 3
21:28:19.312    Disk 0 MBR read successfully
21:28:19.312    Disk 0 MBR scan
21:28:19.312    Disk 0 Windows XP default MBR code
21:28:19.312    Disk 0 scanning sectors +312480315
21:28:19.375    Disk 0 scanning C:\WINDOWS\system32\drivers
21:28:25.218    File: C:\WINDOWS\system32\drivers\ipsec.sys  **SUSPICIOUS**
21:28:28.515    Service scanning
21:28:30.078    Modules scanning
21:28:37.296    Module: C:\WINDOWS\system32\DRIVERS\ipsec.sys  **SUSPICIOUS**
21:28:41.531    Disk 0 trace - called modules:
21:28:41.562    ntkrnlpa.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x89a697c0]<<
21:28:41.562    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a55b030]
21:28:41.937    3 CLASSPNP.SYS[b80e8fd7] -> nt!IofCallDriver -> [0x8a0c9f08]
21:28:41.937    \Driver\00001517[0x89bdd408] -> IRP_MJ_CREATE -> 0x89a697c0
21:28:41.937    Scan finished successfully
21:28:58.390    Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Meg\Desktop\MBR.dat"
21:28:58.390    The log file has been saved successfully to "C:\Documents and Settings\Meg\Desktop\aswMBR.txt"

ExtraElf

Unborn
Unborn

Posts : 2
Joined : 2011-07-27
Operating System : Windows 7

View user profile

Back to top Go down

Re: Something is killing any scanner I try to use

Post by Sneakyone on Wed 27 Jul 2011, 2:20 pm

Hi,

Could you please do this and run them:


Please then reboot your computer in Safe Mode by doing the following :

  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, the Advanced Options Menu should appear;
  • Select the first option, to run Windows in Safe Mode, then press Enter.
  • Log into an account with administrative priviliges.



I'm livin' life in the fast lane.


Sneakyone

Tech Officer
Tech Officer

Posts : 2707
Joined : 2010-01-10
Operating System : Windows 7 Ultimate 64-bit

View user profile http://twitter.com/AVerySneakyone

Back to top Go down

Re: Something is killing any scanner I try to use

Post by ExtraElf on Thu 28 Jul 2011, 8:45 am

Just tried it. Same thing happens in safe mode.

ExtraElf

Unborn
Unborn

Posts : 2
Joined : 2011-07-27
Operating System : Windows 7

View user profile

Back to top Go down

Re: Something is killing any scanner I try to use

Post by Sneakyone on Thu 28 Jul 2011, 12:50 pm

Hi,

We are going to be using a Windows Recovery Environment to help disinfect the system so it may boot again.

Download the OTLPE Standard REATOGO Windows Recovery Environment.
  • Place a blank CD-R disc in to your CD burning drive.
  • Download OTLPEStd.exe and double-click on it to burn to a CD using ISO Burner.
  • Reboot your system using the boot CD you just created.

    Note : If you do not know how to set your computer to boot from CD follow the steps here
  • Your system should now display a REATOGO-X-PE desktop.
  • Double-click on the OTLPE icon.
  • When asked "Do you wish to load the remote registry", select Yes
  • When asked "Do you wish to load remote user profile(s) for scanning", select Yes
  • Ensure the box "Automatically Load All Remaining Users" is checked and press OK
  • OTL should now start. Change the following settings
    • Change Drivers to Non-Microsoft
    • Press Run Scan to start the scan.
    • When finished, the file will be saved in drive C:\_OTL\MovedFiles
    • Copy this file to your USB drive if you do not have internet connection on this system
    • Please post the contents of the OTL.txt file in your reply.


I'm livin' life in the fast lane.


Sneakyone

Tech Officer
Tech Officer

Posts : 2707
Joined : 2010-01-10
Operating System : Windows 7 Ultimate 64-bit

View user profile http://twitter.com/AVerySneakyone

Back to top Go down

Re: Something is killing any scanner I try to use

Post by Sponsored content Today at 4:16 am


Sponsored content


Back to top Go down

View previous topic View next topic Back to top


 
Permissions in this forum:
You cannot reply to topics in this forum