Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: pumhijackho issue


10 May 2013   #11

win 7 64 Home edition
 
 

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : RogueKiller - Geeks to Go Forums
Website : Download RogueKiller (Official website)
Blog : tigzy-RK

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : al [Admin rights]
Mode : Scan -- Date : 05/10/2013 03:10:59
| ARK || FAK || MBR |

Bad processes : 0

Registry Entries : 4
[HJ DESK] HKCU\[...]\ClassicStartMenu : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> FOUND
[HJ DESK] HKCU\[...]\NewStartPanel : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> FOUND
[HJ DESK] HKCU\[...]\ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND
[HJ DESK] HKCU\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

Particular Files / Folders:

Driver : [NOT LOADED]

HOSTS File:
--> C:\Windows\system32\drivers\etc\hosts

127.0.0.1 localhost


MBR Check:

+++++ PhysicalDrive0: WDC WD6400BPVT-80HXZT3 ATA Device +++++
--- User ---
[MBR] ef8d4f31926369e4d7bb9bb87da9e88c
[BSP] 943d3c2a959f9dba84794a7edcbb181a : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 610378 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: USB Disk +++++
--- User ---
[MBR] 8a4a3f84a9eda68451f8bdccda84c484
[BSP] df4f83c1f72e36823a12b0dfc7617313 : Empty MBR Code
Partition table:
0 - [XXXXXX] FAT32 (0x0b) [VISIBLE] Offset (sectors): 8192 | Size: 7576 Mo
User = LL1 ... OK!
Error reading LL2 MBR!

Finished : << RKreport[1]_S_05102013_02d0310.txt >>
RKreport[1]_S_05102013_02d0310.txt

My System SpecsSystem Spec
.

10 May 2013   #12

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Lets run Malwareware Anti-rootkit

Download : http://downloads.malwarebytes.org/file/mbar

Unzip the contents to a folder in a convenient location.
Open the folder where the contents were unzipped and run mbar.exe
Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
Click on the Cleanup button to remove any threats and reboot if prompted to do so.
Wait while the system shuts down and the cleanup process is performed.

When done, please post the two logs produced they will be in the MBAR folder..... mbar-log-xxxxx.txt and system-log.txt
My System SpecsSystem Spec
10 May 2013   #13

win 7 64 Home edition
 
 

I'm running it now, you know we can pick this up tomorrow if your tired. It wouldn't be any problem at all.
My System SpecsSystem Spec
.


10 May 2013   #14

win 7 64 Home edition
 
 

OK, here are the logs


Attached Files
File Type: txt mbar-log-2013-05-10 (03-31-52).txt (1.8 KB, 4 views)
File Type: txt MBAM-log-2013-05-10 (01-44-08).txt (2.1 KB, 1 views)
My System SpecsSystem Spec
10 May 2013   #15

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

If you go inside the registry . Click on type REGEDIT inside the Search programs and files box . When REGEDIT appears under Programs (1) right click and choose Run as administrator . On the User Access Control window click on the Yes button .

Inside the Registry navigate to

Code:
HKCU\SOFTWARE\Policies\Microsoft\Internet Explorer\control panel|Homepage
Tell me of it has a 0 or a 1 as its Value .
My System SpecsSystem Spec
10 May 2013   #16

win 7 64 Home edition
 
 

Kind of lost, this is what i show


Attached Thumbnails
pumhijackho issue-untitled.png  
My System SpecsSystem Spec
10 May 2013   #17

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Inside registry click on the Triangle on the side of each
Code:
HKCU
SOFTWARE
Policies
Microsoft
Internet Explorer
Control Panel
Look for Homepage on the right hand side . If there is a 1 under Data . Right click on Homepage choose Modify and input 0 .

Note   Note
0 is a zero
My System SpecsSystem Spec
10 May 2013   #18

win 7 64 Home edition
 
 

It showed 0 already.


Attached Thumbnails
pumhijackho issue-untitled.jpg  
My System SpecsSystem Spec
10 May 2013   #19

Windows 7 Ultimate 32-Bit & Windows 7 Ultimate 64-Bit
 
 

Do the samething for HKLM
My System SpecsSystem Spec
10 May 2013   #20

win 7 64 Home edition
 
 

In HKLM there is no control panel under internet explorer.
My System SpecsSystem Spec
Reply

 pumhijackho issue




Thread Tools




Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 01:38 AM.
Twitter Facebook Google+



Windows 7 Forums

Seven Forums Android App Seven Forums IOS App
  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33