Win32/Kryptik.amq Trojan

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Pc_rookie, Feb 7, 2012.

  1. Pc_rookie

    Pc_rookie Private E-2

    Hi everyone!!

    I've come here in hopes of getting my computer back to normal.

    It had been a while since I used my laptop (HP Pavilion d7 with Vista), and once I got internet at my new condo (20 mbps), I noticed that my computer would connect to the internet, but at incredibly low speeds... I couldn't even navigate to my email, or facebook, or browse the internet, let alone stream anything from youtube or netflix.

    I then proceeded to run my Eset antivirus, a full scan, and it found Win32/Kryptik.amq Trojan... it wasn't able to delete.

    I then came to your support forum, and did the Read me, as well as the Vista instructions.. So I ran SuperAntispyware, Malwarebytes Anti Malware, ComboFix and MGTools. I did NOT run RootRepeal as I have a 64-bit system.

    As you will notice in my logs, they also found other things infesting my computer. After I had finished running everything, however, my internet was still the same, which leads me to believe there is still a problem.

    Both my roommate and my boyfriend are able to use our network without any problem, at really fast speeds.

    Anyways, any help would be greatly appreciated. Thanks guys!
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not finding any malware in your logs. But just to be certain:

    Go to the below link and follow the instructions for running TDSSKiller from Kaspersky

    Be sure to attach your log from TDSSKiller

    Please also download MBRCheck to your desktop.

    See the download links under this icon [​IMG]

    • Double click MBRCheck.exe to run (vista and Win 7 right click and select Run as Administrator)
    • It will show a Black screen with some information that will contain either the below line if no problem is found:
      • Done! Press ENTER to exit...
    • Or you will see more information like below if a problem is found:
      • Found non-standard or infected MBR.
      • Enter 'Y' and hit ENTER for more options, or 'N' to exit:
    • Either way, just choose to exit the program at this point since we want to see only the scan results to begin with.
    • MBRCheck will create a log named similar to MBRCheck_07.16.10_00.32.33.txt which is random based on date and time.
    • Attach this log to your next message. (See: HOW TO: Attach Items To Your Post )
     
  3. Pc_rookie

    Pc_rookie Private E-2

    Thanks so much Tim! See my attached logs. MBRcheck detected something...
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    MBRCheck probably just isn't recognizing the HP MBR. Unless you want to try fixing the MBR, which may make accessing the recovery partition impossible, I would recommend not messing with it. Are you having any malware issues? Are you being re-directed in your browsers?
     
  5. Pc_rookie

    Pc_rookie Private E-2

    Other than the ones the Read Me caught, I don’t think so. My computer is functioning alright, everything except for the internet. I am not being redirected to other websites. The speed of the internet is just really slow (my computer’s speed is fine).

    Maybe it isn’t a malware related problem. I tried to run a speed test but it wouldn’t even finish.. I saw download speeds of 0.06mb/s but was never able to finish because the file transfer was never completed. I can’t navigate a simple website, but when my roommate or boyfriend use our wireless connection, their internet is fine. It’s really just with my laptop.

    Gah, frustration! Should I start a new thread under a different topic? Any ideas?
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    What happens if you hard wire the connection:?
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Stop running the below and see what happens!

    O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files (x86)\DNA\btdna.exe"
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds