Question! scoped_dir and Steam?

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by MadFae, Jul 29, 2014.

  1. MadFae

    MadFae Private E-2

    Hi. I searched for this topic and didn't find it. From what I can find online, this may not be any kind of malware, so I'm waiting to do all the malware pre-steps until I find out what this is. I don't game, and from what I can tell, I do not have or use Steam in any way. I don't really even know what it is, and am only familiar with it from searching "scoped_dir files." Recently I'm getting temp files, scoped_dir, etc. and they can't be deleted because they are "in use." What is this, and why is it popping up if it is Steam-related? Let me know, and if necessary, I will go in and do all the malware steps as required in your sticky note. Thanks!
     
  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

  3. MadFae

    MadFae Private E-2

    Thanks, Kestrel. I'm working through the steps now, but it's taking a long time bc my connection is really slow right now.
     
  4. MadFae

    MadFae Private E-2

    Hey, I already have the premium version of Malwarebytes downloaded on my laptop. Do I need to do anything to that or can I use it as is?
     
  5. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Use it as is. :)
     
  6. MadFae

    MadFae Private E-2

  7. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Yes, if it goes past the time limit, you can no longer edit. You will have to post again.

    Skip the RogueKiller step for now and just continue on please...
     
  8. MadFae

    MadFae Private E-2

    Please see attached. Let me know if something isn't right and I'll try again.
     

    Attached Files:

  9. MadFae

    MadFae Private E-2

    It's telling me that my TDSKiller log file is too large to upload here.

    TDSSKiller.3.0.0.40_29.07.2014_15.48.24_log.txt:
    Your file of 396.0 KB bytes exceeds the forum's limit of 375.0 KB for this filetype.
     
  10. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You can re run Hitman and have it remove what it sees.

    I am also not seeing any of the files you mentioned at the moment. You should install Ccleaner. Which clears out temp files and folders. You should not use the registry scanner, just the cleaner itself. :)
     
  11. MadFae

    MadFae Private E-2

    Ok. The files were there again this morning, but this time they deleted when I cleared out my temp folder, unlike yesterday. I'll do as you suggested... I did run Ccleaner yesterday as well but will do it again. Tks! My main concern is that these files are appearing when I don't have any idea what application is creating them. Like I said, I don't know that I use anything that is involved with Steam. Steam is the only thing I've found in a search that is related to scoped_dir files.
     
  12. MadFae

    MadFae Private E-2

    I can't use Hitman to delete anything because I only have the trial version. They're asking for me to register with a product key. Can't do that. Any other suggestions for how to deal with that?
     
  13. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Make sure that you tell me if you receive a success message about adding the above
    to the registry. If you do not get a success message, it definitely did not work.

    We believe those files you mention are being generated by Google Chrome, so nothing to worry about.
     
  14. MadFae

    MadFae Private E-2

    Worked fine! Thank you.
     
  15. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    Did you read what I said about Google Chrome? :)
     
  16. MadFae

    MadFae Private E-2

    Yep, I read that. As long as it's nothing malicious, I guess it's not an issue. I just don't know why they're there now and weren't in the recent past. I've been using Chrome for quite a while. But no harm, no foul. Thanks again!
     
  17. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware.
    2. Renable your Disk Emulation software with Defogger if you had disabled it in step 4 of the READ & RUN ME.
    3. Go to add/remove programs and uninstall HijackThis. If you don't see it or it will not uninstall, don't worry about it. Just move on to the next step.
    4. If running Vista, Win 7 or Win 8, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Now goto the C:\MGtools folder and find the MGclean.bat file. Double click ( if running Vista, Win7, or Win 8 Right Click and Run As Administrator ) on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    6. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.

    7. After doing the above, you should work thru the below link:
     
  18. MadFae

    MadFae Private E-2

    Which one is Hijack This? Seems like I saw a tool that said it was Hijack This but with a different name?
     
  19. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    as the instructions say:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds