I Need Help With Malware

Discussion in 'Malware Help (A Specialist Will Reply)' started by Siahusky, Feb 1, 2016.

  1. Siahusky

    Siahusky Private E-2

    I went to the site for using the tools and such. I was told I had a koobface in the system so I came here. here are the results from the tools. I think I did it right. Thanks in advanced.
    Also I knew better but a number popped up and said it was microsoft and like an idiot I let them into the system. they were the ones who told me I had Koobface. I know and I knew better but I did.
     

    Attached Files:

  2. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    We still require the TDSSKillerlog.txt and the MGlogs.zip for analysis.
     
    Siahusky likes this.
  3. Siahusky

    Siahusky Private E-2

    Sorry about that here is the TDSSKILLERLOG.TXT AND MGlogs.zip.
     

    Attached Files:

  4. Siahusky

    Siahusky Private E-2

    I put the other files below
     
  5. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Re-run HitmanPro, activate the Trial License, and fix these detections:
    Potential Unwanted Programs

    Ignore all other detections.
    Afterwards, click the Next button.
    HitmanPro may want to reboot the PC in order for the changes to take affect, please do so.

    After reboot and when you are back in Windows, run another scan with HitmanPro and then upload the latest HitmanPro log

    Please re-run RogueKiller and run a scan. After it finishes the scan, select the following tabs and then select any of the below that exist and then click the Delete button.
    *Make sure you select the Click to Expand text ( if present ) at the bottom of the quote box to see the whole fix.
    Then immediately reboot your PC.

    After reboot, run a new scan with RogueKiller and save a log as in the original instructions and upload the new log.

    Please upload the following file to VirusTotal for analysis:
    C:\WINDOWS\SysWOW64\drivers\utm2otix.sys

    Then upload the below logs:
    • updated HitmanPro log.txt
    • updated RKlog.txt
    • VirusTotal scan results
    Make sure you tell me how things are working now!
     
  6. Siahusky

    Siahusky Private E-2

    this is the only way I could copy the virustotal






    Antivirus Result Update

    Antiy-AVL Trojan/Win32.SGeneric 20160203

    Bkav W32.LmirESys3.Rootkit 20160202

    Rising PE:Trojan.Win32.KillAV.avn!1450976 [F] 20160202

    ALYac 20160203

    AVG 20160203

    Ad-Aware 20160203

    AegisLab 20160203

    Agnitum 20160202

    AhnLab-V3 20160202

    Alibaba 20160202

    Arcabit 20160203

    Avast 20160203

    Avira 20160203

    Baidu-International 20160202

    BitDefender 20160203

    ByteHero 20160203

    CAT-QuickHeal 20160203

    ClamAV 20160202

    Comodo 20160202

    Cyren 20160203

    DrWeb 20160203

    ESET-NOD32 20160203

    Emsisoft 20160203

    F-Prot 20160129

    F-Secure 20160203

    Fortinet 20160203

    GData 20160203

    Ikarus 20160202

    Jiangmin 20160203

    K7AntiVirus 20160203

    K7GW 20160202

    Kaspersky 20160203

    Malwarebytes 20160203

    McAfee 20160203

    McAfee-GW-Edition 20160203

    MicroWorld-eScan 20160203

    Microsoft 20160203

    NANO-Antivirus 20160203

    Panda 20160202

    Qihoo-360 20160203

    SUPERAntiSpyware 20160203

    Sophos 20160203

    Symantec 20160202

    Tencent 20160203

    TheHacker 20160202

    TotalDefense 20160202

    TrendMicro 20160203

    TrendMicro-HouseCall 20160203

    VBA32 20160202

    VIPRE 20160203

    ViRobot 20160203

    Zillya 20160202

    Zoner 20160203

    nProtect 20160201
     

    Attached Files:

  7. Siahusky

    Siahusky Private E-2





    I posted what you wanted
     
  8. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Can you provide a link to the VirusTotal results webpage?
     
  9. Siahusky

    Siahusky Private E-2

    I am not sure how to do that other then coping them. unless you know how
     
  10. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Sure - just go back to VirusTotal and navigate to the file to upload. It should tell you that it has previously been uploaded and the results page should be shown. Copy & Paste that page's url into your reply.
     
  11. Siahusky

    Siahusky Private E-2

  12. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Ok - I no longer suspect that file.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase it, it provide no protection. It do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. Go back to step 6 of the READ ME and re-enable your Disk Emulation software with Defogger if you had disabled it.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, Win 7/8 - it is time to make sure you have re-enabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Go to the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. If you are running Win 7/8, Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures pointed to by step 7 of the READ ME
        for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    8. After doing the above, you should work through the below link:
    Safe surfing! http://i268.photobucket.com/albums/jj5/drmoriarty/Emoticons/char145.gif
     
  13. Siahusky

    Siahusky Private E-2


    Thank you for all your help you were great!
    THANKS Howard Blake
     
  14. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    :)

    You're very welcome!
     
    Siahusky likes this.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds