Compromised game accounts

Discussion in 'Malware Help (A Specialist Will Reply)' started by MMOplayer, Jun 22, 2012.

  1. MMOplayer

    MMOplayer Private E-2

    Hello,

    My game accounts were recently compromised and I believe it was due to some malware attached to a download I made last week. I have since removed w3i.lq5.fraud using spybot and an online scanner caught win32/opencandy. Following the malware removal guide Hitman caught something. I want to be sure my machine is clean so attaching the logs. Thank you in advance for the assistance.
     

    Attached Files:

  2. thisisu

    thisisu Malware Consultant

    Welcome to MajorGeeks, MMOplayer :)

    Your logs are clean but you just have a few programs we don't recommend.

    • Ask Toolbar
    • Conduit Engine
    • Productivity 2.1 Toolbar
    • Software Master Toolbar

    Also you should have scanned normally with HitmaPro. You do not need to use EWS if you have an internet connection present.
     
  3. MMOplayer

    MMOplayer Private E-2

    Thank you for the warm welcome and quick response. For some reason Hitmanpro wouldn't recognize my internet connection and timed out. Although, I have since been able to run it normally and the report came out clean.

    I'll try and delete/ disable the things you listed. Just need to figure out how.

    Thanks again! :)
     
  4. thisisu

    thisisu Malware Consultant

    No problem ;)

    You can get to those programs by going into Control Panel -> Programs and Features

    __

    If you are not having any other malware related problems, it is time to do our final steps:
    • Any programs we had you download and/or install can be removed at this time.
    • If we had you download and run ComboFix, here is how to uninstall it:
      • Press and hold the Windows key http://i1106.photobucket.com/albums/h363/debojyotidas/Windows_Logo_key.gif and then press the letter R on your keyboard.
      • This opens the Run dialog box.
      • Copy and paste the below text inside the text-field:
        • "%userprofile%\desktop\ComboFix" /uninstall
      • Now press ENTER
      • ComboFix will extract its files one last time and you should receive a notification that ComboFix has been uninstalled shortly after.
    • You can re-enable your Disk Emulation software at this time via DeFogger.
    • If we had you create or download a registry patch or "fix" script, these can be deleted at this time.
    • Go into the C:\MGtools folder and run the MGclean.bat file to remove additional traces of our tools.
    • Now we will toggle System Restore to remove any infected system restore points.
    • Lastly, here is a guide to protect you from future infections: How to Protect yourself from malware!
    • Be safe :)
     
  5. MMOplayer

    MMOplayer Private E-2

    All removed. Thanks again for the help!
     
  6. thisisu

    thisisu Malware Consultant

    You're welcome :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds