First time here- Dealing with annoying bug

Discussion in 'Malware Help (A Specialist Will Reply)' started by elgranmachete, Oct 16, 2014.

  1. elgranmachete

    elgranmachete Private E-2

    Hi,
    This is my first time here and it was about time I suppose. I have had this computer for about 4 years and it has never shown symptoms of infection until just a few days back. The computer was running fine until after I finished downloading an episode of Son's of Anarchy. I realize that by doing so I am putting myself at risk, and trust me it will not be happening again. Anyway, the first thing that I noticed was a "Solve PC issue" message telling me to change the Windows Update settings. Naturally I clicked it, but would not let me make such change (I cannot remember what the prompt was and I do not dare click it again). The second odd thing I saw was that every time that I boot my computer a web page launches and it's immediately blocked by browser with a warning about a possibly unsafe page. Finally, I have noticed three files titled "DECRYPT_INSTRUCTION.HTML (.TXT)" sprinkled among several folders including my Downloads folder, my C: folders and even the MGtools folder (I saw it while attaching the logs).
    I tried running several of my own anti-malware programs (Malwarbytes, SUPERAntiSPyware and SpyBot) that found items; I followed the default action. I realize this is not ideal before coming to these forums, but since both Malwarebytes and SUPERAntiSpyware are no longer finding anything, and I am still having problems, I decided to come here for help.
    I have followed the READ ME instructions fully and I am attaching the logs.
    I appreciate any help you may be able to provide.
    Thank you for your consideration of my issue,
     

    Attached Files:

  2. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You have been infected with a file encryption program (CryptoWall). See the below:


    http://www.bleepingcomputer.com/forums/t/532879/cryptowall-new-variant-of-cryptodefense/page-4

    http://www.malwarekillers.com/recover-files-encrypted-cryptowall-cryptodefense/

    You will have to reinstall your OS. Many/most or all of your files may now be encrypted and may be unrecoverable. There is a chance that some could be recovered from System Restore or from Shadow Copy but normally it is only a small number compared to what is on your PC. If you are doing your part in securing your PC and personal files, you will have backups that you can restore from after reinstalling. If you have not been doing backs then you can now see why it is important to do backups.
     
  3. elgranmachete

    elgranmachete Private E-2

    Fantastic!
    Good thing that this is my older computer.
    Thank you for your help
     
  4. Kestrel13!

    Kestrel13! Super Malware Fighter - Major Dilemma Staff Member

    You are most welcome.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds