PC infected with malware. Need help. Thanks!

Discussion in 'Malware Help (A Specialist Will Reply)' started by james2418, Nov 16, 2012.

  1. james2418

    james2418 Private E-2

    Hi,

    My Windows 7 PC got infected with malware in the early morning. While I was browsing the web with Firefox, several dialog boxes popped up declaring errors and my Avira picked up a problem.

    I subsequently closed the dialog boxes and tried to perform a scan with Avira, but Avira wanted me to use their Restore System CD. I tried scanning with Avira in safe mode, which resulted in the discovery of Java viruses among others. I tried to use the Restore System CD as well, but it froze halfway through the scan.

    I know I am still infected with malware because everytime I browse the web using Google, everything is slow and I keep getting redirected to other addresses. Also popups will appear on their own.

    This is when I turned to Major Geeks. I started reading and following the steps of the removal guide. I just finished running MGtools. Attached are the logs.

    I was unable to run TDSSkiller nor was I able to run fixTDSS.

    It seems that the process may have helped a little, but web browsing is still slow and I still got redirected once. I have not noticed popups, but I have also severed the internet connection.

    I'm strongly considering reformatting my PC and reinstalling the OS. If I go this route, is there anything I should watch out for? Should I reformat my secondary drive with data? I have been using another PC and a USB drive to transfer files. Is it possible that these items are infected too?

    What is the threat level of the malware on my computer?

    How do I prevent this from happening again?

    I am new to this, so I apologize for any mistakes. Thanks in advance for your help!
     

    Attached Files:

  2. james2418

    james2418 Private E-2

    Attached is the log from MGtools.
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Backup important data, and then rerun Hitman Pro and allow it to fix the below
    Code:
       Master Boot Record (sector 0)
        > HitmanPro  . . . . : Win64/Bootkit
    Then reboot your PC immeditately afterwards.

    When your PC comes backup, rescan with Hitman Pro and attach the new log.
     
  4. james2418

    james2418 Private E-2

    Hi chaslang,

    Thank you for taking a look at my problem. I had decided to go ahead with the reinstallation of the OS before seeing your response. However, your comments on what happened to my PC or insights would be much appreciated.

    Thanks,
    James
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Probably was not necessary and also may not have removed the bootkit infection. There are many infections that do not get removed by a format/reinstall. Some actually get into partitions and partitions have to be deleted and recreated first before the format. You should rescan with Hitman Pro and attach the new log to double check.

    As stated, you picked up the Master Boot Record Win64/Bootkit infection.
     
  6. james2418

    james2418 Private E-2

    Thanks again so much for your help! Attached is my HitmanPro log (after my format/reinstall).
     

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  8. james2418

    james2418 Private E-2

    Thank you!!
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Surf safely!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds