PC infected

Discussion in 'Malware Help (A Specialist Will Reply)' started by Nosalos, Oct 17, 2010.

  1. Nosalos

    Nosalos Private E-2

    Hi, for one year I use AVG and Malwarebytes for my PC. I usually have almost no viruses. But for 4 or 5 days, I have the impression that my pc is slow, more than usually. I had AVG9 and there was a pub for AVG11 so i downloaded it, but i had some problems to install it and another problem so I installed Antivir instead today.
    After analyzing my computer during 2h30 (but 30% only, i hadn't the time to finish), 3 viruses + 1 keylogger were detected... Moreover, it was markedthat the file "keylogger.exe" was created one year ago, so I'm really afraid that someone i know stole all my passwords and have been spying me all this time... Help me please :(


    View attachment RootRepealRapport.txt
    Malwarebytes and SuperAntiSpyware usually detect almost nothing
    I will do the combofix and the MGTools tomorrow, sorry :s i have to leave in 5 minutes

    Thank you
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    No problem. Attach them when you can. We will be here. :)
     
  3. Nosalos

    Nosalos Private E-2

  4. Nosalos

    Nosalos Private E-2

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please attach the entire C:\MGLogs.zip.
     
  6. Nosalos

    Nosalos Private E-2

  7. Nosalos

    Nosalos Private E-2

  8. Nosalos

    Nosalos Private E-2

  9. dr.moriarty

    dr.moriarty Malware Super Sleuth Staff Member

    Please attach the COMPLETE C:\MGLogs.zip as instructed.
     
  10. Nosalos

    Nosalos Private E-2

  11. Nosalos

    Nosalos Private E-2

  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    I am not seeing any malware in your logs. However, you have both of these installed:
    AVG 2011
    Avira AntiVir Personal - Free Antivirus

    Please uninstall one of them.

    What issues are you having, if any?
     
  13. Nosalos

    Nosalos Private E-2

    3 years ago my brother used a keylogger or spyware on my family's only pc and today, I am suspecting him to try this again (now, we all have our own computers) because there are strange things :
    - Some weeks ago, he lent a USB flash drive to my sister and she detected a keylogger. He wasn't surprised at all and didn't say anything.
    - 2 weeks ago, he lent his computer to my father for work, I quickly watched the screen and there was no antivirus working and a lot of toolbars. When my brother is using is account, there are 0 toolbar and the antivirus is working.
    - When my brother's pc is working, mine becomes slow, even if I am not doing something on Internet. I have no problem when everyone's pc is connected but my brother's.
    - Some minor details : he loves doing illegal things, he is a killjoy/manipulator and at home, he spends almost all his time on Internet.

    We share the same network so I'm afraid he found a way to infect our computers again :/
    The main computer of my family is my father's and he has no password.
     
  14. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Not having passwords is a very bad idea!! The only thing I can suggest to you is to do this online scan:

    eSet Online Scan.

    See if it finds anything and attach the log.
     
  15. Nosalos

    Nosalos Private E-2

    Ok, thanks, i will wait until my father comes back from work to do the scan on his pc.

    Could you also help me to protect my network from my brother in the case where he tries to infect me please? Thanks.
     
  16. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    A strong password is your best defense. Also make sure you do not have your system set to share files.
    You can read this:
    How to Protect yourself from malware!

    But if the issue is with your brother, I am afraid we can't do much about that. That is going to be a family issue to work out.
     
  17. Nosalos

    Nosalos Private E-2

    For the moment on my computer after 2 hours (47%) there are two threats found :
    Win32/Adware.ADON application
    une variante de Java/TrojanDownloader.OpenStream.NAU cheval de troie

    The scan takes a long time so I don't find the time to scan my father's computer completely... But after 30% there were 5 or 6 threats detected
     
  18. Nosalos

    Nosalos Private E-2

    It was 49%, I was playing a game, and 5 min after it was finished.

    I deleted the two threats but nothing seems to have happened :confused
     
  19. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    What found the threats and have you run both SAS and MBAM on the system? You would need to tell me exactly what was found --> the exact path to the files.
     
  20. Nosalos

    Nosalos Private E-2

    I found the threats with eSet but I don't know how to find the exact path to the files. SAS and MBAM don't find any viruses (on my pc).
    I will try to do the scans on my father's pc but I don't know if my father will let me.
     
  21. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You need to get me the log from running eSet.
     
  22. Nosalos

    Nosalos Private E-2

    C:\MGtools\Process.exe Win32/PrcView application cleaned by deleting - quarantined
    C:\UsbFix\Tools\Kill_P.exe Win32/PrcView application cleaned by deleting - quarantined
    C:\Users\Davy\Documents\My Games\War_Rock_20100722.exe a variant of Win32/Packed.Themida application deleted - quarantined
     
  23. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    What malware issues are you currently having, if any?
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds