USB stick virus

Discussion in 'Malware Help (A Specialist Will Reply)' started by goldfish, Nov 12, 2006.

  1. goldfish

    goldfish Lt. Sushi.DC

    Right.

    After doing my rounds fixing PCs, I came home to find my USB stick had been infected by a virus of some sort. I'm guessing it's a trojan, but it could be anything really. It had set itself to autorun, a file called Setup.pif. So as soon as I inserted the stick BAM I was infected.

    Strange thing is avast! didn't pick up on it. I scheduled a boot time scan and it found a couple of infections, in my temporary internet files. 001.com and 004.com.

    Here's the odd thing. I've plugged in my USB stick and now, for some reason, the files keep replacing themselves when I delete them

    I can't really see any processes that look out of the ordinary.

    I'm just installing a squared and will post a full report when I'm done with that. Odd that avast! didn't pick up on it when it ran, though ... The only reason I know it's there is because i can see the files it's placed there.

    Any ideas?
     
  2. goldfish

    goldfish Lt. Sushi.DC

    Ooh and here's something fun!

    When I go to uninstall DeskTopAds (something else that came along for the ride) I get this dialog!
    http://img.photobucket.com/albums/v186/goldfish654/uninstall.jpg

    Useful, eh? I think I worked it out. The button that says, ?? ... i mean, the one on the right top half, that makes a new number. To get it to uninstall, you have to type in that number into the edit box below, THEN click the button to the far left.

    But ... when you do that it throws an error. So all in all, totally useless.
     
  3. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    I would reboot into Safe Mode, plug in the USB drive and run the online scanners choosing C:\ drive and the USB drive.

    If there is nothing on the USB drive valuable it may be easier to format the USB drive. If your computer is infected I would run the online scanners and attach the logs so we can check the detections.
     
  4. goldfish

    goldfish Lt. Sushi.DC

    Yup, I ran the online scanners in safe mode and the picked it up along with a bunch of other crap that came with it. I think I'm clean now. I'll do some more scans tonight and see if you guys can spot anything I left behind.
     
  5. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    Okay, have you tried AVG AntiSpyware, if not couldn't hurt as it does a good job.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds