Jump to content

Virus/Malware Help


Recommended Posts

This morning MSE picked up a couple of virus on my computer. So I have run a couple of scans (one with malware bytes and MSE). However I am certain I detected these virus's a few days and removed them. Basically I need some advice; my gut is telling me I may have a root kit. But have no tools (not sure what to use to be perfectly honest) to confirm it at this time. Anyway could someone have a look at the logs I have, possible tell me if I just have bad luck at the moment or is my gut right

 

It’s properly nothing, but I haven’t dealt with any viruses or malware for a long time

 

MSE Log attached below

Malware Log

 

Malwarebytes Anti-Malware 1.65.1.1000

www.malwarebytes.org

 

Database version: v2012.11.25.08

 

Windows 7 Service Pack 1 x64 NTFS

Internet Explorer 9.0.8112.16421

Jarred :: JARRED-LAPTOPPC [administrator]

 

26/11/2012 10:48:54 AM

mbam-log-2012-11-26 (10-48-54).txt

 

Scan type: Full scan (C:\|D:\|Q:\|)

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 628911

Time elapsed: 1 hour(s), 18 minute(s), 24 second(s)

 

Memory Processes Detected: 0

(No malicious items detected)

 

Memory Modules Detected: 0

(No malicious items detected)

 

Registry Keys Detected: 0

(No malicious items detected)

 

Registry Values Detected: 1

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run|6729 (Heuristics.Shuriken) -> Data: C:\PROGRA~3\LOCALS~1\Temp\msuirop.bat -> Delete on reboot.

 

Registry Data Items Detected: 0

(No malicious items detected)

 

Folders Detected: 0

(No malicious items detected)

 

Files Detected: 1

C:\ProgramData\Local Settings\Temp\msuirop.bat (Heuristics.Shuriken) -> Delete on reboot.

 

(end)

 

 

 

 

Link to comment
Share on other sites

I would recommends to use Kaspersky virus scan (only scan and removing malware) it's free, http://www.kaspersky.com/virusscanner

Also if you wanting to remove unwanted/unknown services that started by virus, Autorun from sysinternals is the great tool to remove it manually. but you need to have experienced with windows services.

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...