We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Virus from Facebook Application?

Options
My husband opened an application on FB yesterday called 'When Will I Die'. Just before it opened the laptop went funny and said that it had bee infected with a virus. He shut it down and later on used our Panda internet security to run a scan. Whilst the scan was running messages from another program (which I'd never installed or heard of) were coming up saying that a programme was trying to steal my credit card details and passwords (none of which are actually saved on the computer). The laptop then had a message come up to say it needed to restart as a serious fault had occured - I'd never seen this message before. After re-starting we scanned it again and my Panda scan revealed nothing seriously wrong with the computer, just some spyware which it removed.

I'm now very concerned that there is something on there lurking in the background. Please can anyone tell me if it's still safe to use my online banking etc? I'm so worried to use it, although I do only log into my bank using the on screen keyboard.

My husband says that his FB friends seemed to have used the app ok with no problems, so I'm not sure that this was the cause for sure. I'm not v.techie so any advice would be greatly appreciated.
2013: Interflora Vouchers, Christmas Decorations, NNUK goody bag, thermos flask, macwet gloves

Comments

  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    Download MALWAREBYTES (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_malwarebytes_anti_malware/
    Open malwarebytes and goto UPDATE and click 'check for updates'. After its updated goto SCANNER and click PERFORM QUICK SCAN then click SCAN
    Remove everything thats found (needs to be ticked)
    Post the COMPLETE log here AFTER youve deleted everything it finds
    If anything was found then do the exact same but run a FULL scan

    reboot
    Download HIJACK THIS (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_hijackthis/
    Click MAIN MENU then DO A SYSTEM SCAN AND SAVE A LOGFILE(Takes seconds) then post the log so we can see whats running
    (do NOT do anything else with Hijack but scan and post the FULL log)
    If you get a message that you cant write to the hosts file then Press the SHIFT key, and whilst holding it RIGHT CLICK and select RUN AS (admin)
    :idea:
  • PinkPeach
    PinkPeach Posts: 613 Forumite
    Part of the Furniture Combo Breaker
    edited 25 November 2010 at 11:47PM
    Thanks for your help, this is from my first Quick Scan using Malwarebytes (after having found and removed 1 infected item). I'll now run the full scan and will post my results - I really appreciate your help.

    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org
    Database version: 5190
    Windows 6.0.6002 Service Pack 2
    Internet Explorer 8.0.6001.18975
    25/11/2010 20:27:45
    mbam-log-2010-11-25 (20-27-45).txt
    Scan type: Quick scan
    Objects scanned: 142515
    Time elapsed: 9 minute(s), 57 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 1
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    (No malicious items detected)
    Registry Values Infected:
    (No malicious items detected)
    Registry Data Items Infected:
    (No malicious items detected)
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Security Tool.LNK (Rogue.SecurityTool) -> Quarantined and deleted successfully.


    Full scan report:

    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org
    Database version: 5190
    Windows 6.0.6002 Service Pack 2
    Internet Explorer 8.0.6001.18975
    25/11/2010 22:45:14
    mbam-log-2010-11-25 (22-45-14).txt
    Scan type: Full scan (C:\|)
    Objects scanned: 258207
    Time elapsed: 1 hour(s), 26 minute(s), 17 second(s)
    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 1
    Memory Processes Infected:
    (No malicious items detected)
    Memory Modules Infected:
    (No malicious items detected)
    Registry Keys Infected:
    (No malicious items detected)
    Registry Values Infected:
    (No malicious items detected)
    Registry Data Items Infected:
    (No malicious items detected)
    Folders Infected:
    (No malicious items detected)
    Files Infected:
    C:\Users\user\AppData\Local\56187.exe (Rogue.SecurityTool) -> Quarantined and deleted successfully.

    I'll complete the next stage of this tomorrow as it's bedtime now.
    2013: Interflora Vouchers, Christmas Decorations, NNUK goody bag, thermos flask, macwet gloves
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.7K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.