We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Virus/trojan? Help please

Options
aaroncaz
aaroncaz Posts: 5,242 Forumite
Part of the Furniture
Did start this on another thread.

Went on Thomas Cook last night, Avast said it had a trojan, did scan 4 found:
HTML:Iframe-QH [Trj]

Avast then did boot time scan? and 59 threats found, I think i sent them to the chest( am never sure what action to take) When I look at log all that it shows is 23 threats same as above. This morning tried Thomas Cook again, seemed ok did another Avast scan and it said I had:

Win32:Malware-gen.
I can't see how to copy and paste Avast logs. Am running Malware now.
«1

Comments

  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    As I said in the other thread, the corrupted files are probably ok. They are most likely archives that avast can't unpack to be able to scan.

    What exactly is Avast detecting as Win32:Malware.Gen? Give the full path and filename.

    EG.

    C:\directory\folder\sub folder\filename.ext

    Generic detections (.Gen) can be prone to false positives.
  • aaroncaz
    aaroncaz Posts: 5,242 Forumite
    Part of the Furniture
    waddler_8 wrote: »
    As I said in the other thread, the corrupted files are probably ok. They are most likely archives that avast can't unpack to be able to scan.

    What exactly is Avast detecting as Win32:Malware.Gen? Give the full path and filename.

    EG.

    C:\directory\folder\sub folder\filename.ext

    Generic detections (.Gen) can be prone to false positives.

    Thanks How do ~I find the full path and filename please?
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    It should show in scan computer > scan logs > view results?

    Drag the separating bar to the right between file name & severity.
  • aaroncaz
    aaroncaz Posts: 5,242 Forumite
    Part of the Furniture
    c\users\carol\appadata\...(upx)

    Is this what you mean? couldn't copy and paste.
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Yes. that's right - What's the actual filename?

    It looks as though it's being detected because it's packed with UPX.
  • aaroncaz
    aaroncaz Posts: 5,242 Forumite
    Part of the Furniture
    c\users\carol\appadata\local\temp\icreinstall_facemoods(1)exI>(UPX)
  • aaroncaz
    aaroncaz Posts: 5,242 Forumite
    Part of the Furniture
    Thank you! Am just finishing Malware scan then shall post it up but it's showing no threats so far. I don't know what I would do without the expert help on here!!:T

    Is it "safe" to go Thomas Cook then:o
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Yes, it looks as though it is.

    Do this - it should take 2-3 mins.

    Download DDS from the link below and save it to your desktop:

    Link

    After you've downloaded it and saved it to your desktop:
    • Double click DDS to run it.
    • When it's finished, DDS will open two logs:
    1. DDS.txt
    2. Attach.txt
    Save both reports to your desktop.

    Copy & paste the contents of just attach.txt for now and post it here (you may need to split the log over separate posts)
  • aaroncaz
    aaroncaz Posts: 5,242 Forumite
    Part of the Furniture
    Malwarebytes Anti-Malware 1.61.0.1400
    https://www.malwarebytes.org

    Database version: v2012.06.24.01

    Windows Vista Service Pack 2 x86 NTFS
    Internet Explorer 9.0.8112.16421
    carol :: CAROL-PC [administrator]

    24/06/2012 09:09:01
    mbam-log-2012-06-24 (09-09-01).txt

    Scan type: Full scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 324194
    Time elapsed: 1 hour(s), 31 minute(s), 43 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 0
    (No malicious items detected)

    (end)
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.7K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.