We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Virus/trojan? Help please
Options

aaroncaz
Posts: 5,242 Forumite

in Techie Stuff
Did start this on another thread.
Went on Thomas Cook last night, Avast said it had a trojan, did scan 4 found:
HTML:Iframe-QH [Trj]
Avast then did boot time scan? and 59 threats found, I think i sent them to the chest( am never sure what action to take) When I look at log all that it shows is 23 threats same as above. This morning tried Thomas Cook again, seemed ok did another Avast scan and it said I had:
Win32:Malware-gen.
I can't see how to copy and paste Avast logs. Am running Malware now.
Went on Thomas Cook last night, Avast said it had a trojan, did scan 4 found:
HTML:Iframe-QH [Trj]
Avast then did boot time scan? and 59 threats found, I think i sent them to the chest( am never sure what action to take) When I look at log all that it shows is 23 threats same as above. This morning tried Thomas Cook again, seemed ok did another Avast scan and it said I had:
Win32:Malware-gen.
I can't see how to copy and paste Avast logs. Am running Malware now.
0
Comments
-
As I said in the other thread, the corrupted files are probably ok. They are most likely archives that avast can't unpack to be able to scan.
What exactly is Avast detecting as Win32:Malware.Gen? Give the full path and filename.
EG.
C:\directory\folder\sub folder\filename.ext
Generic detections (.Gen) can be prone to false positives.0 -
As I said in the other thread, the corrupted files are probably ok. They are most likely archives that avast can't unpack to be able to scan.
What exactly is Avast detecting as Win32:Malware.Gen? Give the full path and filename.
EG.
C:\directory\folder\sub folder\filename.ext
Generic detections (.Gen) can be prone to false positives.
Thanks How do ~I find the full path and filename please?0 -
It should show in scan computer > scan logs > view results?
Drag the separating bar to the right between file name & severity.0 -
c\users\carol\appadata\...(upx)
Is this what you mean? couldn't copy and paste.0 -
Yes. that's right - What's the actual filename?
It looks as though it's being detected because it's packed with UPX.0 -
c\users\carol\appadata\local\temp\icreinstall_facemoods(1)exI>(UPX)0
-
-
Thank you! Am just finishing Malware scan then shall post it up but it's showing no threats so far. I don't know what I would do without the expert help on here!!:T
Is it "safe" to go Thomas Cook then:o0 -
Yes, it looks as though it is.
Do this - it should take 2-3 mins.
Download DDS from the link below and save it to your desktop:
Link
After you've downloaded it and saved it to your desktop:- Double click DDS to run it.
- When it's finished, DDS will open two logs:
- DDS.txt
- Attach.txt
Copy & paste the contents of just attach.txt for now and post it here (you may need to split the log over separate posts)0 -
Malwarebytes Anti-Malware 1.61.0.1400
https://www.malwarebytes.org
Database version: v2012.06.24.01
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
carol :: CAROL-PC [administrator]
24/06/2012 09:09:01
mbam-log-2012-06-24 (09-09-01).txt
Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 324194
Time elapsed: 1 hour(s), 31 minute(s), 43 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 350.9K Banking & Borrowing
- 253.1K Reduce Debt & Boost Income
- 453.5K Spending & Discounts
- 243.9K Work, Benefits & Business
- 598.7K Mortgages, Homes & Bills
- 176.9K Life & Family
- 257.2K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards