Jump to content

Shiriri

Members
  • Posts

    10
  • Joined

  • Last visited

Everything posted by Shiriri

  1. Good day! I apologize for the late reply for I did not have internet connection these past few days. Here is the log. msert.log
  2. Hi may I ask how I can fix this permanently? Thank you very much in advance. I ran Malwarebytes and these are what it found: Registry Key: 14 Spyware.PasswordStealer, HKU\S-1-5-21-4032482331-3198356358-2506028017-1001\SOFTWARE\ffdroider, Quarantined, 554, 954910, 1.0.43716, , ame, , , Trojan.Dropper, HKU\S-1-5-21-4032482331-3198356358-2506028017-1001\SOFTWARE\iwwggaa2, Quarantined, 606, 954912, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicei, Quarantined, 5169, 954960, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServiceo, Quarantined, 5169, 954967, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicep, Quarantined, 5169, 954968, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicer, Quarantined, 5169, 954969, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServices, Quarantined, 5169, 954970, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicet, Quarantined, 5169, 954971, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServiceu, Quarantined, 5169, 954973, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicev, Quarantined, 5169, 954974, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicew, Quarantined, 5169, 954975, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicex, Quarantined, 5169, 954976, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicey, Quarantined, 5169, 954977, 1.0.43716, , ame, , , Backdoor.Farfli, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\AppServicez, Quarantined, 5169, 954978, 1.0.43716, , ame, , , Registry Value: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Data Stream: 0 (No malicious items detected) Folder: 1 Legit.MisusedLegit.E, C:\PROGRAMDATA\73, Quarantined, 3835, 955226, 1.0.43716, , ame, , , File: 2 Spyware.FickerStealer.E, C:\PROGRAMDATA\KAOSDMA.TXT, Quarantined, 4131, 954907, 1.0.43716, , ame, , 604A58CE21CD7E94159E7BD56CC7945B, 070E0F66C62D3F0F1FBE7E90886A152B10F8E3CB42D49E315460C922BF78B294 Legit.MisusedLegit.E, C:\PROGRAMDATA\73\sqlite3.dll, Quarantined, 3835, 955226, 1.0.43716, , ame, , E477A96C8F2B18D6B5C27BDE49C990BF, 16574F51785B0E2FC29C2C61477EB47BB39F714829999511DC8952B43AB17660 Physical Sector: 0 (No malicious items detected) WMI: 0 (No malicious items detected) (end)
  3. Hello again, nasdaq. Attached herewith is the new fixlist.log. I have not encountered any issues so far after the restart. Fixlog.txt
  4. Hello, nasdaq. I did what you have told me: enabled windows defender and used the fix you have attached. Here is the fix log. Fixlog.txt
  5. Addition.txtFRST.txtRe-ran the scan with the quarantined programs restored.
  6. Good day, nasdaq. First of all, thank you very much for taking the time to reply to my thread and being willing to assist. Attached herewith are the logs you have asked for. Addition.txt FRST.txt
  7. I have recently noticed that my CPU and GPU temps seemed to be higher than usual. I asked my friend about it (who knew a thing or two about computers) and he told me that it might be a malware and advised me to download Malwarebytes to check. I did not think it would be the case but after the initial scan, I was notified there are malwares found in my temp file in which was quarantined immediately and removed. However, after every restart, I would still get a notification from Malwarebytes that it detected a malware of the same name and location and I would quarantine and remove again. How can I get rid of this malware permanently? i tried using different software as well such as HitmanPro, Zemana AntiMalware, etc. but still no permanent fix so far.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.