Jump to content

Trojan.Small.Gen--Still Infected?


brokemu
 Share

Recommended Posts

Right before I was to install the latest Windows patches Tuesday afternoon, the cursory Malwarebytes scan picked up a piece of malware (trojan.small.gen). It was immediately quarantined and removed after the restart by Malwarebytes a few minutes later. I've also done various other scans and have summarily come up clean. I just want a second set of eyes on this before I install these crucial Windows update just in case I missed something. Thanks.

 

Malwarebytes-Log-1-9-18-2-35PM.txt

Rkill-1-11-18-2-30PM.txt

AdwCleaner-1-11-18-2-40PM.txt

FRST-1-11-18-2-45PM.txt

Addition-1-11-18-2-45PM.txt

Link to post
Share on other sites

Hello brokemu and welcome to Malwarebytes,

I see no obvious malware or infection in your logs. Run Malwarebytes one more time, note I ask for Rootkit scan to be enabled:

Open Malwarebytes Anti-Malware.
 
  • On the Settings tab > Protection Scroll to and make sure the following are selected:

    Scan for Rootkits
     
  • Click on the Scan make sure Threat Scan is selected,
  • A Threat Scan will begin.
  • When the scan is complete if anything is found make sure that the first checkbox at the top is checked (that will automatically check all detected items), then click on the Quarantine Selected Tab
  • If asked to restart your computer to complete the removal, please do so
  • When complete click on Export Summary after deletion (bottom-left corner) and select Copy to Clipboard.
  • Wait for the prompt to restart the computer to appear, then click on Yes.
  • After the restart once you are back at your desktop, open MBAM once more to retrieve the log.


To get the log from Malwarebytes do the following:
 
  • Click on the Reports tab > from main interface.
  • Double click on the Scan log which shows the Date and time of the scan just performed.
  • Click Export > From export you have two options:
    Copy to Clipboard - if seleted right click to your reply and select "Paste" log will be pasted to your reply
    Text file (*.txt) - if selected you will have to name the file and save to a place of choice, recommend "Desktop" then attach to reply
     
  • Use "Copy to Clipboard, then Right click to your reply > select "Paste" that will copy the log to your reply…

Thank you,

Kevin...

 

Link to post
Share on other sites

That log is also clean, same as previous scans. Unless you have remaining issues or concerns run the following to clean up:

Download "Delfix by Xplode" and save it to your desktop.

Or use the following if first link is down:

"Delfix link mirror"

If your security program alerts to Delfix either, accept the alert or turn your security off.

Double Click to start the program. If you are using Vista or higher, please right-click and choose run as administrator

Make Sure the following item is the only one checked:

 
  • Remove disinfection tools <----- this will remove tools we have used.


Now click on "Run" and wait patiently until the tool has completed.

The tool will create a log when it has completed. We don't need you to post this.

Any remnant files/logs from tools we have used can be deleted…

Next,

Read the following links to fully understand PC Security and Best Practices, you may find them useful....

Answers to Common Security Questions and best Practices

Do I need a Registry Cleaner?

Take care and surf safe

Kevin... user posted image
Link to post
Share on other sites

Glad we could help.

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this topic with your request.

This applies only to the originator of this thread.Other members who need assistance please start your own topic in a new thread.

Thanks

 

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.