Jump to content

Got some Malware today


Recommended Posts

okay so i was browsin the net with a non up to date java with firefox (doh!)

http://www.malwarebytes.org/forums/index.php?showtopic=35537

according to my primary AV - nod32 2.7 - It said the following :Win32/Kryptik.BQD trojan and it came from the same location as the one posted in the above link. I clicked terminate but somestuff i guess got through and I was getting false security pop ups every 1 minute or so.

So i did a quick scan with SAS - it removed 5 things (some stuff out memory/1 reg entry). Then after a restart I followed up with malwarebytes - and it found 2 things that were kinda freaky:

Malwarebytes' Anti-Malware 1.43

Database version: 3499

Windows 6.0.6000

Internet Explorer 8.0.6001.18865

1/5/2010 11:41:51 PM

mbam-log-2010-01-05 (23-41-51).txt

Scan type: Quick Scan

Objects scanned: 96837

Time elapsed: 4 minute(s), 28 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 2

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\Users\User\AppData\Local\Temp\H8SRT3ff2.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.

C:\Users\User\AppData\Local\Temp\H8SRT629e.tmp (Rootkit.TDSS) -> Quarantined and deleted successfully.

following the removal of these I restarted scanned again and everything came up clear in those apps. So far so good, no pop ups or nothing. However, Im still quite concerned as it distinguished rootkits tdss and it may be hiding inside the system am I right?

Is there any other things I can do to confirm the malwares are gone? And that my information will be safe =) Is there a way to scan for rootkits?

As you can see im kind of lost from here on - If someone can sort of guide me in the right direction it would be highly appreciated.

Link to post
Share on other sites

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.