Jump to content

Deepscan:Sality removal


Recommended Posts

My friend's PC was infected with at least Deepscan:Sality virus, it was infecting other exe files and BDIS 2011 was constantly blocking and deleting the main virus's offsprings, but not the main virus. After endless scans with Mbam, Trojan Remover, SpywareSweeper, the problem still persisted. Cpu usage neared 100% ... thereafter he formatted just the OS drive and reinstalled win 7 (32bt) Ultimate. After installing BDIS 2010, the problem lessened, but Bitdefender still detects a few viruses once in a while.

I am providing the HJT log and RunAlyzer 2.0.0's SBSD log files. Please advice.

run_log.txt

hijackthis.log

Link to post
Share on other sites

Hello IsthatEnough?

Welcome to Malwarebytes.

=====================

Sality is a file infecter and cannot be cleaned fully.

I suggest reformatting again without running any exe files that may have been backed up as it may have caused the infection to respawn.

If it still detects it after that then let me know.

Link to post
Share on other sites

Hello IsthatEnough?

Welcome to Malwarebytes.

=====================

Sality is a file infecter and cannot be cleaned fully.

I suggest reformatting again without running any exe files that may have been backed up as it may have caused the infection to respawn.

If it still detects it after that then let me know.

He can't format all the drives, too much data to be backed up I guess, bt I told him to delete all setups from other drives than C and reformat, isntall BDIS from cd and scan again. Can combofix be of any help?

Link to post
Share on other sites

No Combofix cannot cure a compromised machine infected with a file infecter any exe that is dropped on the machine is immediately injected with malcode Combofix is an exe.

If he does not scan the backups for any malware he will be reformatting a lot.

He needs to make sure all his backups are clean before implementing them back into his fresh install.

Link to post
Share on other sites

  • 3 weeks later...
  • Staff

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.