Computer Hope

Software => Computer viruses and spyware => Topic started by: Valorus on January 15, 2014, 05:21:39 PM

Title: Deleted China spam, AV reported two viruses. Can't remove.
Post by: Valorus on January 15, 2014, 05:21:39 PM
I had a number of Chinese spam emails and when I deleted them, my antivirus suddenly reported two trojans: Gen:Variant, Symm:4023 and
Trojan.Generic.10225112. Dell Lap N7110 is very slow and although AV says they are removed, a restart brings them right back.
Any  help will be greatly appreciated.

[recovering disk space, attachment deleted by admin]
Title: Re: Deleted China spam, AV reported two viruses. Can't remove.
Post by: SuperDave on January 16, 2014, 12:50:44 PM
Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
2. The fixes are specific to your problem and should only be used for this issue on this machine.
3. If you don't know or understand something, please don't hesitate to ask.
4. Please DO NOT run any other tools or scans while I am helping you.
5. It is important that you reply to this thread. Do not start a new topic.
6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
7. Absence of symptoms does not mean that everything is clear.

If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
*************************************************************************
Download Security Check by screen317 from one of the following links and save it to your desktop.

Link 1 (http://screen317.spywareinfoforum.org/SecurityCheck.exe)
Link 2 (http://screen317.changelog.fr/SecurityCheck.exe)

* Double-click Security Check.bat
* Follow the on-screen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt
* Post the contents of that document in your next reply.

Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.
******************************************
Malwarebytes' Anti-Rootkit

Please download Malwarebytes' Anti-Rootkit (http://www.malwarebytes.org/products/mbar/) and save it to your desktop.
Title: Re: Deleted China spam, AV reported two viruses. Can't remove.
Post by: Valorus on January 16, 2014, 02:50:22 PM
Here's checkup.txt.
 Results of screen317's Security Check version 0.99.78 
 Windows 7 Service Pack 1 x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````[/u]
 Windows Firewall Enabled! 
Bitdefender Antivirus   
 Antivirus out of date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````[/u]
 Malwarebytes Anti-Malware version 1.75.0.1300 
 Java 7 Update 45 
 Adobe Flash Player 11.9.900.170 
 Adobe Reader 10.1.8 Adobe Reader out of Date! 
 Google Chrome 31.0.1650.57 
 Google Chrome 31.0.1650.63 
````````Process Check: objlist.exe by Laurent````````[/u] 
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbamgui.exe 
 Malwarebytes' Anti-Malware mbamscheduler.exe   
 Bitdefender Bitdefender 2013 vsserv.exe 
 Bitdefender Bitdefender 2013 updatesrv.exe 
 Bitdefender Bitdefender 2013 bdagent.exe 
`````````````````System Health check`````````````````[/u]
 Total Fragmentation on Drive C: 0%
````````````````````End of Log``````````````````````[/u]


[recovering disk space, attachment deleted by admin]
Title: Re: Deleted China spam, AV reported two viruses. Can't remove.
Post by: SuperDave on January 16, 2014, 04:17:31 PM
Please do not attach your logs unless absolutely necessary. Copy and paste them in your reply(ies)
Title: Re: Deleted China spam, AV reported two viruses. Can't remove.
Post by: Valorus on January 16, 2014, 06:10:47 PM
OK Dave, sorry.