Author Topic: Possible Spyware  (Read 1898 times)

0 Members and 1 Guest are viewing this topic.

epsilon_pegasi

  • Guest
Possible Spyware
« on: October 28, 2013, 08:30:07 AM »
Hello Avast,

A few days ago one of my email accounts was hijacked. Although neither Avast nor MBAM have reported any intrusions, I'd still like to be certain that my computer is clean. If somebody could review these logs (And suggest other software to go further if needed), I would be grateful.

Offline TwinHeadedEagle

  • Malware Removal Expert
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2987
    • Zemana
Re: Possible Spyware
« Reply #1 on: October 28, 2013, 08:38:48 AM »
Hi,


Please download AdwCleaner by Xplode and save to your Desktop.

Double click on AdwCleaner.exe to run the tool.
  • Click on the Scan button.
  • After the scan has finished click on the Clean button.
Press OK when asked to close all programs and follow the onscreen prompts.
Press OK again to allow AdwCleaner to restart the computer and complete the removal process.

  • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
  • Post logfile will also be saved in the C:\AdwCleaner folder.
Then...



Please download GMER, AntiRootkit tool from the link below and save it to your Desktop:

Gmer download link
Note: file will be random named



Double-clicking to run GMER.
  • Wait for initial scan to finish - if there is any query, click No;
  • Click Scan button and wait until the full scan is complete;
  • Click Save ... - save the report to the Desktop (named Gmer );
> Attach here Gmer logreports.



Then...



Please download Farbar Recovery Scan Tool by Farbar and save it to your desktop.

Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.


  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Under Optional Scan ensure "List BCD" and "Driver MD5" are ticked.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
My help is free, however if you'd like to show your appreciation by leaving a donation, it will be much appreciated ------> DONATE

epsilon_pegasi

  • Guest
Re: Possible Spyware
« Reply #2 on: October 28, 2013, 09:09:14 AM »
Here are the logs:

Offline TwinHeadedEagle

  • Malware Removal Expert
  • Avast Evangelist
  • Massive Poster
  • ***
  • Posts: 2987
    • Zemana
Re: Possible Spyware
« Reply #3 on: October 28, 2013, 11:11:01 AM »
I see no malware on your system, but let's empty temporary folders...


Please download TFC by OldTimer to your desktop
  • Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • It will close all programs when run, so make sure you have saved all your work before you begin.
  • Click the Start button to begin the process. Depending on how often you clean temp
    files, execution time should be anywhere from a few seconds to a minute
    or two. Let it run uninterrupted to completion.
  • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.
My help is free, however if you'd like to show your appreciation by leaving a donation, it will be much appreciated ------> DONATE

epsilon_pegasi

  • Guest
Re: Possible Spyware
« Reply #4 on: October 28, 2013, 08:06:57 PM »
Great, thanks for the help!