Author Topic: 1TB External Hard Drive Infected with Win32:Malware-gen  (Read 1990 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
1TB External Hard Drive Infected with Win32:Malware-gen
« on: May 02, 2017, 03:56:22 PM »
I plugged in my external hard drive filled with important files into an infected PC and now whenever i plug in that same hard drive into my laptop, all the folders have an ".exe" at the end.

I want to preserve all files in the external hard drive, how do i do that?

I've attached a pic of one of the folders i tried opening but it got sent to the virus vault.


Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: 1TB External Hard Drive Infected with Win32:Malware-gen
« Reply #1 on: May 02, 2017, 04:02:53 PM »
If the files really are infected, why do you want to preserve them ?
Simply clean the system and use your backup of the files.

Follow the instructions > https://forum.avast.com/index.php?topic=194892.0

REDACTED

  • Guest
Re: 1TB External Hard Drive Infected with Win32:Malware-gen
« Reply #2 on: May 02, 2017, 04:20:57 PM »
because this is the only backup of all the pictures i have since 2002.

I tried using the same external hard drive on another laptop that i am about to reformat and without any antivirus installed in it.

although the folders are changed to .exe with a file size of 293kb, I could still get into the folder just by clicking it and accessing the files.

so the question is how do i disinfect the external hard drive without deleting the files?

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: 1TB External Hard Drive Infected with Win32:Malware-gen
« Reply #3 on: May 02, 2017, 04:34:42 PM »
Quote
so the question is how do i disinfect the external hard drive without deleting the files?
In the guide Eddy gave link to, scroll down to    SPECIFIC INFECTIONS LOGS   and follow MCShield instructions

This log you copy and paste here ... The others you attach

« Last Edit: May 02, 2017, 04:37:39 PM by Pondus »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: 1TB External Hard Drive Infected with Win32:Malware-gen
« Reply #4 on: May 02, 2017, 04:41:41 PM »
Also note that disinfect a file can only be done if they are infected with a real virus that inject malicious code in legit files.
You can not disinfect a trojan as the hole file is the trojan

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: 1TB External Hard Drive Infected with Win32:Malware-gen
« Reply #5 on: May 02, 2017, 05:19:37 PM »
If that is the backup, you still have the original files.
Clean your system, wipe the drive and put a copy of the original files on the drive.