Author Topic: Malware Found - Concerned As One Is A Password Stealer  (Read 6431 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
Malware Found - Concerned As One Is A Password Stealer
« on: July 17, 2016, 08:39:54 PM »
MBAM found three pieces of malware. I'm particularly concerned as one is a password stealer. Any help would be gratefully received.

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #1 on: July 17, 2016, 08:41:07 PM »
More files.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #2 on: July 17, 2016, 09:00:41 PM »
Quote
I'm particularly concerned as one is a password stealer
Change all your passwords, something you should do on a regular basis anyway

Password Generator: https://identitysafe.norton.com/password-generator



somone will soon check your logs    ;)



REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #3 on: July 17, 2016, 09:10:50 PM »
Thanks. SuperAntiSpyware has found something else that MBAM didn't pick up so I'll post that log when it completes.

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #4 on: July 17, 2016, 09:16:45 PM »
This is what Super Anti Spyware found.

Is there any point changing my passwords until this problem has been resolved? I imagine if I were to change them and this thing is able to steal them then it would just take the new ones anyway.

Offline dbrisendine

  • Malware Fighter
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1258
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #5 on: July 17, 2016, 10:27:46 PM »
Do not run this inside Sandboxie; put this on the un-sandboxed system and run it.  Thanks.

Download CKScanner from here

Important : Save it to your desktop.
  • Doubleclick CKScanner.exe and click Search For Files.
  • After a very short time, when the cursor hourglass disappears, click Save List To File.
  • A message box will verify that the file is saved.
  • Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.
Win7 x32 Ult. SP1, Brain 2.0 / Win10 x64, Brain2.5
My help is always free but if you would like to help encourage me or show your thanks -----> DONATE

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #6 on: July 17, 2016, 10:41:58 PM »
When I try to run it it goes into "not responding".

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #7 on: July 17, 2016, 10:45:05 PM »
It ran in the end:

CKScanner 2.5 - Additional Security Risks - These are not necessarily bad
scanner sequence 3.RP.11.LMAAL0
 ----- EOF -----

Offline dbrisendine

  • Malware Fighter
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1258
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #8 on: July 17, 2016, 11:15:53 PM »
Thanks for the extra logs.  Interesting collection of files you have there.


Fix with Farbar Recovery Scan Tool
This fix was created for this user for use on that particular machine.
Running it on another one may cause damage and render the system unstable.
Download attached fixlist.txt file and save it to the Desktop:

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!

  • Right-click on icon and select Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.
Please attach it to your reply.
Win7 x32 Ult. SP1, Brain 2.0 / Win10 x64, Brain2.5
My help is always free but if you would like to help encourage me or show your thanks -----> DONATE

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #9 on: July 18, 2016, 12:10:39 AM »
Thanks.

All done.

Were they anything dangerous?

Offline dbrisendine

  • Malware Fighter
  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1258
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #10 on: July 18, 2016, 12:31:31 AM »
No; they were just remains from past malware (so it seems). 

Junkware Removal Tool
Please download JRT from here to your desktop.

Note: Temporarily disable/shut down your protection software now to avoid potential conflicts, how to do so can be read here.

Double click the JRT.exe file to run the application.

The application will open an Command Prompt window and run from there (this is normal for this program, so not to be alarmed).

When it is asked, press any key to allow the program to continue / run.

This will create a log on the desktop; please copy and paste the JRT.txt log text in your next post.

Note: After the log file is created, please enable your protection software / reboot your system and verify your protection software is enabled.

Win7 x32 Ult. SP1, Brain 2.0 / Win10 x64, Brain2.5
My help is always free but if you would like to help encourage me or show your thanks -----> DONATE

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #11 on: July 18, 2016, 11:05:18 AM »
Thanks.

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31072
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #12 on: July 18, 2016, 11:49:48 AM »
https://www.virustotal.com/en-gb/domain/fullstuff.net/information/

Good way to get a system infected.
Stop using illegal software.

REDACTED

  • Guest
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #13 on: July 18, 2016, 12:02:54 PM »
https://www.virustotal.com/en-gb/domain/fullstuff.net/information/

Good way to get a system infected.
Stop using illegal software.

What? What illegal software? I'm not the only one who uses this computer.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37699
Re: Malware Found - Concerned As One Is A Password Stealer
« Reply #14 on: July 18, 2016, 12:23:14 PM »
C:\SANDBOX\MYPC\DEFAULTBOX\USER\CURRENT\APPDATA\LOCAL\TEMP\SBIE_TEMP\1D1E04DC36CB46F\MALWAREBYTES ANTI-MALWARE PREMIUM ACTIVATOR- [FULLSTUFF.NET].EXE