Author Topic: Threat secured messages  (Read 3912 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
Threat secured messages
« on: January 08, 2018, 07:32:58 PM »
The last days I get every 10-15 minutes a threat secured message. Avast secures an [trj] threat from a website which I have never visited. I launched a quick scan and a targeted scan at system 32 and they found nothing. Here 's the full message.
« Last Edit: January 09, 2018, 05:26:17 PM by Inanimous »

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Threat secured messages
« Reply #1 on: January 08, 2018, 07:43:25 PM »

REDACTED

  • Guest
Re: Threat secured messages
« Reply #2 on: January 09, 2018, 05:31:17 PM »
Alright so after downloading malwarebytes I launched a scan. The scan found a few viruses so I instantly quarantined and deleted them. After restarting my pc I launched another scan just to be sure. The second scan found nothing else but right after finishing a threat secured message from avast popped again.
I have the logs both from the first and the second scan.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Threat secured messages
« Reply #3 on: January 09, 2018, 05:47:26 PM »
Quote
I have the logs both from the first and the second scan.
And the rest?


REDACTED

  • Guest
Re: Threat secured messages
« Reply #4 on: January 09, 2018, 06:15:10 PM »
Here you go. Sorry for not including them in the previous post.

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37532
  • Not a avast user
Re: Threat secured messages
« Reply #5 on: January 09, 2018, 06:18:25 PM »
Malware experts are notified, it may take hours before they are online


Offline Sass Drake

  • MyCity AMF R2
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 820
Re: Threat secured messages
« Reply #6 on: January 09, 2018, 08:25:54 PM »
This will automatically restart your PC so save your work before doing this.


  • Open Notepad (click Start button -> type notepad.exe -> press Enter)
  • Copy text from code block below and paste it into Notepad
Code: [Select]
Task: {B80EB22B-9C3F-44C3-82C9-C247792E231A} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {FB9BA845-B1E9-4FBE-9782-59BB2ECE77EC} - System32\Tasks\ACC => C:\Program Files\DriverSetupUtility\FUB\FUB_Send.bat [2015-06-22] () <==== ATTENTION
cmd: type "C:\Program Files\DriverSetupUtility\FUB\FUB_Send.bat"
AlternateDataStreams: C:\Users\Someone:Heroes & Generals [38]
cmd: reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters" /v SearchList /d "" /f
Reboot:
  • Go to File -> Save As
  • Make sure that  UTF-8 is selected as Encoding (left side of Save button)
  • Save it as fixlist.txt on Desktop
  • Open again FRST and click on button Fix
  • Wait until FRST finishes
  • fixlog.txt should be genereted and opened. Attach it your post and wait further instructions.

REDACTED

  • Guest
Re: Threat secured messages
« Reply #7 on: January 09, 2018, 09:01:28 PM »
Here it is.

REDACTED

  • Guest
Re: Threat secured messages
« Reply #8 on: January 15, 2018, 06:12:37 PM »
so what should I do now?

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89059
  • No support PMs thanks
Re: Threat secured messages
« Reply #9 on: January 15, 2018, 06:30:34 PM »
so what should I do now?

Wait for the moment, I have tried to attract attention back to your topic.

For now are you experiencing any of the same issues ?
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Sass Drake

  • MyCity AMF R2
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 820
Re: Threat secured messages
« Reply #10 on: January 15, 2018, 08:11:54 PM »
Sorry for late response. What is the system status now?

REDACTED

  • Guest
Re: Threat secured messages
« Reply #11 on: January 16, 2018, 05:34:48 PM »
Well I don 't get threat secured messages anymore. There 's one thing I forgot to mention though. For the last months some times I have really high disk usage like 90-100%. But I am not sure if a virus causes this problem

Offline Sass Drake

  • MyCity AMF R2
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 820
Re: Threat secured messages
« Reply #12 on: January 16, 2018, 05:54:01 PM »
Well I don 't get threat secured messages anymore. There 's one thing I forgot to mention though. For the last months some times I have really high disk usage like 90-100%. But I am not sure if a virus causes this problem

Glad to hear that.

The following will implement some post-cleanup procedures:

=> Please download DelFix by Xplode to your Desktop.
Run the tool and check the following boxes below;
Remove disinfection tools
Create registry backup
Purge System Restore

Click Run button and wait a few seconds for the programme completes his work.
At this point all the tools we used here should be gone. Tool will create an report for you (C:\DelFix.txt)

The tool will also record healthy state of registry and make a backup using ERUNT program in %windir%\ERUNT\DelFix
Tool deletes old system restore points and create a fresh system restore point after cleaning.





As for disk usage, you are not only Windows 10 user with that problem. Some users solved that problem with disabling telemetry.

REDACTED

  • Guest
Re: Threat secured messages
« Reply #13 on: January 16, 2018, 07:30:56 PM »
So, is my computer save now?  ;D ;D

Offline Sass Drake

  • MyCity AMF R2
  • Avast Evangelist
  • Advanced Poster
  • ***
  • Posts: 820
Re: Threat secured messages
« Reply #14 on: January 16, 2018, 08:34:50 PM »
It should be.