Author Topic: Copmuter virus/craziness  (Read 2037 times)

0 Members and 2 Guests are viewing this topic.

hbeevers

  • Guest
Copmuter virus/craziness
« on: June 07, 2010, 01:24:54 PM »
Hey, using avast, i keep getting the usual win32 malware-gen up, but also a LOT of temp files infected, always beginning with 'hki' along the lines of hki1566. I keep deleting them but they always reappear, even after boot scan. Also when using google sometimes i click the link and am sent to an ad site, any help on next steps or how to sort these problems is greatly appreciated. Thankyou

hbeevers

  • Guest
Re: Copmuter virus/craziness
« Reply #1 on: June 07, 2010, 01:28:30 PM »
Attached are some avast results for these problems.

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67183
Re: Copmuter virus/craziness
« Reply #2 on: June 07, 2010, 01:29:17 PM »
I suggest:

1. Clean your temporary files.
2. Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! instead.
3. Use MBAM (or SUPERantispyware or even Spyware Terminator) to scan for spywares and trojans. If any infection is detected, it is better and safer to send the infected file(s) to quarantine (Chest), rather than simply deleting them.
4. Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.
5. Make a HijackThis log to post here or this analysis site. Or even submit the RunScanner log to to on-line analysis.
6. Clean your Hosts file (replacing it) with HostsMan tool.
7. Disable System Restore and then reenable it again.
8. Immunize your system with SpywareBlaster.
9. Check if you have insecure applications with Secunia Software Inspector.
The best things in life are free.