I don't know if I'm infected with malware or a virus

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • Summerball
    PCHF Member
    • Jan 2017
    • 12

    #16
    Hey, before I do the next thing you ask of me , I think that I may have found the root of my problem. Keyword : May.

    First I updated my ESET security 8 to 10, then I tried gaming, still no succes. Then I disabled ESET security 10 and enabled windows firewall (standard) and made an exception to the games that I want, and since the on I encountered minimal issues.
    However, I tried it for like 1 hour, I am still testing, so far so good. Who knows, maybe that was the problem all along.
    I’ll keep you updated tomorrow.

    Comment

    • Malnutrition
      PCHF Moderator
      • Jul 2016
      • 7045

      #17
      I still highly suggest that you complete this thread, there is indeed malware on your machine that needs removing.

      As far as the security check log posted here, I can not read Russian so do what the log says and update and or un install anything suggested by the tool.

      Comment

      • Summerball
        PCHF Member
        • Jan 2017
        • 12

        #18
        I will complete the thread tomorrow when I wake up, I am still testing.
        I might have a little clue on why it doesn’t work.
        The game itself, let’s for example choose Insurgency, works fine without adding any mods, but when I do, sometimes it works and sometimes it doesn’t.
        Like, when I crash on startup or on loading screen, I know that the mod is either : A) corrupt or B) too much ram using, so I delete it.
        But, what suprises me is, when I choose mods that work fine in one match, the other match it makes me CTD (Crash to desktop), while I played a full match with the exact same mods.

        Can it be that my memory can’t handle the mods at some point or?

        Comment

        • Malnutrition
          PCHF Moderator
          • Jul 2016
          • 7045

          #19
          We will get to the bottom of things tomorrow.

          Comment

          • Summerball
            PCHF Member
            • Jan 2017
            • 12

            #20
            This is the result of the Zemana scan :
            Zemana AntiMalware 2.70.2.442 (geïnstalleerd)


            Scan Result : Compleet
            Scan Date : 2017-1-17
            Operating System : Windows 8 32-bit
            Processor : 8X Intel(R) Core™ i7-4700HQ CPU @ 2.40GHz
            BIOS Mode : Legacy
            CUID : 12F31CD67571AD31771A70
            Scan Type : Aangepaste scan
            Duration : 5m 33s
            Scanned Objects : 296330
            Detected Objects : 12
            Excluded Objects : 0
            Read Level : Normal
            Auto Upload : Aangeschakeld
            Detect All Extensions : Uitgeschakeld
            Scan Documents : Uitgeschakeld
            Domain Info : KOPIMI,0,2
            [HEADING=1]Detected Objects[/HEADING]
            ICReinstall_Setup_ImgBurn_2.5.8.0_dlm.exe
            Status : Gescand
            Object : %temp%\icreinstall_setup_imgburn_2.5.8.0_dlm.exe
            MD5 : C62AACFF57365475D3933844A77EE384
            Publisher : PremiumBeam (New Media Holdings Ltd.)
            Size : 1322944
            Version : 0.0.0.0
            Detection : Adware:Win32/FriedMedia!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %temp%\icreinstall_setup_imgburn_2.5.8.0_dlm.exe

            mrupdsrv.exe
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\update service\mrupdsrv.exe
            MD5 : 4D0704E8ABED2656DC4C02C08676D7AE
            Publisher : LLC Mail.Ru
            Size : 2187992
            Version : 3.3.0.7
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\update service\mrupdsrv.exe

            MailRuUpdater.exe
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\mailruupdater.exe
            MD5 : 4EE4D92E9691754FEAE9FDD890701E37
            Publisher : LLC Mail.Ru
            Size : 4157656
            Version : 3.8.0.5
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\mailruupdater.exe

            native_host_app.exe
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\gochromiumnativehost\native _host_app.exe
            MD5 : 7336F1E3ECA0F095CC5ED279804026D3
            Publisher : LLC Mail.Ru
            Size : 2270936
            Version : 3.2.0.12
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\byugsliuss vanleqkzsaileqxkywxbwo\gochromiumnativehost\native _host_app.exe

            chrome.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome.dll
            MD5 : 59BFBD260272888E7D760AAB2633E925
            Publisher : LLC Mail.Ru
            Size : 39928832
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome.dll

            amigo.exe
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\amigo.exe
            MD5 : F3BEF32E56A17274F8FEB56FFB683067
            Publisher : LLC Mail.Ru
            Size : 3394776
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\amigo.exe

            nacl64.exe
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\n acl64.exe
            MD5 : 09FF0502EA7A5AE6FB62156A2E921D91
            Publisher : LLC Mail.Ru
            Size : 5556952
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\n acl64.exe

            libglesv2.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\l ibglesv2.dll
            MD5 : CA186EC30E5CF3A494196B404155C2BC
            Publisher : LLC Mail.Ru
            Size : 1879768
            Version : 2.1.0.0
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\l ibglesv2.dll

            libegl.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\l ibegl.dll
            MD5 : D93211DAA0BB0EEEBB34F95980E3236E
            Publisher : LLC Mail.Ru
            Size : 85720
            Version : 2.1.0.0
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\l ibegl.dll

            chrome_watcher.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_watcher.dll
            MD5 : 17AF283984AF81842216284564B69F0C
            Publisher : LLC Mail.Ru
            Size : 463576
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_watcher.dll

            chrome_elf.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_elf.dll
            MD5 : D18C6EB0D0E7AFFE737F6E37335E05E2
            Publisher : LLC Mail.Ru
            Size : 374488
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_elf.dll

            chrome_child.dll
            Status : Gescand
            Object : %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_child.dll
            MD5 : FD73CDA3BCB43059FDE3B88FA79E233A
            Publisher : LLC Mail.Ru
            Size : 49894400
            Version : 54.0.2840.189
            Detection : PUA:Win32/BrowserHijacker.Mail.Ru!Ep
            Cleaning Action : Quarantaine
            Related Objects :
            Bestand - %homedrive%\adwcleaner\quarantine\files\nszirrjsiz hlfncfdoyfmhggwwwiuoso\application\54.0.2840.189\c hrome_child.dll
            [HEADING=1]Cleaning Result[/HEADING]
            Cleaned : 12
            Reported as safe : 0
            Failed : 0

            (I’ll be back later, but I had time to quickly run this scan, when I’m back I’ll proceed with the other scan.)

            Comment

            • Malnutrition
              PCHF Moderator
              • Jul 2016
              • 7045

              #21
              I’d like you to run a full scan with zemana per the instructions posted. No worries just get to it when you can.

              Comment

              • Malnutrition
                PCHF Moderator
                • Jul 2016
                • 7045

                #22
                Please give us an update. Although you may not be having any issues, it is highly suggested that you finish things up here.

                Comment

                • Malnutrition
                  PCHF Moderator
                  • Jul 2016
                  • 7045

                  #23
                  Hello @Summerball how are you moving along with the instructions? Have you got an update for us?

                  Please update this thread within 48 hours, or it will be closed. You can however have it re-opened at any time, by sending a private message to a staff member.

                  Comment

                  Working...