New Posts  All Forums:Forum Nav:

Trojans??  

post #1 of 21
Thread Starter 
So today I got an alert from MSE that I had a trojan detection. The trojan was called file:C:\\Users\\Alec\\AppData\\Local\\Temp\\jar_ca che.tmp->bingo/efir.class and since i saw it i decided to run a full scan. I found another called Dynamer!dtc which was located at containerfile:C:\\Users\\Alec\\Downloads\\UltraMon .v3.0.10.x64.Incl.Keymaker-BLiZZARD\\b-um36ef.zip
file:C:\\Users\\Alec\\Downloads\\UltraMon.v3.0.10. x64.Incl.Keymaker-BLiZZARD\\b-um36ef.zip->keygen.exe.
I'm kinda freaking out because I just got this pc 2 months ago and had NO idea I had viruses. I have MSE and malwarebytes. Should I go ahead and format to restart everything or do you guys have any other ideas? Also kinda random, but my desktop icons moved around occasionaly just like 1 slot different and im wondering if that had ANYTHING to do with it.

Thanks guys!

EDIT: Also MSE removed both of them, but I want to make sure they are completely gone and I don't have a risk of having more that it isn't catching.
 
Macbook Pro
(7 items)
 
 
CPUMotherboardGraphicsRAM
Intel i5 3210m Apple Logic Board Intel HD 4000 8gb G. Skill 1600mhz 
Hard DriveOSMonitor
256gb Samsung 840 Pro OSX 10.9 Mavericks 13.3" 1280x800  
  hide details  
 
Macbook Pro
(7 items)
 
 
CPUMotherboardGraphicsRAM
Intel i5 3210m Apple Logic Board Intel HD 4000 8gb G. Skill 1600mhz 
Hard DriveOSMonitor
256gb Samsung 840 Pro OSX 10.9 Mavericks 13.3" 1280x800  
  hide details  
post #2 of 21
From experience MalwareBytes' full scan does the job. Another free one you could try is Kaspersky Virus Removal Tool. But yeah, if no luck just backup and format
post #3 of 21
Reinstall Windows.

Really only sure fire way you know your 220% clean.

Like having chlamydia and only taking 1 antibiotic. No. Take the whole damn bottle son.
 
Dell UltraSharp U2412M IPS Panel
Dell UltraSharp U2412M
 
CPUMotherboardGraphicsRAM
Apple A7 Cyclone x64 Chip @ 1.3Ghz Apple PowerVR G6430 1GB DDR3 
Hard DriveCoolingOSMonitor
16GB Internal Storage Passive iOS 7.0.3 4.0" 1136x640 
KeyboardPowerCaseMouse
On-Screen 1560mAH Battery Apple iPhone 5S Space Grey Touch ID Finger Print Scanner 
AudioOtherOther
3.5mm Jack Nano SIM Lightning Connector 
  hide details  
 
Dell UltraSharp U2412M IPS Panel
Dell UltraSharp U2412M
 
CPUMotherboardGraphicsRAM
Apple A7 Cyclone x64 Chip @ 1.3Ghz Apple PowerVR G6430 1GB DDR3 
Hard DriveCoolingOSMonitor
16GB Internal Storage Passive iOS 7.0.3 4.0" 1136x640 
KeyboardPowerCaseMouse
On-Screen 1560mAH Battery Apple iPhone 5S Space Grey Touch ID Finger Print Scanner 
AudioOtherOther
3.5mm Jack Nano SIM Lightning Connector 
  hide details  
post #4 of 21
You downloaded a keygen.

Well besides do a san with malwarebytes if you are scared. Usaully picks everything up.
    
CPUMotherboardGraphicsRAM
AMD Phenom II x4 B45(Unlocked AMD Athlon II x3 445 ASRock M3A770DE His Radeon 5830 4 GB G.SKill Ripjaws 
Hard DriveOSKeyboardPower
1TB Seagate HDD Windows7 Home Premium Saitek Cyborg V5 Corsair-TX650W 
CaseMouseMouse Pad
Cooler Master Elite 430 Microsoft Mouse Gaming Mouse(not sure the x000) My Desk 
  hide details  
    
CPUMotherboardGraphicsRAM
AMD Phenom II x4 B45(Unlocked AMD Athlon II x3 445 ASRock M3A770DE His Radeon 5830 4 GB G.SKill Ripjaws 
Hard DriveOSKeyboardPower
1TB Seagate HDD Windows7 Home Premium Saitek Cyborg V5 Corsair-TX650W 
CaseMouseMouse Pad
Cooler Master Elite 430 Microsoft Mouse Gaming Mouse(not sure the x000) My Desk 
  hide details  
post #5 of 21
If you have any keygens or cracked patches for games, sometimes virus scanners will scan them and say they are viruses when they really arent. If I have my external plugged in while i turn it on, MSE will say I have viruses when it's really just my keygens or patches I have. But I search safe on the internet so I rarely get anything anyways. But good luck finding a fix!

Also, if you do have keygens or anything like that, put them on a flashdrive, restart your comp, then scan again and see if they go away.
Main Rig (ITX)
(11 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i7-4790k ASUS H97I-PLUS EVGA GeForce GTX 980 Ti FTW Corsair Vengeance DDR3 1600 2 x 4GB 
Hard DriveHard DriveHard DriveOS
Sandisk Z400s Seagate Barracuda 1TB 7200RPM 64MB Cache Seagate Barracuda 2TB 7200 RPM 64MB Cache Windows 10 Pro 
PowerCaseAudio
EVGA 600B Corsair Obsidian 250D M-Audio Mobile Pre 
  hide details  
Main Rig (ITX)
(11 items)
 
  
CPUMotherboardGraphicsRAM
Intel Core i7-4790k ASUS H97I-PLUS EVGA GeForce GTX 980 Ti FTW Corsair Vengeance DDR3 1600 2 x 4GB 
Hard DriveHard DriveHard DriveOS
Sandisk Z400s Seagate Barracuda 1TB 7200RPM 64MB Cache Seagate Barracuda 2TB 7200 RPM 64MB Cache Windows 10 Pro 
PowerCaseAudio
EVGA 600B Corsair Obsidian 250D M-Audio Mobile Pre 
  hide details  
post #6 of 21
Keygen.exe's are usually false positives because they edit system data... the icons moving on desktop is probably not related
You dont need to format... it got rid of the "Virus"
Edit: ninja'd by 3 ppl o.o GJ
Streamer/Gamer
(15 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7-5820K Asus X99-A Sapphire R9-290 Crucial Ballistics Sport 16gb 2400mhz 
Hard DriveHard DriveCoolingOS
OCZ Agility 3 60gb Seagate 1TB Corsair H100  Windows 10 64-bit 
MonitorKeyboardPowerCase
3x 22" 1080 monitors Logitech G510 Corsair HX620 Nzxt Switch 810 
MouseMouse PadAudio
Logitech G402 Steel series QCK cloth Logitech G930 headset 
  hide details  
Streamer/Gamer
(15 items)
 
  
CPUMotherboardGraphicsRAM
Intel i7-5820K Asus X99-A Sapphire R9-290 Crucial Ballistics Sport 16gb 2400mhz 
Hard DriveHard DriveCoolingOS
OCZ Agility 3 60gb Seagate 1TB Corsair H100  Windows 10 64-bit 
MonitorKeyboardPowerCase
3x 22" 1080 monitors Logitech G510 Corsair HX620 Nzxt Switch 810 
MouseMouse PadAudio
Logitech G402 Steel series QCK cloth Logitech G930 headset 
  hide details  
post #7 of 21
Thread Starter 
Yes I know its a keygen except the site I get my stuff from is a private legit site. I know also that it could falsely scan it except I googled it and it said it can steal information and stuff. Idk now i'm going to pass on downloading programs..lol
 
Macbook Pro
(7 items)
 
 
CPUMotherboardGraphicsRAM
Intel i5 3210m Apple Logic Board Intel HD 4000 8gb G. Skill 1600mhz 
Hard DriveOSMonitor
256gb Samsung 840 Pro OSX 10.9 Mavericks 13.3" 1280x800  
  hide details  
 
Macbook Pro
(7 items)
 
 
CPUMotherboardGraphicsRAM
Intel i5 3210m Apple Logic Board Intel HD 4000 8gb G. Skill 1600mhz 
Hard DriveOSMonitor
256gb Samsung 840 Pro OSX 10.9 Mavericks 13.3" 1280x800  
  hide details  
post #8 of 21
It doesn't sound like you're infected, but if you want to be more sure you can use System Sweeper.

http://connect.microsoft.com/systemsweeper

Get the right 32bit/64bit version for your OS.

Its essentially MSE with the latest definitions but in its own clean/trusted environment that you boot from a USB stick, then it scans your drive including MBR offline(without your OS booted).

Scanning with MSE or any other scanner from an already compromised system can miss things.
Nehalem
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7 950 @ 4.3GHz Evga X58 3SLI 2X SLI Evga GTX 275 FTWs 756/1620/1296 6GB Mushkin Blackline 1600MHz 78720591T 
Hard DriveMonitorPower
OCZ Vertex2 60GB Sony FW900 Corsair 850TX 
  hide details  
Nehalem
(13 items)
 
  
CPUMotherboardGraphicsRAM
i7 950 @ 4.3GHz Evga X58 3SLI 2X SLI Evga GTX 275 FTWs 756/1620/1296 6GB Mushkin Blackline 1600MHz 78720591T 
Hard DriveMonitorPower
OCZ Vertex2 60GB Sony FW900 Corsair 850TX 
  hide details  
post #9 of 21
Just get a nice AV suite and just have a quick look at the comments (if any)
Haven't had a virus in years, the amount of viruses staff get at work is amazing, though.
post #10 of 21
as people have stated you are getting positives because keygens generate code automatically and can modify files.
ShadowForge
(12 items)
 
Defiant
(14 items)
 
CarbonCat
(13 items)
 
CPUMotherboardGraphicsRAM
Phenom II x6 1405T (unlocked Athlon II X4 640T) ASUS M5A99X EVO AM3+ Asus ENGTX470/2DI/1280MD5/V2 16 GB (4x4GB) G.Skill DDR3 1600 CAS9 1.35v 
Hard DriveHard DriveOptical DriveCooling
WD Caviar Blue 250 2.5" Laptop Drive WD Caviar Black 1TB 3.5" Pioneer BDR-203 BluRay Burner Corsair H60 push 
OSOSMonitorPower
Windows 7 Pro x64 Ubuntu 11.10 Samsung 40" 60hz  ANTEC NEO ECO 520W 
CaseMouse
NZXT Gamma Microsoft Bluetooth Notebook Mouse 5000 
CPUMotherboardGraphicsRAM
i7 - 2600k [5.0 1.42v] ASUS P8Z68 Deluxe Sapphire HD6950 2gb Dirt 3 Edition 8GB G.Skill DDR3 2133 CAS11 
Hard DriveOSMonitorKeyboard
60GB G.Skill Sniper + 2x1TB Spinpoint F3 Raid0 Win 7 Pro x64 ASUS VW266H Razer Blackwidow 
PowerCaseMouse
Seasonic X750 Gold Corsair Carbide 500R White G9 
  hide details  
ShadowForge
(12 items)
 
Defiant
(14 items)
 
CarbonCat
(13 items)
 
CPUMotherboardGraphicsRAM
Phenom II x6 1405T (unlocked Athlon II X4 640T) ASUS M5A99X EVO AM3+ Asus ENGTX470/2DI/1280MD5/V2 16 GB (4x4GB) G.Skill DDR3 1600 CAS9 1.35v 
Hard DriveHard DriveOptical DriveCooling
WD Caviar Blue 250 2.5" Laptop Drive WD Caviar Black 1TB 3.5" Pioneer BDR-203 BluRay Burner Corsair H60 push 
OSOSMonitorPower
Windows 7 Pro x64 Ubuntu 11.10 Samsung 40" 60hz  ANTEC NEO ECO 520W 
CaseMouse
NZXT Gamma Microsoft Bluetooth Notebook Mouse 5000 
CPUMotherboardGraphicsRAM
i7 - 2600k [5.0 1.42v] ASUS P8Z68 Deluxe Sapphire HD6950 2gb Dirt 3 Edition 8GB G.Skill DDR3 2133 CAS11 
Hard DriveOSMonitorKeyboard
60GB G.Skill Sniper + 2x1TB Spinpoint F3 Raid0 Win 7 Pro x64 ASUS VW266H Razer Blackwidow 
PowerCaseMouse
Seasonic X750 Gold Corsair Carbide 500R White G9 
  hide details  
New Posts  All Forums:Forum Nav:
  Return Home
  Back to Forum: Windows
This thread is locked