Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Virus infection ? #86

Closed
sbmkvirus opened this issue Feb 17, 2020 · 12 comments
Closed

Virus infection ? #86

sbmkvirus opened this issue Feb 17, 2020 · 12 comments
Labels

Comments

@sbmkvirus
Copy link

Hi everyone

Have a virus/malware i cant seem to find noted anywhere online.

Keyboard and mouse hijacked on start up.

caps lock goes on by itself
Mouse makes same circular movement every 5 seconds
messages typed into any text box thats on a focused window such as
"your computer has been hacked" "your history has been uploaded to facebook" among others

I can see three mouse and keyboards in device mananger - if i delete/disable two of each the system becomes stable and useable

collection log attached

thanks for any assistance

CollectionLog-2020.02.17-13.55.zip

@dragokas
Copy link
Owner

Hi,
thank you for the log.
We'll return to you as soon as possible.


Please, note that only members of VIRUSNET-Association are allowed to respond in PC cure topics.
Ignore any recommendations given by other users, including PM !!!

Assistance is provided free of charge at our free time. If you found our help useful, you can thank us with any amount using this form or you can leave a feedback in Guestbook.

@Sandor-Helper
Copy link

Hi,

Download AdwCleaner (by Malwarebytes) and save it to Desktop.
Run (it should be run by right-clicking as Administrator), press "Scan" and wait.
At the end of the scan log will be found at:
C:\AdwCleaner\Logs\AdwCleaner[Sxx].txt (where x is any digit).
Attach it to your next post here.

@sbmkvirus
Copy link
Author

Hi
Attached log from adwcleaner as requested
AdwCleaner[S00].txt

@Sandor-Helper
Copy link

Run again AdwCleaner (by Malwarebytes) (it should be run by right-clicking as Administrator).
Go to Settings and switch on:

Reset IE policies
Reset Chrome policies

Go to Dashboard, press Scan and after scan ends press Quarantine.
System should be restarted.
After restart log will be found at:
C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt (where x is any digit).
Attach it to your next post here.

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Right click to run as administrator. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce logs called FRST.txt and Addition.txt in the same directory the tool is run from.
  • Please attach the logs back here.

@sbmkvirus
Copy link
Author

Hi

logs as requested

thanks

FRST.txt
Addition.txt
AdwCleaner[S01].txt
AdwCleaner[C01].txt

@Sandor-Helper
Copy link

Do you still have described above problems?
If so, run system in Safe mode and check is the problem exist.

@sbmkvirus
Copy link
Author

yes

@Sandor-Helper
Copy link

Start your PC in safe mode in Windows 10 and check.
Tell us result.

@sbmkvirus
Copy link
Author

i try to start in safe mode... when i get to "trouble shoot" ... pc closes down ;/

@sbmkvirus
Copy link
Author

GOT IT INTO SAFE MODE ... NO CHANGE ... STILL THE SAME PROBLEM

@Sandor-Helper
Copy link

Is it PC or notebook?

@dragokas
Copy link
Owner

dragokas commented Mar 2, 2020

Closed.
Reason: no answer for 10 days.
If you still need our help, please, execute tha last steps, requested by helper.
Also, download again AutoLogger, prepare new CollectionLog and write what problems remained.

@dragokas dragokas closed this as completed Mar 2, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

3 participants