Forum Home
Press F1
 
Thread ID: 134864 2013-08-24 08:22:00 tsiVideo Driftwood (5551) Press F1
Post ID Timestamp Content User
1351961 2013-08-24 08:22:00 Any one know what this is & why it would be in the startup list. Driftwood (5551)
1351962 2013-08-24 08:25:00 Dont think it should be in startup. Looks like it may belong to a bitcoin mining / miner trojan. Delete it. Use ccleaner and delete the temp files too. Is skype installed?? Looks like you can get it through this (www.wired.co.uk)

If it is installed, try this (www.symantec.com)
Speedy Gonzales (78)
1351963 2013-08-24 09:19:00 Deleted all.

No Skype.

Wonder where it came from.
Driftwood (5551)
1351964 2013-08-24 10:44:00 Looks like there maybe a few ways of getting this trojan

1. Pirated software / cracks

2. Java (if it's out of date)

3. Skype / spam

4. Zeroaccess trojan / rootkit

5. Video / maybe infected codecs

6. Facebook / twitter / pics are infected. You click on them it installs bitcoin
Speedy Gonzales (78)
1351965 2013-08-24 11:06:00 Just ran Mbam

Found Bitcoin Miner & MSIL.Injector
Driftwood (5551)
1351966 2013-08-24 11:18:00 Looks like that msil.injector is a trojan and may steal information. I would check the firewall in/outgoing rules. See if there are any strange entries there, that may belong to one of those. If there is delete them Speedy Gonzales (78)
1351967 2013-08-24 23:15:00 Had a look & didn't see anything too dodgy looking.
Not all that familiar with firewall settings.
Would that type of thing be under "Windows Peer to Peer" or what?
Driftwood (5551)
1351968 2013-08-24 23:24:00 Might be an entry thats got a strange name. Dont think it'll be under anything like peer to peer. Since it may steal information. If you do online baking or something on this, check that the passwords etc havent changed Speedy Gonzales (78)
1351969 2013-08-24 23:43:00 Nothing at all that is non system looking.
Might have got rid of all the nasties.
Would you recommend another anti spyware program to run, just to make sure.
Driftwood (5551)
1351970 2013-08-24 23:45:00 Having said that, there is no reference to MSSE or Mbam either.
What does that come under.
Driftwood (5551)
1 2