- Feb 13, 2015
- 9
I have ran all 7 tools in the help section of the forums. I was able to remove some and others found not threats. I ran the ESET scan and found the following threats.
I think i have to be doing something wrong. I think we got the malware by downloading a free video converter software. I just want to make sure the PC is clean.
Here is the log from ESET
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll a variant of Win32/Systweak.N potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe a variant of Win32/Systweak potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0000.dta Win32/Olmarik.AYI trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0001.dta Win64/Olmarik.AM trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0002.dta Win32/Olmarik.AWO trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0003.dta Win64/Olmarik.AN trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0007.dta Win32/Olmarik.AFK trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0008.dta Win64/Olmarik.AK trojan cleaned by deleting - quarantined
C:\Users\Owner\Downloads\gimp-setup.exe Win32/DownloadAdmin.G potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\IObit-Malware-Fighter-Setup.exe Win32/MyPCBackup.C potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\winzip19-dl (1).exe a variant of Win32/InstallCore.TS potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\winzip19-dl.exe a variant of Win32/InstallCore.TS potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\ButtonUtil.dll a variant of Win32/Toolbar.CrossRider.G potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion Plugin-bg.exe a variant of Win32/Toolbar.CrossRider.H potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion Plugin.exe a variant of Win32/Toolbar.CrossRider.H potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion PluginGui.exe a variant of Win32/Toolbar.CrossRider.F potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Uninstall.exe Win32/Packed.ScrambleWrapper.A potentially unwanted application deleted - quarantined
I think i have to be doing something wrong. I think we got the malware by downloading a free video converter software. I just want to make sure the PC is clean.
Here is the log from ESET
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSS.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSHelper.dll a variant of Win32/Systweak.N potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSPrivacyProtector.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegClean.exe a variant of Win32/Systweak potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSRegistryOptimizer.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\Program Files\WinZip\Utils\WzSysScan\WINZIPSSSystemCleaner.exe a variant of Win32/Systweak.L potentially unwanted application deleted - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0000.dta Win32/Olmarik.AYI trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0001.dta Win64/Olmarik.AM trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0002.dta Win32/Olmarik.AWO trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0003.dta Win64/Olmarik.AN trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0007.dta Win32/Olmarik.AFK trojan cleaned by deleting - quarantined
C:\TDSSKiller_Quarantine\13.02.2015_16.16.03\tdlfs0000\tsk0008.dta Win64/Olmarik.AK trojan cleaned by deleting - quarantined
C:\Users\Owner\Downloads\gimp-setup.exe Win32/DownloadAdmin.G potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\IObit-Malware-Fighter-Setup.exe Win32/MyPCBackup.C potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\winzip19-dl (1).exe a variant of Win32/InstallCore.TS potentially unwanted application deleted - quarantined
C:\Users\Owner\Downloads\winzip19-dl.exe a variant of Win32/InstallCore.TS potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\ButtonUtil.dll a variant of Win32/Toolbar.CrossRider.G potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion Plugin-bg.exe a variant of Win32/Toolbar.CrossRider.H potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion Plugin.exe a variant of Win32/Toolbar.CrossRider.H potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Coupon Companion PluginGui.exe a variant of Win32/Toolbar.CrossRider.F potentially unwanted application deleted - quarantined
C:\Windows.old\Program Files (x86)\Coupon Companion Plugin\Uninstall.exe Win32/Packed.ScrambleWrapper.A potentially unwanted application deleted - quarantined