Folders changing into .scr & more problems

Enkridonux

New member
Local time
4:28 PM
Messages
7
I'll try to explain as much as possible. I've used Microsoft Safety Scanner as some sites suggested. It detects 4 viruses in my computer. 2 of them are completely removed. Except 2, which is
TrojanSpy.WIn32 Banker (Partially removed)
and another one, I forgot what its name, but it shows partially removed, manual removal required.
I clicked the thingy and hopefully get the solution to manually remove, but it ended up showing me that the way to remove is using Microsoft Safety Scanner. Any ways to fix these both things?
EDIT: Nope, I don't want tweakbit (that software I saw on this site)
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
Do you have an anti virus program installed?
 

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
Get Malwarebytes Anti-Malware free and set it to scan rootkits too (Settings - Detection). Scan with it and let us know how it goes.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 Ultimate x64 SP1
CPU
AMD Phenom 2 1090T
Motherboard
Gigabyte GA-890FXA-UD5
Memory
2x8GB Kingston HyperX Fury Black 1600Mhz Unganged
Graphics Card(s)
MSI GTX 970 Gaming 4G
Sound Card
Realtek On-Board HD 7.1 Audio / Logitech G35
Monitor(s) Displays
3xAcer GD245HQ
Screen Resolution
1920x1080
Hard Drives
Samsung 850 Pro 512GB SSD - OS /
WD Caviar Black SATA 3 - 1 TBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GB - Internal Backup /
Seagate Barracude SATA 3 - 3TB - External Backup/ Sync
PSU
HighPower 1000W
Case
Cooler Master HAF 932
Cooling
Noctua NH-D14
Keyboard
Logitech G19
Mouse
Logitech G500
Internet Speed
100/4 Mbit Cable (100GB quota)
Antivirus
ZoneAlarm Extreme Security / MBAM Pro / MBAE Free / SAS Free
Browser
IE 11 - Firefox - Chrome
Other Info
Logitech F710/ G27/ G940/ Z5500 // TrackIR 5 // Nvidia 3D Surround Vision
Do you have an anti virus program installed?

Unfortunately, No.

Get Malwarebytes Anti-Malware free and set it to scan rootkits too (Settings - Detection). Scan with it and let us know how it goes.

Alright. Let me leave it there and I'll let you know the result later.
EDIT: The whole thing is f**ked up after the reboot for the Malwarebytes thing. My Local Disk C is now infected, too. My stuffs inside the Local Disk C goes into a folder called "Avenger" and they all changed into .scr too. And the problem is not resolved.
 
Last edited:

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
But have you run Malwarebytes?
 

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
But have you run Malwarebytes?

Yes. And I did some search and the Avenger folder is actually an Anti-Malware thing. So I guess it's fine. And I discovered the hack actually hides all the actual folder and create a .scr thing and get us confused. Can I delete the .scr file instead of downloading more stuffs? Since I already revealed the hidden files.
The Malwarebytes didn't actually delete those .scr files though.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
I'm no expert on security but it looks to me as if you are infected with the scr Trojan. The fact that you have not had an A/V installed is a worry. Do you use a Torrent for downloading as this is one of the many ways you can get infected even if you have an A/V installed? If yes then I think you would be well advised to wait for one of the security experts here to look at this for you!
 

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
I'm no expert on security but it looks to me as if you are infected with the scr Trojan. The fact that you have not had an A/V installed is a worry. Do you use a Torrent for downloading as this is one of the many ways you can get infected even if you have an A/V installed? If yes then I think you would be well advised to wait for one of the security experts here to look at this for you!

Yes it's a trojan. So I can't actually do anything unless some experts notice this thread? And yeah I use torrent a lot. I usually find those with a lot seeders/rating to download but I guess it's still causing problems.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
Didn't MBAM find the Trojans? I will ask this thread to be moved to security section, where it will get noticed.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 Ultimate x64 SP1
CPU
AMD Phenom 2 1090T
Motherboard
Gigabyte GA-890FXA-UD5
Memory
2x8GB Kingston HyperX Fury Black 1600Mhz Unganged
Graphics Card(s)
MSI GTX 970 Gaming 4G
Sound Card
Realtek On-Board HD 7.1 Audio / Logitech G35
Monitor(s) Displays
3xAcer GD245HQ
Screen Resolution
1920x1080
Hard Drives
Samsung 850 Pro 512GB SSD - OS /
WD Caviar Black SATA 3 - 1 TBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GB - Internal Backup /
Seagate Barracude SATA 3 - 3TB - External Backup/ Sync
PSU
HighPower 1000W
Case
Cooler Master HAF 932
Cooling
Noctua NH-D14
Keyboard
Logitech G19
Mouse
Logitech G500
Internet Speed
100/4 Mbit Cable (100GB quota)
Antivirus
ZoneAlarm Extreme Security / MBAM Pro / MBAE Free / SAS Free
Browser
IE 11 - Firefox - Chrome
Other Info
Logitech F710/ G27/ G940/ Z5500 // TrackIR 5 // Nvidia 3D Surround Vision
Didn't MBAM find the Trojans? I will ask this thread to be moved to security section, where it will get noticed.

It did find them, but the .scr files are still there even after MBAM prompted me to reboot after the removal process is completed (Yes I rebooted).
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
Alright, since I don't have any experience in this, I will wait for our experts to guide you further.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom Build
OS
Windows 7 Ultimate x64 SP1
CPU
AMD Phenom 2 1090T
Motherboard
Gigabyte GA-890FXA-UD5
Memory
2x8GB Kingston HyperX Fury Black 1600Mhz Unganged
Graphics Card(s)
MSI GTX 970 Gaming 4G
Sound Card
Realtek On-Board HD 7.1 Audio / Logitech G35
Monitor(s) Displays
3xAcer GD245HQ
Screen Resolution
1920x1080
Hard Drives
Samsung 850 Pro 512GB SSD - OS /
WD Caviar Black SATA 3 - 1 TBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GBx2 - Dynamic RAID 0 /
WD Caviar Green SATA 2 - 640GB - Internal Backup /
Seagate Barracude SATA 3 - 3TB - External Backup/ Sync
PSU
HighPower 1000W
Case
Cooler Master HAF 932
Cooling
Noctua NH-D14
Keyboard
Logitech G19
Mouse
Logitech G500
Internet Speed
100/4 Mbit Cable (100GB quota)
Antivirus
ZoneAlarm Extreme Security / MBAM Pro / MBAE Free / SAS Free
Browser
IE 11 - Firefox - Chrome
Other Info
Logitech F710/ G27/ G940/ Z5500 // TrackIR 5 // Nvidia 3D Surround Vision
I agree the best bet is to wait for one of our security experts but I think it will be along job to clean this machine. From my limited research on the subject it would appear that the problem is very deeply embedded in the system!
 

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
I agree the best bet is to wait for one of our security experts but I think it will be along job to clean this machine. From my limited research on the subject it would appear that the problem is very deeply embedded in the system!

Oh god that sounds bad. But unfortunately I don't have the original Windows7 disk to format it. Can you guys help me to tag some experts here? Or can I just simply delete the .scr files?
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
Don't get worried about a clean install yet, it may not come to that. If it does then it is no problem to download the latest ISO for your version of Windows. The main thing is, have you got a sticker on the laptop giving the version of windows and the key number? (Don't quote the key number here!)
 

My Computer

Computer type
PC/Desktop
OS
Microsoft Windows 7 Home Premium 64-bit 7601 Multiprocessor Free Service Pack 1
CPU
Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz
Motherboard
ASUSTeK COMPUTER INC. P8H77-M
Memory
8.00 GB
Graphics Card(s)
Intel(R) HD Graphics 4000
Sound Card
On Board
Monitor(s) Displays
Dell 24"
Screen Resolution
1920 x 1080
Hard Drives
(1) INTEL SSDSC2CT180A3 ATA Device (2) ST500DM002-1BD142 ATA Device (3) WDC WD3200AAKS-75L9A0 ATA Device (4) Generic- Compact Flash USB Device (5) Generic- MS/MS-Pro USB Device (6) Generic- SD/MMC USB Device (7) Generic- SM/xD-Picture USB
PSU
500w Corsair
Case
Cooler Master
Cooling
3 Fans
Keyboard
Logitech MK300
Mouse
Logitech WOM
Internet Speed
75Mb
Antivirus
Norton 360
Browser
Firefox, Opera, IE
Don't get worried about a clean install yet, it may not come to that. If it does then it is no problem to download the latest ISO for your version of Windows. The main thing is, have you got a sticker on the laptop giving the version of windows and the key number? (Don't quote the key number here!)

Yeah, but a letter or two are fading and I can't really see it.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Acer Aspire 4736G
OS
Windows 7 Home Premium x86
CPU
Pentium Dual Core T4400 2.2GHz
Memory
2GB
Graphics Card(s)
Intel 45 Express Chipset Family
Back
Top