Infected Temp Files - keeps getting detected

goodlad

New member
Member
VIP
Local time
5:24 PM
Messages
239
Hi friends,


I have noted that .. in the past 4-5 days.. I have had at least 2 days, when I keep getting infected with the same file & my AV detecting & deleting it.



The troubling issue for me, I have not visited any non-regular sites, at least on the very first time - when I got it. Last time it happened 3 times in a span of just 1 hour, same directory - different temp files. Today twice in one hour - with hr long gap.



Location of the infection is -



C:\Users\goodlad\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\MG0CERDKPR9CI2Q4J5WF.temp






This is the name of the infected malware/virus or what ever it is - "Gen:Heur.Jatommy.03153.aaW@baaaa"


Last time I ran complete system scan as well just to be sure & there was no infection found - today again the same repeated.


Any other tips that I could check out ?


I have ran Malwarebytes, AV scan - today ran scan for the Windows folder alone, had no new infections.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
DELL
OS
windows 7 ultimate x32
CPU
T6670,
Motherboard
INTEL CORE 2 DUO, 0TFXK9
Memory
8GB DDR3
Screen Resolution
1366*768
Hard Drives
512GB SSD
Mouse
Logitech M165 w/sidebuttons
Internet Speed
30-150 mb/s
Antivirus
Bitdefender
Browser
FF, Opera GX
Which anti-virus are you using? When you get the message, can you look at the details to see if it's a PUP or something else and quarantine it?
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Dell M6500 Precision Work Station
OS
Windows 7 Pro SP1 64 bit
Memory
8 GB
Screen Resolution
1920x
Internet Speed
30 Mbps
Antivirus
Norton Security
Browser
IE 11
Which anti-virus are you using? When you get the message, can you look at the details to see if it's a PUP or something else and quarantine it?


BitDefender premium version.

My AV is detecting the infected file on its own & deleting them automatically as well - I'm getting notified every time this happens. I'm now cautious to even open my work FTP account, fearing - I may infect the server accidentally.







I have also downloaded AdWCleaner & ran scan yesterday - it found 121 unwanted pups & etc.. cleared them all.



I haven't got a new virus detection popup msg since I shared the concern on the forum (got them only once after I made my post on the same day, since then nothing)
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
DELL
OS
windows 7 ultimate x32
CPU
T6670,
Motherboard
INTEL CORE 2 DUO, 0TFXK9
Memory
8GB DDR3
Screen Resolution
1366*768
Hard Drives
512GB SSD
Mouse
Logitech M165 w/sidebuttons
Internet Speed
30-150 mb/s
Antivirus
Bitdefender
Browser
FF, Opera GX
Hi Goodlad,

I HIGHLY suggest you goto BleepingComputers malware removal sub forum and post there. we currently do not have malware EXPERTS here

They will require the details from there Farbar tool, FRST.
note some AV's detect it as suspicious it is not

Download Farbar Recovery Scan Tool

Roy
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
medionl/Aspire 6930G/acer x55a
OS
W7 home premium 32bit/W7HP 64bit/w10 tp insider ring
CPU
E5300 dual core
Motherboard
medion MS7366
Memory
3gb
Graphics Card(s)
Nvidia Geforce 7100 Nforce 630i
Monitor(s) Displays
avixc
Internet Speed
n (isp resticted to 72)
Antivirus
mse/pands
Browser
palemoon
Other Info
Belkin Fd7050 n USB using Railink RT2870 drivers, more upto date
It seems like either you actually have a virus running and it keeps spawning itself over and over despite AV blocking or a malicious program in trying to install using means. It could be that you're downloading something you shouldn't or a program you already have is trying to install a malware.

What exact software do you have currently installed?

If nothing suspicious is there, I'm affraid you'll have to reformat the system, as it has been compromised.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Toshiba Sattelite A665-S6092
OS
Windows 7 Ultimate x64
CPU
Intel Core i7-740QM
Memory
8 GB DDR3
Graphics Card(s)
NVIDIA GeForce 330GT
Screen Resolution
1366x768
Hard Drives
Samsung 840 SSD 500GB
1TB USB3 external HD
Cooling
Coolermaster Notepal U3 notebook cooling pad
Internet Speed
3mbps ASDL
Antivirus
ClamWin 0.98.7
Browser
Opera 12.17 x86 (main), Firefox 38 (sec), IE11 (last resort)
Although his problem seems to have gone away, it seems to me that he should, if possible, temporarily set BitDefender to not automatically delete what it finds, just so he can see exactly what it is.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
Dell M6500 Precision Work Station
OS
Windows 7 Pro SP1 64 bit
Memory
8 GB
Screen Resolution
1920x
Internet Speed
30 Mbps
Antivirus
Norton Security
Browser
IE 11
Back
Top