jwgkvsq.vmx "Threat: Win32:Confi [Wrm]"

Guys i just plugged in my Friend Removable drives / Flashdisk, and i Scan use Avast! ~
and detect This Worm Virus : jwgkvsq.vmx “Threat: Win32:Confi [Wrm]”

i immediately Delete the Virus not Move to Chest / Quarantine
and i open the Flashdisk and didnt see anything suspicious ~

That means i remove that Virus / Worm from that Flashdisk ?
but i still afraid and i dont know my Computer got infected or not by this Virus :frowning: :frowning: :frowning:

if can, can tell me what Characteristic of this Virus when infected to our PC ?
and here’s some Pic from the Removable Drives / Flashdisk ~

http://i63.tinypic.com/14mxt14.jpg

http://i65.tinypic.com/w7ybm0.jpg

Can i copy those files in that Removable Drives ? its safe ?
Thanks Guys

Follow these instructions > https://forum.avast.com/index.php?topic=53253.0

A very old worm you found there > https://en.wikipedia.org/wiki/Conficker

However still alive and kicking, on F-Secure top10/24hour world map it is still number 3 and 4 (two versions - Downadup) > http://worldmap3.f-secure.com

Yes an old Worms, but still afraid with this kind of Virus :cry:

Here’s the Logs all i scan ~

Can’t Attach anymore, so i Attach the Last one (MC Shield) at Reply Message ~
The Virus Come from Removable Drives "Drive G: (NITORYU)

MCShield AllScans.txt <<<


MCShield ::Anti-Malware Tool:: http://www.mcshield.net/

v 3.0.5.28 / DB: 2016.2.21.1 / Windows 7 <<<

7/5/2016 3:11:38 AM > Drive C: - scan started (no label ~49 GB, NTFS HDD )…

=> The drive is clean.

7/5/2016 3:11:38 AM > Drive D: - scan started (no label ~100 GB, NTFS HDD )…

=> The drive is clean.

7/5/2016 3:11:38 AM > Drive G: - scan started (NITORYU ~30424 MB, FAT32 flash drive )…

=> The drive is clean.

MCShield ::Anti-Malware Tool:: http://www.mcshield.net/

v 3.0.5.28 / DB: 2016.2.21.1 / Windows 7 <<<

7/5/2016 3:12:41 AM > Drive G: - scan started (NITORYU ~30424 MB, FAT32 flash drive )…

=> The drive is clean.

No leftover from virus but there are some points that need cleaning:

https://sites.google.com/site/cannedfixes/farbar-recovery-scan-tool/FRST.gif
Fix with Farbar Recovery Scan Tool

https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif
[b] This fix was created for this user for use on that particular machine.
https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif

https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif
Running it on another one may cause damage and render the system unstable.
https://sites.google.com/site/cannedfixes/home/hosted-images-formatting/icon_exclaim.gif
[/b]
Download attached fixlist.txt file and save it to the Desktop:

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!

- Right-click on 

https://sites.google.com/site/cannedfixes/farbar-recovery-scan-tool/FRST.gif
icon and select
https://sites.google.com/site/cannedfixes/home/hosted-images-tools/RunAsAdmin.jpg
Run as Administrator to start the tool.
(XP users click run after receipt of Windows Security Warning - Open File).
- Press the Fix button just once and wait.
- If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
- When finished FRST will generate a log on the Desktop, called Fixlog.txt.
Please attach it to your reply.

Also, how is the system now?

Here’s the Log after Fix ~

And how about other Files in that Removable Drives, after scan with MC Shield ? it’s safe its i copy those files ?

And how about other Files in that Removable Drives, after scan with MC Shield ? it's safe its i copy those files ?
MCShield does not scan the files on the drive, it only check root of the drive and it only look for those type of malware (mostly worms) that use removable drives to spread. So to scan the files on the drive right click it and scan with avast

How is your system running now? Did Avast find anything else on the USB drive?

i did Scan with Avast at the USB Drive and Find Nothing, and for make sure everything its ok, i Run “Full System Scan” and No Threat Found too…

just afraid idk avast can detect it or not, and i don’t know what the virus do if we got infected by that Virus ~

and i don't know what the virus do if we got infected by that Virus
That is explained in the wiki link in my first post

or see here > http://lmgtfy.com/?q=what+does+conficer+do

My Bad, my English not so good, so i not so understand at wiki explained, from what i know the Virus make the Autorun.inf files and if we delete the file will keep come back ?

so after those logs, how about my Notebook, there’s something wrong about it ?
Sorry i just panic after scanned and found there’s Virus when the USB Drives plugged in my Notebook ~

My Bad, my English not so good, so i not so understand at wiki explained
Maybe this help? http://lmgtfy.com/?q=apa+conficer+worm+lakukan

The wiki link is in 27 languages.
And if that isn’t enough there is http://translate.google.com

Ok Guys sorry my Bad :‘( :’( :cry:

How’s the Log say about my Notebook ? and there’s anything should i do again ?

i Run Full System Scan with Avast ! and do Scan the USB Drives with Avast too ~
No Threat Found ~

that means the files in the USB Drives its safe ?

@dbrisendine will tell you. He is in Canada so it may take some hours before he is back online

Ok Thanks, Sorry about what i post before @Pondus @Eddy

McShield does scan all files on a USB drive BUT it only looks for virus that is concerned with “transfer via removable media”. Since you have preformed a full scan with Avast on the USB drive’s files they should be good to go (clean).

Keep both Avast and McShield current and running so you will be safer in the future.


Since all seems to be fine, lets' remove our scanning tool and let you on your way.

Clean up of Malware Removal Tools
Now that we are through using these tools, let’s clean them off your system so that should you ever need to have malware removed again (we hope not) fresh, updated copies will be downloaded.

[]Download Delfix from here to your desktop and double click it to start the program
[*]Ensure Remove disinfection tools is ticked
Also tick:
[
]Activate UAC
[]Create registry backup
[
]Purge system restore
[*]Reset system settings

http://i1351.photobucket.com/albums/p785/dbreeze2/just%20stuff/DelFixSelectall_zps0f04cec4.png

[*]Click Run
[*]The program will run for a few moments and then notepad will open with a log. Note: Please save this log first before rebooting your system (if asked to); DelFix does not save the log as it is trying to remove all traces of our work on your system. Please attach the log in your next reply.

You can delete any log files left on your desktop as these are no longer needed.

Yes, its No Threat Found now with Avast! so there’s anything should i do for Scan the USB Drives again ? for make sure everything its ok ?

btw dbrisendine, “you mean by USB drive’s files they should be good to go (clean).”
That means i can copy the Files inside the USB Drive’s ?

Here’s the DelFix.txt Log after i use the DelFix ~

There’s an Error when Deleting ~
“Error when deleting (1) : HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMBR”

Here’s the Attachments

The error is because you have Avast installed and running (Avast AntiVirus, that is). Nothing to worry about.

That means i can copy the Files inside the USB Drive's ?
Yes, you can now copy files into and out of the USB drive.