Hello,
(sorry for my english, i’m french. I wish i’ll be understandable)
After several Avast scan, there is always the same virus appearing, even though I tried to deleted him or put it in quarantine area. This worm is called “SearchIndexer.exe & Win32:BitCoinMiner-DN [PUP]”
Note: You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.
[*]Double-click to run it. When the tool opens click Yes to disclaimer.
[*]Under Optional Scan ensure “List BCD” and “Driver MD5” are ticked.
[*]Press Scan button.
[*]It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
[*]The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
I clicked on “removed selected”, and after the reboot, the virus is in the quarantine zone. What should I do next ? Does it mean that the virus is realy deleted/fixed ?
Actually, I didn’t really feel troubles, lags or dysfunctions. I was upset because of the result of the Avast scan. And some Google searchs made me think that this virus was tough and dangerous. Is it ? Have you got an idea about the origin of this virus, where I could catch it ?
Do you think I should change my password ?
And finaly, last question, the fact that the virus is in the Malwarebyte quarantine is OK ? Or must I do something else ? WHat if I uninstall Malwarebytes : will the virus re-appear ?
Sorry about all that question, it is the first time I’m concerned by a virus like that. Usually, a simple Spybot+Avast scan is enough.
Have you got an idea about the origin of this virus, where I could catch it ?
I do not know
Do you think I should change my password ?
There is no need, this is not a keylogger.
And finaly, last question, the fact that the virus is in the Malwarebyte quarantine is OK ? Or must I do something else ? WHat if I uninstall Malwarebytes : will the virus re-appear ?
won’t.
Sorry about all that question, it is the first time I'm concerned by a virus like that. Usually, a simple Spybot+Avast scan is enough.
[*]Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
[*]It will close all programs when run, so make sure you have saved all your work before you begin.
[*]Click the Start button to begin the process. Depending on how often you clean temp
files, execution time should be anywhere from a few seconds to a minute
or two. Let it run uninterrupted to completion.
[*]Once it’s finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.
Next
Please download DelFix by “Xplode” to your Desktop.
Now click on “Run” button. Wait for the programme completes his work.
All the tools we used should be gone.
Tool will create and open an log report (DelFix.txt) Note: The report will also be stored on C:\DelFix.txt
I don’t need DelFix log report.
I recommended to use MCShield if you will.
You may download MCShield from one of the following links:
It will prevent infection by computer via USB flash drive, mobile phone or any other memory card.
And not only will prevent infection, but it will immediately clean flash drive, memory card or external HDD.
And I lauch 2 or 3 scan of Malwarebyte, each time directly after the scan-reboot, and it found each time a new version of the BitCoinMiner Virus, in different folder, but that’s it, now, when I scan, it doesn’t find threat anymore (because all threat are in quarantine? the fact that they are on quarantine is OK or the virus are still on my computer, but harmless ?)
Thank you for your help, again I put “solved” in the Title.