Some infections (Avast InternetSecurity)

Hi there i am new…

recently I visisted some dark and extreme fetish sites on the interwebs - w/e I visited some porn sites. I usually use “sandbox” mode from Avast to do so, even so I don’t think it helps in anyways. I thought it might not be able to download any files doing that while I browse the webs or those downloaded files are in a restricted environnement like a virtual box. Anyways didn’t help much as I expected and now I am infected :)!

So lets do something about this, thank you!

What I did - I own avast Internet Security and when I scanned it detected - don’t go crazy now - 34 infected files. I tried deleting them and doing that reboot thing and scan up on reboot but I think it didnt managed to kill them. The popped up in the scans again.

I just HiJackThis and inserted the log into online scan page and it was “all ok” as far is I flew over it.

then I downloaded some things mentioned here - (http://forum.avast.com/index.php?topic=53253.0)

and currently have the OTL file in my possession, I’ll attach it here. and I alrdy did that " Malwarebytes’ Anti-Malware" and deleted some of the files I found at that check - I hope.

I hope u guys can help me, dont wanna format.

greetings
Panthera

I just read i have to clear my safezone (reset) to kill those nasty 34 infected dudes, so Ill try that next.

attach malwarebytes log…
and a screenshot of the avast detection…

Yes. First of all thanks for the fast reply. Here are the avast screenshots! All infected are sandbox ones. Ill try to reboot and scan again afterwards too!

Greetings
Panth3ra

Edit: Malwarebytes log after a quick scan no files found - i’ll do full scan first then restart for avast then scan again.

no need to do full scan now…it takes a loooong time
quick scan covers all are activly running malware use

wait for removal expert to arrive with instructions…
you may reset avadt sandbox/safezone

like i said i reseted it if you say full scan isnt neccessary Ill reboot now and scan again afterwards - if avast problem are fixed there are still some suspicious host file etc problems from the OTL log file!

Thx in advance, Ill be back 30m~1h (approx).

greeting
Panth3ra

EDIT: Just as I stated I will abort full scan it finished (i think SSD is worth its money).

  • no Corrupt files found here. BRB

No malware … Just reset Sandbox

Yep, I reseted the safezone earlier - but I still cannot delete the infected files as it seems.

Also the logfile from OTL hast some suspicious items at the “hostfile” section

:slight_smile:

Anything can be done about both of these circumstences?

Greeting
Panthera

The Host file is populated by the spybot immunisation feature and all the sites are set to loopback i.e. go nowhere

Intriguing as the sandbox should have been emptied… However, they can do no harm there as they are isolated

thats wonderfull, actually, isn’t it : ) I love to hear that! So sandbox + firefox is safe, huh?

And onlinebanking via safezone is recommended?

Anyways, yea it seems reseting the safezone/sandbox doesnt get rid of those infected items, sadly, even so they cannot harm, its an eyesore xD!

But thx for you help guys!

Panthera