Spybot picked up Malware in System32

Page 1 of 2 12 LastLast

  1. Posts : 19
    Win 10
       #1

    Spybot picked up Malware in System32


    Spybot picked up Malware in System32-2016_06_22_17_14_571.png
    This si what was picked-up from spybot. I'm hesitant to fix the selected items since is in system32.
    Should i go ahead with the clean up?
      My Computer


  2. Posts : 824
    Win10/64 Pro 1511 (and 2 Win 7/64 Ult & Pro systems)
       #2

    Hi:

    Is this the same computer?
    Solved Strange Registry Key- Possible spyware - Windows 10 Forums

    If so, it's probably advisable to stick with support in one thread in one place at a time.
    Malware removal can be tricky, picky and sticky.
    And it can be -- at best -- confusing or -- at worst -- dangerous to work simultaneously in multiple places.
    A step advised by one helper may be unknown to another helper and that can lead to problems.
    So, it might be a good idea to resume that existing thread.
    And no two computer disinfection tools/scanners will pick up the same, exact things.

    Having said all, that Spybot S&D is not one of the more highly-regarded anti-malware scanners these days.
    And, without a scan log or more data, it would be hard to say if this detection might or might not be a false positive.

    Just my thoughts,
    MM
      My Computer


  3. Posts : 16,325
    W10Prox64
       #3

    jman1505 said:
    Spybot picked up Malware in System32-2016_06_22_17_14_571.png
    This si what was picked-up from spybot. I'm hesitant to fix the selected items since is in system32.
    Should i go ahead with the clean up?
    MoxieMomma said:
    Hi:

    Is this the same computer?
    Solved Strange Registry Key- Possible spyware - Windows 10 Forums

    If so, it's probably advisable to stick with support in one thread in one place at a time.
    Malware removal can be tricky, picky and sticky.
    And it can be -- at best -- confusing or -- at worst -- dangerous to work simultaneously in multiple places.
    A step advised by one helper may be unknown to another helper and that can lead to problems.
    So, it might be a good idea to resume that existing thread.
    And no two computer disinfection tools/scanners will pick up the same, exact things.

    Having said all, that Spybot S&D is not one of the more highly-regarded anti-malware scanners these days.
    And, without a scan log or more data, it would be hard to say if this detection might or might not be a false positive.

    Just my thoughts,
    MM
    You've already done a full scan with Malwarebytes, TDSSKiller, ADWCleaner and Avast - nothing found. Did you do the ESET Online Scanner as well? (you never mentioned that.) I see ESET found 1 thing, which you deleted.

    I agree with MM - Spybot should be uninstalled. If you want something, use SuperAntiSpyware Free.
      My Computer


  4. Posts : 3,502
    Win_8.1-Pro, Win_10.1607-Pro, Mint_17.3
       #4

    jman1505 said:
    Spybot picked up Malware in System32-2016_06_22_17_14_571.png
    This si what was picked-up from spybot. I'm hesitant to fix the selected items since is in system32.
    Should i go ahead with the clean up?
    Google search winemt.dat turns up a lot of results for Mountain and wine, but I didn't see winemt.dat

    Visit VirusTotal - Free Online Virus, Malware and URL Scanner, upload the file and have them check it.

    If it is a virus, yes remove it
    Then launch Command Prompt (Admin)
    enter the following commnad

    SFC /ScanNow

    that makes sure that system files from the component store are in the right place. It will put the correct file back if it is needed.
      My Computer


  5. Posts : 19
    Win 10
    Thread Starter
       #5

    MoxieMomma said:
    Hi:

    Is this the same computer?
    Solved Strange Registry Key- Possible spyware - Windows 10 Forums

    If so, it's probably advisable to stick with support in one thread in one place at a time.
    Malware removal can be tricky, picky and sticky.
    And it can be -- at best -- confusing or -- at worst -- dangerous to work simultaneously in multiple places.
    A step advised by one helper may be unknown to another helper and that can lead to problems.
    So, it might be a good idea to resume that existing thread.
    And no two computer disinfection tools/scanners will pick up the same, exact things.

    Having said all, that Spybot S&D is not one of the more highly-regarded anti-malware scanners these days.
    And, without a scan log or more data, it would be hard to say if this detection might or might not be a false positive.

    Just my thoughts,
    MM
    Sorry about that, i'm used to using new threads for new issues so that it helps others when searching for similar problems
    Last edited by jman1505; 22 Jun 2016 at 15:58. Reason: Grammer
      My Computer


  6. Posts : 19
    Win 10
    Thread Starter
       #6

    simrick said:
    You've already done a full scan with Malwarebytes, TDSSKiller, ADWCleaner and Avast - nothing found. Did you do the ESET Online Scanner as well? (you never mentioned that.) I see ESET found 1 thing, which you deleted.
    simrick said:
    I agree with MM - Spybot should be uninstalled. If you want something, use SuperAntiSpyware Free.

    Slartybart said:
    Google search winemt.dat turns up a lot of results for Mountain and wine, but I didn't see winemt.dat

    Visit VirusTotal - Free Online Virus, Malware and URL Scanner, upload the file and have them check it.

    If it is a virus, yes remove it
    Then launch Command Prompt (Admin)
    enter the following commnad

    SFC /ScanNow

    that makes sure that system files from the component store are in the right place. It will put the correct file back if it is needed.
    VirusTotal found nothing suspicious
    Spybot picked up Malware in System32-2016_06_22_20_51_571.png
    Here's a picture of the file (The file is in a different place than what Spybot reported. Additionally, I had to "Show hidden files" in order to find this)

    Spybot picked up Malware in System32-2016_06_22_20_47_391.png
    I've scanned it with Avast and Malwarebytes and they found nothing either
    (If it helps, I don't use Norton. I have a hunch that the Norton symbol is there because of the Norton free trial that was pre-installed in my computer when i got it a few years back)

    SuperAntiSpyware only found tracking cookies
    Spybot picked up Malware in System32-2016_06_22_20_54_221.png
    Last edited by jman1505; 22 Jun 2016 at 16:10. Reason: SuperAntiSpyware Pics
      My Computer


  7. Posts : 16,325
    W10Prox64
       #7

    jman1505 said:


    VirusTotal found nothing suspicious
    Spybot picked up Malware in System32-2016_06_22_20_51_571.png
    Here's a picture of the file (The file is in a different place than what Spybot reported. Additionally, I had to "Show hidden files" in order to find this)

    Spybot picked up Malware in System32-2016_06_22_20_47_391.png
    I've scanned it with Avast and Malwarebytes and they found nothing either
    (If it helps, I don't use Norton. I have a hunch that the Norton symbol is there because of the Norton free trial that was pre-installed in my computer when i got it a few years back)

    SuperAntiSpyware only found tracking cookies
    Spybot picked up Malware in System32-2016_06_22_20_54_221.png
    Just looking at that screenshot of the file - in a different position than what Spybot says? That's odd. But, the fact that it has a Norton icon would lead me to believe it's possibly a leftover from Norton? It's all of 1 byte.
      My Computer


  8. Posts : 19
    Win 10
    Thread Starter
       #8

    simrick said:
    Just looking at that screenshot of the file - in a different position than what Spybot says? That's odd. But, the fact that it has a Norton icon would lead me to believe it's possibly a leftover from Norton? It's all of 1 byte.
    Yhea, i dunno what to do. I know that, they type of malware spybot picked up is very nasty, but none of the other programs picked it up, nor can i manually find it either.
    I'm at a loss of what to do
      My Computer


  9. Posts : 16,325
    W10Prox64
       #9

    jman1505 said:
    Yhea, i dunno what to do. I know that, they type of malware spybot picked up is very nasty, but none of the other programs picked it up, nor can i manually find it either.
    I'm at a loss of what to do
    Add the extension .old to it - renaming a file's extension makes it unusable. I doubt you'll find any issues. I think it's a leftover from Norton to be honest, and a FP from Spybot.
      My Computer


  10. Posts : 19
    Win 10
    Thread Starter
       #10

    simrick said:
    Add the extension .old to it - renaming a file's extension makes it unusable. I doubt you'll find any issues. I think it's a leftover from Norton to be honest, and a FP from Spybot.
    k thanks for the help
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 02:29.
Find Us




Windows 10 Forums