Smart Stealer stopped working (Window 8.1)

Shuu

New Member
Messages
3
I was busy doing some PowerPoint slides when suddenly a window pop out saying Smart Stealer has stopped working and it keep on popping out even tho I clicked "Close program". At the same time, My McAfee anti-virus detected a virus called passwordfox.exe in my %temp% folder and the same problem happens, I can't seem to delete it even tho I clicked "Remove Virus".

Has someone attacked my computer trying to steal my password?
Any solution?
 

My Computer

System One

  • OS
    Window 8.1
Clean your temp files and folders using Disk Cleanup

Download and run Malwarebytes (Free)

Uninstall the Passwordfox program. If you must have it, download from NisSoft only.
 

My Computer

System One

  • OS
    windows 8.1 Update 1 Pro 64bit
    System Manufacturer/Model
    Pavillion H8-1202
    CPU
    I7-2600 @ 3.4 GHz
    Motherboard
    PEGATRON
    Memory
    8 GB
    Graphics Card(s)
    NIVDIA GeForce GT 520
    Sound Card
    Realtek ALC656GR CODEC
    Monitor(s) Displays
    Samsung SyncMaster S22B350
    Screen Resolution
    1920X1080 32 bit color
    Hard Drives
    Samsung 850 EVO SSD 500GB
    Keyboard
    Razer Blackwidow Ultimate 2013
    Mouse
    Logitech M510
According to the various AV names/reports, it is an assortment of dangerous Trojan infections ranging from stealing banking info to infecting the PC with ransomware.

https://www.virustotal.com/en/file/...cb6954513b88a5a610b6413bb81ae2990b0/analysis/

PasswordFox is a small password recovery tool that allows you to view the user names and passwords stored by Mozilla Firefox Web browser. By default, PasswordFox displays the passwords stored in your current profile, but you can easily select to watch the passwords of any other Firefox profile. For each password entry, the following information is displayed: Record Index, Web Site, User Name, Password, User Name Field, Password Field, and the Signons filename.

If you did not install PasswordFox then it was put on by another source.

Being that your personal information may have been compromised, it would be wise to change all your passwords on sites you frequent & if any online banking was done, contact your bank & inform them of this breach. In some instances listed on the report (depending on the variant), it's purpose is to steal personal data that is relevant to online banking and finance. This includes, but not limited to credit card numbers, income tax returns, online log-in credentials, and any other information that are useful for attackers illicit online activities.

In addition to Malwarebytes, run the following programs. The free version of Malwarebytes will work fine.

Run this before you run any malware scans if possible. Do NOT reboot after running RKill.

RKill Download

As RKill only terminates a program's running process, and does not delete any files, after running it you should not reboot your computer as any malware processes that are configured to start automatically will just be started again. Instead, after running RKill you should immediately scan your computer using some sort of anti-malware or anti-virus program so that the infections can be properly removed.

Next, run a scan for rootkits as some variants of this virus are capable of this.

TDSSKiller Download

Your other alternatives are to do a refresh or a reset, which may be the best option if your PC is badly compromised.

http://www.eightforums.com/tutorials/2293-refresh-windows-8-a.html

http://www.eightforums.com/tutorials/2302-reset-windows-8-a.html
 

My Computer

System One

  • OS
    Win 7 32, Win 7 64 Pro, Win 8.1 Pro
    Computer type
    PC/Desktop
    System Manufacturer/Model
    It's a Dell, Dude.
    CPU
    Intel Caffinated Core Duo
    Motherboard
    Father is bored too.
    Memory
    4 GB
    Graphics Card(s)
    NVidia something-or-another
    Monitor(s) Displays
    24" HD TV/Monitor/Alternative Dimensional Viewing Portal
    Screen Resolution
    Fuzzy after a couple drinks
    Hard Drives
    2 or 3, depending on if it's a night they're arguing about having a "split personality crisis" because I partitioned the drive.
    Case
    Don't get on my case....man
    Cooling
    Scotch on the rocks on the weekends..
    Keyboard
    Mad Catz Cyborg V7. Or maybe Cyborg Catz Are Mad At V7's??? I know it lights up...far out.
    Mouse
    currently being stalked by the cat...
    Internet Speed
    Never fast enough...
    Browser
    Defeated by Mario...wait...OH...BRowser...
    Antivirus
    Various
Thanks for ur reply, I follow your steps in running RKills before scanning for rootkits or virus using Malwarebytes, TDSSKiller and my McAfee Internet Security. Malwarebytes did found a few viruses and I manage to quarantine them and delete them afterwards. TDSSKiller and McAfee Internet Security didn't found any virus after a Full scan so I think that my computer is back to normal, since I didn't met any issues(till now) after a few runs of using my computer doing work and playing games.

Thank you.
 

My Computer

System One

  • OS
    Window 8.1
Glad it looks good. In addition, it might be a good idea to d/l the following tool & run it just to be sure nothing else is hiding in your system.

AdwCleaner Download

AdwCleaner is a program that searches for and deletes Adware, Toolbars, Potentially Unwanted Programs (PUP), and browser Hijackers from your computer. By using AdwCleaner you can easily remove many of these types of programs for a better user experience on your computer and while browsing the web.
 

My Computer

System One

  • OS
    Win 7 32, Win 7 64 Pro, Win 8.1 Pro
    Computer type
    PC/Desktop
    System Manufacturer/Model
    It's a Dell, Dude.
    CPU
    Intel Caffinated Core Duo
    Motherboard
    Father is bored too.
    Memory
    4 GB
    Graphics Card(s)
    NVidia something-or-another
    Monitor(s) Displays
    24" HD TV/Monitor/Alternative Dimensional Viewing Portal
    Screen Resolution
    Fuzzy after a couple drinks
    Hard Drives
    2 or 3, depending on if it's a night they're arguing about having a "split personality crisis" because I partitioned the drive.
    Case
    Don't get on my case....man
    Cooling
    Scotch on the rocks on the weekends..
    Keyboard
    Mad Catz Cyborg V7. Or maybe Cyborg Catz Are Mad At V7's??? I know it lights up...far out.
    Mouse
    currently being stalked by the cat...
    Internet Speed
    Never fast enough...
    Browser
    Defeated by Mario...wait...OH...BRowser...
    Antivirus
    Various
Back
Top