sufriadi
New Member

- Messages
- 12
- Location
- Lalabata, Sulawesi Selatan
Go here.. https://www.virustotal.com/
Upload the file MSASCui.exe > click reanalyze
Copy & paste the results into your next post.
like this.. https://www.virustotal.com/en/file/...4d691fefcba62915cd65f824/analysis/1391115557/
Your system is clearly infected with something.
Were you able to install and scan with Malwarebytes'?
Here is another tool that you could try... What is Windows Defender Offline?
To be able to upload the file to VirusTotal, you need to make a copy of it & upload that copy.
R click on the file in question, drag it to your desktop & release the button, you will see the option to copy it.
Before using Windows Defender Offline, run a scan with TDSSKiller to be sure you don't have a rootkit. WDO is a good program, but if there is a rootkit present, it may scramble your OS to the point that you won't be able to boot. This has happened to people in the past attempting to remove rootkits with WDO.
Be sure to make WDO on a clean PC, as making it on an infected one can compromise the integrity of the program.
TDSSKiller Download
Reinstall Malwarebytes (the free version), & if you are having problems running it, boot to safe mode & do a full system scan with it. If Malwarebytes finds anything, you need to be sure to check the boxes of anything it finds & quarantine them.
Malwarebytes : Malwarebytes Anti-Malware FREE
Malwarebytes : Free Anti-Malware << not solved
Please note : The scanner is saved under a random filename so that malware infections won't block the scanner.
WDO is a AV boot disk. You need to make it (preferably on a clean PC), insert it & then reboot your PC. It should initiate by itself & run.
Go to the link provided by ectech, it will give you directions on how to d/l & run it (Post #6)
Did you try to copy the file to your desktop & submit it to VirusTotal?
Malwarebytes : Free Anti-Malware << not solved
Did you mean by this statement that Malwarebytes did not find anything, or that it simply would not run or install?
Another option you have is to run SuperAntiSpyware portable. D/L it on a different PC onto a Flash Drive. Insert the flash drive into the infected PC & click on the program to run it.
Please note : The scanner is saved under a random filename so that malware infections won't block the scanner.
SUPERAntiSpyware - SUPERAntiSpyware Portable Scanner
WDO is a AV boot disk. You need to make it (preferably on a clean PC), insert it & then reboot your PC. It should initiate by itself & run.
Go to the link provided by ectech, it will give you directions on how to d/l & run it (Post #6)
Did you try to copy the file to your desktop & submit it to VirusTotal?
Malwarebytes : Free Anti-Malware << not solved
Did you mean by this statement that Malwarebytes did not find anything, or that it simply would not run or install?
Another option you have is to run SuperAntiSpyware portable. D/L it on a different PC onto a Flash Drive. Insert the flash drive into the infected PC & click on the program to run it.
Please note : The scanner is saved under a random filename so that malware infections won't block the scanner.
SUPERAntiSpyware - SUPERAntiSpyware Portable Scanner
You need to provide us with more details about whats happening.
Did WDO find anything?
Have you tried what Borg suggested?
Virus:Win32/Virut.BM is a polymorphic file infector that targets .EXE and .SCR files. This virus also opens a backdoor by connecting to an IRC server, allowing a remote attacker to download and execute arbitrary files on the infected computer.
Note: The method of infection used by Win32/Virut can damage some infected files beyond repair. In these cases, in order to return a machine to its pre-infected state, it may be necessary to install a clean backup of the operating system and associated applications.
virus:win32/virut.bm is a polymorphic file infector that targets .exe and .scr files. This virus also opens a backdoor by connecting to an irc server, allowing a remote attacker to download and execute arbitrary files on the infected computer.
virus:win32/virut.bm
note: The method of infection used by win32/virut can damage some infected files beyond repair. In these cases, in order to return a machine to its pre-infected state, it may be necessary to install a clean backup of the operating system and associated applications.