Hey, I just got a malware attack after trying to download daemon tools(it was a fake and installed a bunch of maleware on my machine)
Here are the steps I have taken:
Scanned with Malware Bytes(Was on during the attack)
**edit** After scanning with Malware Bytes I rolled back to a restore point, (restored back to a couple days before the attack) before i knew this was a bad idea due to potentially infected restore points **edit**
Scanned with tdsskiller
Scanned with Esetsmart scan
Scanned with WebRoot Protection
Scanned with Windows MSRT
Scanned with Unhackme
Scanned with HitmanPro
(Yes i overkilled the scanning )
After all the scans would come up clean after being ran 2x each i used sfc /scannow to repair my files(ran it 3 times with restarts in between)
Then I ran DSIM /Online /Cleanup-Image /RestoreHealth, restarted my computer and ran sfc /scannow once more(still had corruptions)
After this I ran diskcheck to make sure my C:/ drive was not broken and thankfully it was all good.
Even though most of the corruptions had been fixed, I still had some issues, so i ran SFCFix.exe and since I don't have access to an original windows 8.1 installation dvd it gave me a log file I could post and hopefully some of you kind people could help me :)
Below is the log file. Also if you have any tips to make sure all the malware is removed and my computer is clean once again, i would really appreciate and love to hear them <3 Thank you all in advance!
SFCFix version 3.0.0.0 by niemiro.
Start time: 2016-03-26 16:43:04.540
Microsoft Windows 8.1 Update 3 - amd64
Not using a script file.
AutoAnalysis::
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-tabletpc-journal_31bf3856ad364e35_6.3.9600.17793_none_086408f678984d30\Windows Journal.lnk
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.3.9600.17842_none_90da81a4dac50d54\utc.app.json
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.3.9600.17842_none_90da81a4dac50d54\telemetry.ASM-WindowsDefault.json
SUMMARY: Some corruptions could not be fixed automatically. Seek advice from helper or sysnative.com.
CBS & SFC total detected corruption count: 3
CBS & SFC total unimportant corruption count: 0
CBS & SFC total fixed corruption count: 0
SURT total detected corruption count: 0
SURT total unimportant corruption count: 0
SURT total fixed corruption count: 0
AutoAnalysis:: directive completed successfully.
Successfully processed all directives.
SFCFix version 3.0.0.0 by niemiro has completed.
Currently storing 0 datablocks.
Finish time: 2016-03-26 17:06:23.873
----------------------EOF-----------------------
Here are the steps I have taken:
Scanned with Malware Bytes(Was on during the attack)
**edit** After scanning with Malware Bytes I rolled back to a restore point, (restored back to a couple days before the attack) before i knew this was a bad idea due to potentially infected restore points **edit**
Scanned with tdsskiller
Scanned with Esetsmart scan
Scanned with WebRoot Protection
Scanned with Windows MSRT
Scanned with Unhackme
Scanned with HitmanPro
(Yes i overkilled the scanning )
After all the scans would come up clean after being ran 2x each i used sfc /scannow to repair my files(ran it 3 times with restarts in between)
Then I ran DSIM /Online /Cleanup-Image /RestoreHealth, restarted my computer and ran sfc /scannow once more(still had corruptions)
After this I ran diskcheck to make sure my C:/ drive was not broken and thankfully it was all good.
Even though most of the corruptions had been fixed, I still had some issues, so i ran SFCFix.exe and since I don't have access to an original windows 8.1 installation dvd it gave me a log file I could post and hopefully some of you kind people could help me :)
Below is the log file. Also if you have any tips to make sure all the malware is removed and my computer is clean once again, i would really appreciate and love to hear them <3 Thank you all in advance!
SFCFix version 3.0.0.0 by niemiro.
Start time: 2016-03-26 16:43:04.540
Microsoft Windows 8.1 Update 3 - amd64
Not using a script file.
AutoAnalysis::
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-tabletpc-journal_31bf3856ad364e35_6.3.9600.17793_none_086408f678984d30\Windows Journal.lnk
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.3.9600.17842_none_90da81a4dac50d54\utc.app.json
CORRUPT: C:\Windows\winsxs\amd64_microsoft-windows-u..ed-telemetry-client_31bf3856ad364e35_6.3.9600.17842_none_90da81a4dac50d54\telemetry.ASM-WindowsDefault.json
SUMMARY: Some corruptions could not be fixed automatically. Seek advice from helper or sysnative.com.
CBS & SFC total detected corruption count: 3
CBS & SFC total unimportant corruption count: 0
CBS & SFC total fixed corruption count: 0
SURT total detected corruption count: 0
SURT total unimportant corruption count: 0
SURT total fixed corruption count: 0
AutoAnalysis:: directive completed successfully.
Successfully processed all directives.
SFCFix version 3.0.0.0 by niemiro has completed.
Currently storing 0 datablocks.
Finish time: 2016-03-26 17:06:23.873
----------------------EOF-----------------------
Last edited: