Jump to content

Springwoods

Members
  • Posts

    8
  • Joined

  • Last visited

Everything posted by Springwoods

  1. uh ... my previous post was hidden. probably because it contain links to the cloud storage
  2. https://rg.to/file/4ed427fc377c588b2656c51f8c15bb34/kav_log.rar.html First log got another kind of malware in programdata\admbib. disinfected, but unable to delete the file. problem solved (no connection spam). but returns when restart. Second log got the afformentioned win32.SEPEH.gen in system memory
  3. The detection still occur. However, after I moved everything to Test folder, I noticed something had launched a command prompt upon restarting. The Task Folder now has a Folder of Microsoft, TEST, and WPD. I didn't notice anything unusal in the startup tab since i used to disable most of the unused apps.
  4. Yes this is correct. Disinfecting and rebooting is not removing it. Disinfecting it without reboot seems to remove it and stop the connection spam but it returns when computer restart. Booting to save mode and cure it with KVRT also didnt work. it comes back every restart.
  5. i already deleted the activator. but the files are downloaded from ...
  6. In an attempt to pirate windows, a coworker of mine has downloaded a fake windows activator from a website. he choose to disable KIS thinking the activator is genuine and install it. Now his computer behaving erratically. 1. Every now and then, the application is trying to connect to illegal websites triggering KIS Alarm. It appears from time to time. 2. We already use KIS to scan the computer, it detected it as WIN32. EPEH trojan, residing in System Memory. However, disinfecting and rebooting makes no changes. 3. Whenever we disinfect it without restarting, the problem seems to go away. but whenever we restart the computer, it comes back again. Please suggest a way to remove the presistent trojan. Thanks
×
×
  • Create New...