Windows 10: Fun times with networking malware, please help me remove and prevent.

Discus and support Fun times with networking malware, please help me remove and prevent. in AntiVirus, Firewalls and System Security to solve the problem; So major issues after suspecting malware for awhile ... I finally found it (more on that in a second). The issue is my whole home network must be... Discussion in 'AntiVirus, Firewalls and System Security' started by rickyrickyboby, Jun 6, 2018.

  1. Fun times with networking malware, please help me remove and prevent.


    So major issues after suspecting malware for awhile ... I finally found it (more on that in a second). The issue is my whole home network must be infected (according to the cve that is what this malware does).
    That includes Chromecast, printer, 2 windows desktops, 1 Linux laptop, 2 iPhone, iPad, usb storage, hdds and router. The only way I was able to find this malware is by using a live (Ubuntu) os and scanning the windows drives with av.

    Here are the CVEs:
    win.torojan.rammit-7106
    swf.Exploit.cve_2016_7872-5855317-0
    swf.Exploit.cve_2016_7879-5889229-0
    win.trojan.generic-6563181
    win.trojan.generic-6563205
    win.Dropper.Yeehbar-6567740-0
    This hacker also put malware into my Linux system by taking over a login in client. I was not able to find the any explicit malware but I think they got in through Firefox.

    Also a internal port scan of my router:
    22/tcp filtered ssh
    23/tcp filtered telnet
    53/tcp open domain
    80/tcp open http
    443/tcp open https
    49152/tcp open unknown
    49153/tcp open unknown
    49154/tcp open unknown
    What really concerns me about this is what are the unknown ports, ssh and telnet,
    the router basically default nothing special it is isp cisco router.

    So what I have planned to do:
    -Take all apple devices to apple store have them run diagnostics/ av on them.
    -get a new router
    -reinstall windows/Linux on devices (with trusted usb sticks)
    -put all valuable files on one new storage device go through data and scan device

    Here are my concerns:
    -How do I know the printer is safe and malware free (seams like a great attack vector)?
    -How do I know the Chromecast is safe?
    -Can malware take over laptop/desktop/printer/etc firmware?
    -Would using Linux to erase the storage devices be enough (as such ... )
    bash >> clamscan <> <drive>
    bash >> mv /good/files /trusted/drive
    bash >> shred -vzn 1 <drive>
    bash >> fdisk -u #to make new partition table
    bash >> mkfs.ntfs <part>
    would that handle all types of malware or can it hide from Linux or freedos?

    My passwords are very strong for example: tUrnip55Tr35D0tFY which would be tough to break,
    but my parents won't not use there last name is there anything I do to make their computers/ipads more secure. Thanks in advance this has caused really big problems in my life, like deleting my homework, causing me to drop out of school and I'm scared who ever is doing this is going to steal my identity; leave me with nothing if they haven't already. Please any advice you can give I really can't understand why some
    one has done this to me but at the very least I can try and get rid of it.

    :)
     
    rickyrickyboby, Jun 6, 2018
    #1

  2. removal of sidecubes malware

    Do not get SpyHunter. It's just as bad as the malware you have,

    Follow the steps here.

    https://malwaretips.com/blogs/remove-sidecubes-virus/

    If it is not listed in the Control Panel, or it can't be removed there, move on to step 2. HitmanPro might not be needed.
     
    Bruce Hagen, Jun 7, 2018
    #2
  3. Le Boule Win User
    Get message Defender is removing Malware.

    Sounds like the malware detections may be in a browser.

    Can you give us the complete name/file path of the malware (as it appears under quarantine or on the list of detected items)?

    Have you emptied temporary internet files and rebooted the computer? Then do a manual update of WD followed by a Quick Scan.

    Any new browser extensions that need to be disabled?

    Try this free scanner:
    http://blog.emsisoft.com/2015/06/09/how-to-find-and-clean-malware-infections-with-emsisoft-emergency-kit/


    If the detections continue see the following free removal guide from Malwaretips.com:
    https://malwaretips.com/blogs/malware-removal-guide-for-windows/

    To remove malware from Windows, follow these steps:

    STEP 1: Scan your computer with Kasperskty TDSSkiller

    STEP 2: Scan your computer with Malwarebytes Anti-Malware

    STEP 3: Stop the malicious process with Rkill

    STEP 4: Double-check for malware with HitmanPro

    STEP 5: Scan your computer with AdwCleaner

    (OPTIONAL) STEP 6: Scan your computer with Zemana AntiMalware

    (OPTIONAL) STEP 7: Reset your browser to default settings

    Regards…

    Top 10 Ways PUPs Sneak Onto Your Computer. And How To Avoid Them.
     
    Le Boule, Jun 7, 2018
    #3
Thema:

Fun times with networking malware, please help me remove and prevent.

Loading...
  1. Fun times with networking malware, please help me remove and prevent. - Similar Threads - Fun times networking

  2. Help me Please...

    in Windows 10 Drivers and Hardware
    Help me Please...: Source Windows Summary Hardware error Date ‎4/‎25/‎2020 2:36 AM Status Report sent Description A problem with your hardware caused Windows to stop working correctly. Problem signature Problem Event Name: LiveKernelEvent Code: 144 Parameter 1: 1020 Parameter 2:...
  3. Virus / Malware, please help!

    in AntiVirus, Firewalls and System Security
    Virus / Malware, please help!: Hi, Ive got a virus that persists even after formats, I believe I caught it from my roomate and he recently got his identity stolen, so Im pretty scared. We both seem to have it but his files are older, so Im guessing i got it from him over the local network somehow. I was...
  4. Please help me to remove this theme or change it.

    in Windows 10 Customization
    Please help me to remove this theme or change it.: C:\Users\User\Pictures\Screenshots\Screenshot (43).png https://answers.microsoft.com/en-us/windows/forum/all/please-help-me-to-remove-this-theme-or-change-it/eb8025d1-5a75-4d98-ac74-444072a402eb
  5. please help me

    in Microsoft Windows 10 Store
    please help me: please help me to open Store https://answers.microsoft.com/en-us/windows/forum/all/please-help-me/ff4626f9-0e7b-4865-830d-bd777b2f6095"
  6. please help me

    in Windows 10 Updates and Activation
    please help me: so I bought a brand new laptop and from day one the touch pad didn't work, the laptop came with a smart pen to be used as a mouse so I thought maybe you could not use them both at once so I started exploring in my settings trying to see if I could switch back in forth...
  7. Help me please!!

    in Windows 10 Customization
    Help me please!!: My laptop was running slow and got full of too much useless junk and games that i decided to take the easy route and system restore the whole damn thing, windows install and what not but here is the problem. it seems that my desktop profile cant be found, i will attach a...
  8. Malware help please + cryptoprevent

    in AntiVirus, Firewalls and System Security
    Malware help please + cryptoprevent: So I have this in the log of cryptoprevent Event ID=866 Message of: Access to C:\Users\Zman\AppData\Local\atbizdu\cgcstpk.exe has been restricted by your Administrator by location with policy rule {B6AF3C37-6012-4DEC-87BB-5125E94F5BC5} placed on path...
  9. Help me PLEASE!

    in Windows 10 Network and Sharing
    Help me PLEASE!: Everything was working fine yesterday. Today I come home from work to discover my computer was shut off and a windows update had occurred. Now, I can't connect to the internet through my router which is an old Linksys WRT54G. I can plug in the Ethernet directly to my computer...
  10. Help me please with removing icons.

    in Windows 10 Support
    Help me please with removing icons.: Are there any regedit settings or a Windows 10 taskbar tweaker like that of Windows 7 that can perform the following as I have searched in vain and found nothing so far. Simply, I would like to remove permanently (not disable) from the far right of the taskbar the "show...