Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Virus on pc


  • Please log in to reply

#1
Kim Pedersen74

Kim Pedersen74

    New Member

  • Member
  • Pip
  • 1 posts

Windows defender found an infection of PWS:Win32/Stimilina.E!rfn and malwarebytes some other things can anyone help me out and find out how to get rid of it.

Attached Files


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 23,004 posts
  • MVP

Probably a false positive.  I can see from the log:

 

Date: 2019-12-26 13:34:24.360
Description:
Windows Defender Antivirus oppdaget malware eller annen potensiellt uønsket programvare.
For mer informasjon, se:
https://go.microsoft...66&enterprise=0
Navn: PWS:Win32/Stimilina.E!rfn
ID: 2147746366
Alvorlighetsgrad: Alvorlig
Kategori: Passordtyv
Bane: file:_C:\ProgramData\setu.exe
Deteksjonsgrunnlag: Lokal maskin
Deteksjonsstype: FastPath
Deteksjonsskilde: Sanntidsbeskyttelse
Bruker: DESKTOP-13Q9QE5\kimbr
Prosessnavn: C:\Program Files (x86)\FreeCommander XE\FreeCommander.exe
Versjon av sikkerhetsinformasjon: AV: 1.307.1149.0, AS: 1.307.1149.0, NIS: 1.307.1149.0
Motorversjon: AM: 1.1.16600.7, NIS: 1.1.16600.7

 

 

that it is complaining about FreeCommander.  I checked the (English) FreeCommander downloads page with virustotal.com and it came up clean.

You can submit the file to Microsoft and see what they say:

https://www.microsof.../filesubmission

 

You can also just uninstall FreeCommander and see if that fixes the problem.

 

This error:

Error: (12/26/2019 03:37:47 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2644,R,98) TILEREPOSITORYS-1-5-18: Error -1023 (0xfffffc01) occurred while opening logfile C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.

 

is caused by a Microsoft mistake.  Easiest fix for it it to create two new folders:

 

C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer

C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database

 

I can make a fixlist for you to do that if you would like.

 

Let's check your system files:

 

Open an elevated command prompt:

http://www.howtogeek...-in-windows-10/
http://www.eightforu...indows-8-a.html

(If you open an elevated Command Prompt properly it will say Administrator: Command Prompt in the margin at the top of the window)


Once you have an elevated command prompt:

Type:

 DISM  /Online  /Cleanup-Image  /RestoreHealth


 (I use two spaces so you can be sure to see where one space goes.)
Hit Enter.  This will take a while (10-20 minutes) to complete.  Once the prompt returns:

Reboot.  Open an elevated Command Prompt again and type (with an Enter after the line):
 

sfc  /scannow


This will also take a few minutes.  

When it finishes it will say one of the following:

Windows did not find any integrity violations (a good thing)
Windows Resource Protection found corrupt files and repaired them (a good thing)
Windows Resource Protection found corrupt files but was unable to fix some (or all) of them (not a good thing)

If you get the last result then type:

findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  %UserProfile%\desktop\junk.txt

Hit Enter.  Then type::
 

notepad %UserProfile%\desktop\junk.txt

Hit Enter.

 Copy the text from notepad and paste it into a reply.


 


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP