Sality.AU and Sality.AT

Jan 29, 2016
  1. After noticing that I cant access my task manager and reg files I feel that something bad is happening so I started installing few malware/virus scanner like malwarebytes and Microsoft security essentials malwarebytes found nothing but after I finished installing MSE and started quick scan after update after the quick scan MSE found about 20-30 affected files(affected mostly unused programs and reg files)

    I am aware that my Laptop is in deep danger and I want to save it... if I can. I am planning on backing up most of my files (about 800GB).but before that I need to know what to do first before backing up all my files and what file types dose sality infects to avoid further spread of the malware/virus/worm
  2. Broni

    Broni Malware Annihilator Posts: 54,262   +383

    You are infected with a polymorphic file infector. This infection can and will infect all the machine's executable files .exe, .scr, .rar, .zip, .htm, .html. Because there are a number of bugs in its code, it may create executable files that are corrupted beyond repair resulting in an inoperative machine.

    Malware experts say that a Complete Reformat and Reinstall is the only way to clean the infection. This includes All Drives that contain following files:

    Backup all your documents and important items only.
    DO NOT backup any files mentioned above.

    I suggest you do the following immediately:

    * Call all of your banks, credit card companies, financial institutions and inform them that you may be a victim of identity theft and to put a watch on your accounts or change all your account numbers.
    * From a clean computer, change *all* your online passwords -- for email, for banks, financial accounts, PayPal, eBay, online companies, any online forums or groups you belong to.
    * DO NOT change passwords or do any transactions while using the infected computer because the attacker will get the new passwords and transaction information.
  3. kintaro

    kintaro TS Rookie Topic Starter

    Done backing up some of my files and securing my acc... is there any way to clean the .jpeg .rar .zip file types?
  4. Broni

    Broni Malware Annihilator Posts: 54,262   +383

    No :(
  5. kintaro

    kintaro TS Rookie Topic Starter

    Another question... dose the malware/virus got the ability to infect other pc connected to the LAN or Wi-Fi? I got 2 more pc here...the 2pc is on LAN and the infected laptop is connected via Wi-Fi... im worried if they get infected
  6. Broni

    Broni Malware Annihilator Posts: 54,262   +383

    No, unless you shared some files.

