i got a virus that changed system preferences and had 25 malware issues what is it?

macOS version 10.12.6

iMac 21inch,

processor 2.8 GHz intel Core i7

8 GB1333 MHz DDR3


i got a virus that changed system preferences and had 25 malware issues what is it? The mouse was clicking an inch or more off the courser. Multiple pages were loading with no way to get to desired page. TotalAV virus scan found the 25 malware programs and removed them. The deletion all cookies, history, reseting browsers to default with a cold re-start helped but it continues to have issues. How do I get it back to default settings?

iMac (21.5-inch Mid 2011), macOS Sierra (10.12.6)

Posted on Sep 13, 2017 3:09 PM

Reply
6 replies

Sep 14, 2017 2:28 PM in response to babowa

EtreCheck version: 3.4.4 (448)

Report generated 2017-09-14 15:14:54

Download EtreCheck from https://etrecheck.com

Runtime: 3:37

Performance: Good


Click the [Lookup] links for more information from Apple Support Communities.

Click the [Details] links for more information about that line.

Click the [Clean up] link to delete unused files.


Problem: Computer is too slow


Hardware Information:

iMac (21.5-inch, Mid 2011)

[Technical Specifications] - [User Guide] - [Warranty & Service]

iMac - model: iMac12,1

1 2.8 GHz Intel Core i7 (i7-2600S) CPU: 4-core

8 GB RAM Upgradeable - [Instructions]

BANK 0/DIMM0

4 GB DDR3 1333 MHz ok

BANK 1/DIMM0

4 GB DDR3 1333 MHz ok

BANK 0/DIMM1

Empty

BANK 1/DIMM1

Empty

Handoff/Airdrop2: not supported

Wireless: en1: 802.11 a/b/g/n

iCloud Quota: 4.89 GB available


Video Information:

AMD Radeon HD 6770M - VRAM: 512 MB

iMac 1600 x 900


Disk Information:

ST31000528AS disk0: (1 TB) (Rotational)

[Show SMART report]

EFI (disk0s1 - MS-DOS FAT32) <not mounted> [EFI]: 210 MB

Macintosh HD (disk0s2 - Journaled HFS+) / [Startup]: 646.46 GB (551.70 GB free)

Recovery HD (disk0s3 - Journaled HFS+) /Volumes/Recovery HD [Recovery]: 650 MB (118 MB free)

MACINTOSH H (disk0s4 - MS-DOS FAT32) /Volumes/MACINTOSH H : 352.88 GB (352.79 GB free)


HL-DT-STDVDRW GA32N ()


USB Information:

USB20Bus

Apple Inc. FaceTime HD Camera (Built-in)

hub_device

Logitech USB Keyboard

Apple Inc. BRCM2046 Hub

Apple Inc. Bluetooth USB Host Controller

USB20Bus

hub_device

Logitech USB Optical Mouse

Apple Computer, Inc. IR Receiver

Apple Card Reader


Thunderbolt Information:

Apple Inc. thunderbolt_bus


Virtual disks:

Flash Player (disk1s2 - HFS+) /Volumes/Flash Player : 19 MB (0 B free)

Physical disk: Disk Image 19 MB (0 B free)

AdwareMedic (disk2s1 - HFS+) /Volumes/AdwareMedic : 26 MB (11 MB free)

Physical disk: Disk Image 26 MB (11 MB free)

Java 7 Update 10 (disk3s1 - HFS+) /Volumes/Java 7 Update 10 : 524 MB (471 MB free)

Physical disk: Disk Image 524 MB (471 MB free)

Malwarebytes (disk4s1 - HFS+) /Volumes/Malwarebytes : 25 MB (10 MB free)

Physical disk: Disk Image 25 MB (10 MB free)


System Software:

macOS Sierra 10.12.6 (16G29) - Time since boot: about 2 days


Gatekeeper:

Mac App Store and identified developers


Clean up:

/Library/LaunchAgents/com.Logitech.Control Center.Daemon.plist

/Library/Application Support/Logitech.localized/Logitech Control Center.localized/LCCDaemon.app/Contents/MacOS/LCCDaemon --launchd

Executable not found!

One orphan file found. [Clean up]


Kernel Extensions:

/Library/Extensions

[not loaded] com.Logitech.Control Center.HID Driver (3.9.5 - SDK 10.8) [Lookup]

[not loaded] com.Logitech.Unifying.HID Driver (1.3.5 - SDK 10.8) [Lookup]

[loaded] com.malwarebytes.mbam.rtprotection (3.0 - SDK 10.12) [Lookup]


System Launch Agents:

[not loaded] 7 Apple tasks

[loaded] 169 Apple tasks

[running] 106 Apple tasks


System Launch Daemons:

[not loaded] 42 Apple tasks

[loaded] 171 Apple tasks

[running] 105 Apple tasks


Launch Agents:

[running] com.Logitech.Control Center.Daemon.plist (? 209c949 0 - installed 2016-10-04) [Lookup] - /Library/Application Support/Logitech.localized/Logitech Control Center.localized/LCCDaemon.app/Contents/MacOS/LCCDaemon: Executable not found!

[loaded] com.divx.dms.agent.plist (? bf9bdaf7 77e11f5f - installed 2017-07-27) [Lookup]

[loaded] com.divx.uninstall.converter.plist (Shell Script 9e90dee7 - installed 2017-06-08)

[loaded] com.divx.uninstall.player.plist (Shell Script 664f994d - installed 2017-06-08)

[loaded] com.divx.uninstall.preferences.plist (Shell Script 1cd1d81c - installed 2017-06-08)

[loaded] com.divx.update.agent.plist (DivX, LLC - installed 2017-07-27) [Lookup]

[running] com.malwarebytes.mbam.frontend.agent.plist (Malwarebytes Corporation - installed 2017-09-14) [Lookup]

[loaded] com.oracle.java.Java-Updater.plist (? 38f9289b 72ac4dde - installed 2017-08-12) [Lookup]


Launch Daemons:

[loaded] com.adobe.fpsaud.plist (? 2afb3af7 eb6bee8f - installed 2017-08-29) [Lookup]

[loaded] com.macpaw.CleanMyMac3.Agent.plist (MacPaw Inc. - installed 2017-06-25) [Lookup]

[running] com.malwarebytes.MBAMHelperTool.plist (Malwarebytes Corporation - installed 2015-12-21) [Lookup]

[running] com.malwarebytes.mbam.rtprotection.daemon.plist (Malwarebytes Corporation - installed 2017-09-14) [Lookup]

[running] com.malwarebytes.mbam.settings.daemon.plist (Malwarebytes Corporation - installed 2017-09-14) [Lookup]

[loaded] com.microsoft.autoupdate.helper.plist (Microsoft Corporation - installed 2017-07-28) [Lookup]

[loaded] com.oracle.java.Helper-Tool.plist (Shell Script e3fefdd2 - installed 2017-07-22) [Lookup]


User Launch Agents:

[loaded] com.adobe.ARM.[...].plist (? c8cc50de ac8ed034 - installed 2017-08-25) [Lookup]

[loaded] com.google.keystone.agent.plist (Google, Inc. - installed 2017-07-10) [Lookup]

[loaded] com.macpaw.CleanMyMac3.Scheduler.plist (MacPaw Inc. - installed 2017-09-11) [Lookup]

[loaded] com.skype.skype.shareagent.plist (Skype Communications S.a.r.l - installed 2017-09-12) [Lookup]


User Login Items:

Skype Application

(/Applications/Skype.app)

TotalAV Application

(~/.Trash/Malwarebytes Removals/TotalAV.app)

EpsonLowInkReminderAgent Application

(/Applications/Epson Software/Epson Low Ink Reminder.app/Contents/EpsonLowInkReminderAgent.app)


Internet Plug-ins:

OfficeLiveBrowserPlugin: 12.3.6 (installed 2013-03-12) [Lookup]

Flip4Mac WMV Plugin: 3.3.1.3 (installed 2014-09-20) [Lookup]

AdobePDFViewerNPAPI: 11.0.22 (installed 2017-08-25) [Lookup]

FlashPlayer-10.6: 27.0.0.130 (installed 2017-09-12) [Lookup]

DivX Web Player: 3.8.4.432 (installed 2017-06-08) [Lookup]

Silverlight: 5.1.50901.0 (installed 2017-07-24) [Lookup]

QuickTime Plugin: 7.7.3 (installed 2017-08-13)

Flash Player: 27.0.0.130 (installed 2017-09-12) [Lookup]

PepperFlashPlayer: 27.0.0.130 (installed 2017-09-13) [Lookup]

AdobePDFViewer: 11.0.22 (installed 2017-08-25) [Lookup]

Plugin2_NPAPI: Unknown

JavaAppletPlugin: Java 8 Update 144 build 01 (installed 2017-08-12) Check version


User internet Plug-ins:

CitrixOnlineWebDeploymentPlugin: 1.0.105 (installed 2013-04-25) [Lookup]


Safari Extensions:

[enabled] Dashlane - Dashlane Inc. - http://www.dashlane.com (installed 2017-09-08)


3rd Party Preference Panes:

Flash Player (installed 2017-08-29) [Lookup]

Flip4Mac WMV (installed 2014-05-12) [Lookup]

Java (installed 2017-08-12) [Lookup]

Logitech Control Center (installed 2017-09-12) [Lookup]


Time Machine:

Time Machine not configured!


Top Processes by CPU:

3% mds

2% WindowServer

2% kernel_task

1% mdworker

1% mdworker


Top Processes by Memory:

827 MB kernel_task

675 MB Safari

428 MB softwareupdated

317 MB com.apple.WebKit.WebContent

274 MB Finder


Top Processes by Network Use:

Input Output Process name

2 MB 122 KB mDNSResponder

588 KB 62 KB netbiosd

5 KB 18 KB assistantd

10 KB 6 KB com.apple.WebKit.Networking

8 KB 7 KB apsd


Top Processes by Energy Use:

4.96 WindowServer

1.50 com.dashlane.DashlaneAgent

0.90 DashlanePluginService

0.62 launchd


Virtual Memory Information:

2.55 GB Available RAM

55 MB Free RAM

5.45 GB Used RAM

2.50 GB Cached files

68 MB Swap Used


Software installs:

Adobe Flash Player: (installed 2017-08-15)

Adobe Flash Player: (installed 2017-08-18)

Adobe Flash Player: (installed 2017-08-18)

Adobe Reader XI (11.0.22): (installed 2017-08-25)

Adobe Flash Player: (installed 2017-09-09)

MegaBackup: (installed 2017-09-10)

MegaBackup: (installed 2017-09-10)

TotalAV: (installed 2017-09-11)

Adobe Flash Player: (installed 2017-09-12)

Logitech Control Center: (installed 2017-09-12)

CleanMyDrive 2: 2.1.8 (installed 2017-09-12)

Adobe Pepper Flash Player: (installed 2017-09-13)

Malwarebytes for Mac: (installed 2017-09-14)


Install information may not be complete.


Diagnostics Information:

2017-09-12 20:40:22 Last shutdown cause: 3 - Hard shutdown

2017-09-12 19:50:07 Safari.app Crash [Open]

Cause: Configuration error: No SDK cache entry for extension!

2017-09-12 19:50:07 iTunes.app Crash [Open]

Cause: Configuration error: No SDK cache entry for extension!

2017-09-12 19:50:07 Mail.app Crash [Open]

Cause: Configuration error: No SDK cache entry for extension!

2017-09-12 19:50:07 iBooks.app Crash [Open]

Cause: Configuration error: No SDK cache entry for extension!

2017-09-12 19:01:44 launchservicesd Crash [Open]

Cause: BUG IN LIBPTHREAD: Invalid thread port

2017-09-12 02:01:51 Firefox.app High CPU use [Open] [Details]

2017-09-12 01:24:50 cloudd Crash [Open]

Cause: *** Terminating app due to uncaught exception 'NSGenericException', reason: 'Failed to step (6922): "select value from Properties where key = ?" - errcode:1b0a, msg:"disk I/O error", size: (null), path:/Users/USER/Library/Caches/*/CloudKitOperationInfo, fs:(null)/(null)'

abort() called

terminating with uncaught exception of type NSException

2017-09-11 22:00:49 spindump Crash [Open]

2017-09-11 20:53:16 com.apple.WebKit.WebContent High CPU use [Open] [Details]

2017-09-11 16:21:01 RuneScape 5.app High CPU use [Open] [Details]



The 25 malware were found by TotalAV. 3 other malware were found by malwarebytes. Apple-system preferences gets me the iCloud window and nothing else. Right clicking the system preferences on dock gets the list of the system but left clicking again opens the iCloud window.

Sep 14, 2017 3:41 PM in response to richardtob

Well, I'd start this way:


Uninstall CleanmyMac according to their instructions

Uninstall Total AV

Uninstall CleanmyDrive


Those three apps can cause all sorts of havoc. They do not play well with Macs.


Run Etrecheck again and click on all of the "cleanup" items.


Then observe behavior and run it again.


If it runs well, you're done. If there are still problems, you may want to reinstall the OS (make sure you have a backup first - I saw you do not have Time Machine running).

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

i got a virus that changed system preferences and had 25 malware issues what is it?

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.