Anti virus
Moderator: Moderators
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
Anti virus
I have Avast, superAntiSpyware Pro, Mbam, Hitman Pro, and God knows what else running, and I still picked up 2 Trojans last night.
The annoying thing is, only Mbam picked them up when I ran a scan.
The annoying thing is, only Mbam picked them up when I ran a scan.
- kellys_eye
- Senior Member
- Posts: 12309
- Joined: Mon Mar 15, 2010 11:49 pm
- Location: Oban
- Has thanked: 357 times
- Been thanked: 1790 times
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
- dave.m
- Deceased 07-06-2012 R.I.P
- Posts: 4989
- Joined: Tue Jun 09, 2009 4:30 pm
- Location: A Yorky in Lancashire
- Has thanked: 13 times
- Been thanked: 318 times
Did you get the names of them? If not,
Open MBAM -> Logs -> double click the last log.
You should be able to read what it found and removed, or:
Click Edit -> Select All -> Edit -> Copy, then paste it on here.
SAS Pro should have auto updated so may not have had the definitions.
Did you open any attachments from emails?
dave
Open MBAM -> Logs -> double click the last log.
You should be able to read what it found and removed, or:
Click Edit -> Select All -> Edit -> Copy, then paste it on here.
SAS Pro should have auto updated so may not have had the definitions.
Did you open any attachments from emails?
dave
You can always tell a Yorkshireman,
But you cannot tell him much.
But you cannot tell him much.
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
All were up to date, and no I don't open attachments only from known mail.
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 3930
Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11
31/03/2010 01:29:10
mbam-log-2010-03-31 (01-29-10).txt
Scan type: Quick scan
Objects scanned: 99367
Time elapsed: 7 minute(s), 34 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Setup.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 3930
Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11
31/03/2010 01:29:10
mbam-log-2010-03-31 (01-29-10).txt
Scan type: Quick scan
Objects scanned: 99367
Time elapsed: 7 minute(s), 34 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe (Trojan.Agent) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Setup.exe (Trojan.Agent) -> Quarantined and deleted successfully.
- dave.m
- Deceased 07-06-2012 R.I.P
- Posts: 4989
- Joined: Tue Jun 09, 2009 4:30 pm
- Location: A Yorky in Lancashire
- Has thanked: 13 times
- Been thanked: 318 times
Someone had a similar problem here.
It appears that if it is a genuine setup.exe file it is in the wrong place.
Had you downloaded anything yesterday and then installed it, maybe an update to a program, SAS had a version update in the last couple of days that involved a new setup.exe file.
dave
It appears that if it is a genuine setup.exe file it is in the wrong place.
Had you downloaded anything yesterday and then installed it, maybe an update to a program, SAS had a version update in the last couple of days that involved a new setup.exe file.
dave
You can always tell a Yorkshireman,
But you cannot tell him much.
But you cannot tell him much.
- dave.m
- Deceased 07-06-2012 R.I.P
- Posts: 4989
- Joined: Tue Jun 09, 2009 4:30 pm
- Location: A Yorky in Lancashire
- Has thanked: 13 times
- Been thanked: 318 times
John,
The registry key alarm means that the Antivirus XP trojan or one of the newer versions may have got to your computer:
http://blog.misec.net/2009/08/14/image- ... istry-key/
Run another QUICK scan with MBAM and see if it turns up again.
dave
The registry key alarm means that the Antivirus XP trojan or one of the newer versions may have got to your computer:
http://blog.misec.net/2009/08/14/image- ... istry-key/
Run another QUICK scan with MBAM and see if it turns up again.
dave
You can always tell a Yorkshireman,
But you cannot tell him much.
But you cannot tell him much.
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
Over 12mins
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 3930
Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11
31/03/2010 23:34:52
mbam-log-2010-03-31 (23-34-52).txt
Scan type: Quick scan
Objects scanned: 99762
Time elapsed: 12 minute(s), 26 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 3930
Windows 5.1.2600 Service Pack 2
Internet Explorer 7.0.5730.11
31/03/2010 23:34:52
mbam-log-2010-03-31 (23-34-52).txt
Scan type: Quick scan
Objects scanned: 99762
Time elapsed: 12 minute(s), 26 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times
- thescruff
- Senior Member
- Posts: 49685
- Joined: Mon Mar 10, 2008 12:46 am
- Location: Bath
- Has thanked: 360 times
- Been thanked: 3735 times