What the Tech logo
Welcome! Register for a free account (or login) > How does it work?
  1. Quickly register. It will only take 60 seconds.
  2. Start a new topic. Ask your question. Wait for an email reply.
  3. Is your system infected? Begin reading the malware removal guide.
register button
Closed TopicStart new topic
> [Resolved] Infected, I have no idea what's going on
nawoomer
post Feb 6 2010, 08:09 PM
Post #1


New Member
*

Group: Authentic Member
Posts: 5
Joined: 6-February 10
Member No.: 90,606
Operating System: Vista 32 bit



I ran the Malwarebytes quick version and got a Trojan fake alert thing that I removed.

Malwarebytes' Anti-Malware 1.44
Database version: 3510
Windows 6.0.6001 Service Pack 1 (Safe Mode)
Internet Explorer 7.0.6001.18000

2/6/2010 2:55:54 PM
mbam-log-2010-02-06 (14-55-54).txt

Scan type: Quick Scan
Objects scanned: 97674
Time elapsed: 4 minute(s), 50 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\AvScan (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)


I later ran a full one for 4 hrs and 15 mins:

Malwarebytes' Anti-Malware 1.44
Database version: 3510
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000

2/6/2010 7:54:04 PM
mbam-log-2010-02-06 (19-54-04).txt

Scan type: Full Scan (C:\|D:\|E:\|)
Objects scanned: 339360
Time elapsed: 4 hour(s), 14 minute(s), 47 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Next, I tried multiple times to do the GMER scan, but it either wouldn't let me run it, or I would get the blue screen of death similar to this:
http://linkvalidator.net/warn.php?p=aHR0cD...S5qcGc=&f=1
I tried doing the GMER scan in Safe mode and regularly, and neither worked.

I did complete my DDS Scan and I have attached those results.

Please help!


This post has been edited by nawoomer: Feb 6 2010, 08:09 PM
Attached File(s)
Attached File  DDS.txt ( 13.02K ) Number of downloads: 26
Attached File  Attach.txt ( 6.63K ) Number of downloads: 10
 
Go to the top of the page
 
+Quote Post
 
Start new topic
Replies
LDTate
post Feb 8 2010, 03:11 PM
Post #2


Forum God
Group Icon

Group: Root Admin
Posts: 48,377
Joined: 23-September 04
From: Missouri, USA
Member No.: 15,276
MVP


Since this issue appears to be resolved ... this Topic has been closed. Glad we could be of assistance.

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.

Go to the top of the page
 
+Quote Post



Closed TopicStart new topic

 


RSS Time is now: 19th March 2010 - 12:00 PM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.
Member site: Alliance of Security Analysis Professionals | UNITE Against Malware
Memory Forums | Auto Repair Forum
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy