Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Malware detected some files.. Safe to remove?


  • Please log in to reply
1 reply to this topic

#1 hortoholic

hortoholic

  • Members
  • 64 posts
  • OFFLINE
  •  
  • Local time:10:32 AM

Posted 04 October 2009 - 11:02 AM

Hello, I have scanned my systen with Malwarbytes anti-malware and I got a couple infections I was just cuious about what I should do about these?

Malwarebytes' Anti-Malware 1.41
Database version: 2905
Windows 5.1.2600 Service Pack 3

10/4/2009 11:58:06 AM
mbam-log-2009-10-04 (11-57-59).txt

Scan type: Quick Scan
Objects scanned: 54201
Time elapsed: 14 minute(s), 38 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 6
Registry Values Infected: 2
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 4

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CLASSES_ROOT\prodegetoolbar680.prodegetoolbar680 (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{a057a204-bacc-4d26-b2fc-48f8ccab3ed4} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{a057a204-bacc-4d26-b2fc-48f8ccab3ed4} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a057a204-bacc-4d26-b2fc-48f8ccab3ed4} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{a057a204-bacc-4d26-b2fc-48f8ccab3ed5} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{a057a204-bacc-4d26-b2fc-48f8ccab3ed6} (Trojan.BHO) -> No action taken.

Files Infected:
C:\Program Files\prodegetoolbar680\prodegetoolbar680.dll (Trojan.BHO) -> No action taken.
C:\RECYCLER\S-1-5-21-1390067357-1958367476-682003330-1006\Dc118\kg.exe (Dont.Steal.Our.Software.A) -> No action taken.
C:\WINDOWS\system32\MSINET.oca (Malware.Trace) -> No action taken.
C:\Documents and Settings\NCSU\Local Settings\Temporary Internet Files\Content.IE5\81Y3HEQU\codec_update2.7[1].exe (Rootkit.TDSS) -> No action taken.


Which should I remove? the proedgetoolbar is something I installed purposefully..

Thanks..

BC AdBot (Login to Remove)

 


#2 garmanma

garmanma

    Computer Masochist


  • Staff Emeritus
  • 27,809 posts
  • OFFLINE
  •  
  • Location:Cleveland, Ohio
  • Local time:10:32 AM

Posted 04 October 2009 - 04:15 PM

When the scan is complete just de-select those items before you click on Remove All
If you purchase Mbam you have the option to add it to an Ignore List
Mark
Posted Image
why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Do not send me PMs with problems that should be posted in the forums. Keep it in the forums, so everyone benefits
Become a BleepingComputer fan: Facebook and Twitter




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users