Since Sunday when the modem is turned on get the following message every 5 minutes:
File: lovun.ru/images/judex.exe infection: Trojan horse Generic 15.ARFB
I'm running Win Vista SP2
AVG 8.5.425 with latest update.
Since it started I run also:
Malwarebytes
Trojan remover
SuperAntiSpyware
Spywarefighter
Spybot-S&D
All came clean.
Please note that when the modem is turned off the message doesn't appear.
I searched the web for 15.ARFB and came with 0 results.
I'm attaching attach.txt and dds.txt
I run 3 times RootRepeal.exe and got an error message box (empty) and the scan stopped and I could not get the data.
It stop at file:
c:windowswinsxsmsil_cscompmgd_b03f5f7f11d50a3a_6.0.6001.18000_none_18976aa08b000
Any idea ?
Thanks in advance,
Shimonk
I managed to see the RootRepeal Error message: "Attempting to write to address 0x00000004"
When I press OK the process disappears.
Merged posts. ~ OB
Attached Files
Edited by Orange Blossom, 10 November 2009 - 05:56 PM.