Jump to content

Malwarebytes

461.exe


1 reply to this topic

#1
Jaxryley

    Forum Deity

  • Malware Hunters
  • PipPipPipPipPipPip
  • 6,718 posts
  • Gender:Male
  • Location:West Aussie
  • Interests:Gardening and computers.
91.211.64.91/o9s833f/uerty/461.exe

Quote

File 461.exe received on 01.20.2009 00:36:03 (CET)
Current status: finished
Result: 4/39 (10.26%)
Virus Total

#2
sho-dan

    कैंसर योद्धा

  • Honorary Members
  • PipPipPipPipPipPip
  • 3,023 posts
  • Gender:Not Telling
  • Location:Jah Jersey Shore
Good job Jak, take that well deserved 5min. break ;)

PM kicks it and removes it

First Scan
Malwarebytes' Anti-Malware 1.33Good job Jake
Database version: 1668
Windows 5.1.2600 Service Pack 3

1/19/2009 7:38:11 PM
mbam-log-2009-01-19 (19-38-11).txt

Scan type: Quick Scan
Objects scanned: 46331
Time elapsed: 2 minute(s), 0 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> Quarantined and deleted successfully.

Files Infected:

C:\WINDOWS\system32\TDSSoiqh.dll (Trojan.TDSS) -> Delete on reboot.
C:\Documents and Settings\TJ\Local Settings\temp\TDSS9a50.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\drivers\TDSSpqxt.sys (Rootkit.Agent) -> Delete on reboot.

Second Scan
Malwarebytes' Anti-Malware 1.33
Database version: 1668
Windows 5.1.2600 Service Pack 3

1/19/2009 7:44:50 PM
mbam-log-2009-01-19 (19-44-50).txt

Scan type: Quick Scan
Objects scanned: 46349
Time elapsed: 2 minute(s), 41 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Files Infected:

C:\Documents and Settings\TJ\Local Settings\temp\TDSS9a46.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
"Don't worry about a thing,
'Cause every little thing gonna be all right!"





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us