Jump to content

Malwarebytes

2 trojan.agents, userinit.exe & wdmaudio.drv?


2 replies to this topic

#1
Kremlar

    New Member

  • Members
  • Pip
  • 3 posts
Working on a PC that had a major spyware/virus/etc issue today. Everything seems to be clean, but Malwarebytes is still showing 2 issues. I tell it to remove the items, but they are back at the next scan. Is it possible these are false positives? Here is the log data:

Malwarebytes' Anti-Malware 1.33
Database version: 1673
Windows 5.1.2600 Service Pack 2

01/20/2009 5:44:48 PM
mbam-log-2009-01-20 (17-44-39).txt

Scan type: Quick Scan
Objects scanned: 57988
Time elapsed: 2 minute(s), 5 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: c:\windows\system32\userinit.exe -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: system32\userinit.exe -> No action taken.

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

#2
Tigger93

    Forum Deity

  • Moderators
  • PipPipPipPipPipPip
  • 1,648 posts
  • Gender:Male
No, you have a very real infection.

Please read and follow the instructions provided here: Pre- HJT Post Instructions
When ready please post your logs here: Malware Removal - HijackThis Logs

Someone will be happy to assist you further with cleaning your system.

During this scan and cleanup process you should not install any other software unless requested to do so.

Please don't post your log in this topic or start another thread in this forum, but post them in the Malware Removal - HijackThis Logs forum linked to above. ;)

#3
GT500

    Mostly Cantankerous

  • Trusted Advisors
  • PipPipPipPipPipPip
  • 5,527 posts
  • Gender:Male
  • Location:Fortville, IN
System files can easily be infected by malware, especially when you have not updated Windows XP to Service Pack 3.

Please follow these instructions, and one of our malware removal experts will be happy to give you a hand.

Quote

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us