Jump to content

Malwarebytes

Can anyone tell me where to shove a stake thru this malware?

- - - - -

4 replies to this topic

#1
thiscouldbeurroom

    New Member

  • Members
  • Pip
  • 16 posts
Hi,

I just did a clean reformat using lenovo onekey recovery on my s10 netbook. I reformated it to factory default. I immediately uninstalled norton. I then installed opera , ccleaner and MBAM. After that I ran a quick MBAM scan.

Malwarebytes' Anti-Malware 1.41
Database version: 3200
Windows 5.1.2600 Service Pack 3

11/19/2009 3:49:54 PM
mbam-log-2009-11-19 (15-49-54).txt

Scan type: Quick Scan
Objects scanned: 93063
Time elapsed: 5 minute(s), 14 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{6096e38f-5ac1-4391-8ec4-75dfa92fb32f} (Trojan.BHO) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\oemlinkicon.ico (Malware.Trace) -> Quarantined and deleted successfully.

Should I just buy a new pc ?

Thanks all

#2
miekiemoes

    Forum Deity

  • Administrators
  • PipPipPipPipPipPip
  • 7,127 posts
  • Gender:Female
  • Location:Belgium
Hi,

The two references mbam found appear to be false positives. However, deleting what it found won't break anything at all since it's only an icon and a button set in your IE/explorer pointing to lenovo.com.
In either way, a next update will fix these false positives.
Mieke Verburgh
Assistant Director of Research

Posted Image

Follow us: Twitter, Become a fan: Facebook

#3
thiscouldbeurroom

    New Member

  • Members
  • Pip
  • 16 posts
Thanks a lot ! I'll be waiting for that next update to test if it still comes out.

#4
miekiemoes

    Forum Deity

  • Administrators
  • PipPipPipPipPipPip
  • 7,127 posts
  • Gender:Female
  • Location:Belgium
Hi,

The update is already available, so please update and let me know if it's still detecting above (it shouldn't) :)
Mieke Verburgh
Assistant Director of Research

Posted Image

Follow us: Twitter, Become a fan: Facebook

#5
miekiemoes

    Forum Deity

  • Administrators
  • PipPipPipPipPipPip
  • 7,127 posts
  • Gender:Female
  • Location:Belgium
Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!
Mieke Verburgh
Assistant Director of Research

Posted Image

Follow us: Twitter, Become a fan: Facebook





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us