Here are the results:
Malwarebytes' Anti-Malware 1.31 Database version: 1526 Windows 5.1.2600 Service Pack 2 23/12/2008 9:41:46 AM mbam-log-2008-12-23 (09-41-43).txt Scan type: Quick Scan Objects scanned: 75675 Time elapsed: 12 minute(s), 58 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 2 Registry Values Infected: 0 Registry Data Items Infected: 2 Folders Infected: 0 Files Infected: 1 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> No action taken. Registry Values Infected: (No malicious items detected) Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: c:\windows\system32\ -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.Agent) -> Data: system32\ -> No action taken. Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\system32\ (Trojan.Agent) -> No action taken.I find it weird that it has "system32," there with no other extensions. I try to remove them all, but it just doesn't work.
Also, Spyware Guard2008 left two random files in my C Drive. One called "Avenger", and another called "Sysprep."
Sysprep has nothing in it besides another folder called "i386," and a folder called "$OEM$" which is inside i386.
Avenger has many multiple files in it but has three folders.
"Spyware Guard 2008" "Spyware Guard 2008-ren-257" "Spyware Guard 2008-ren-378." But all of them only contain another folder called "quarantine."
There are 23 other files in the Avenger folder. Some of which are, spoolsystem.exe, sys.exe, reged.exe, sysexplorer.exe, and a few others.
MBAM and AVG both said neither of the files were infected so I just deleted because if they were "system critical", they'd be in system32.
Also, after I removed Spyware Guard 2008, I wasn't getting redirected on google links, but that is happening again.
I also can not use the online update, so if there has been an update, I'd need the latest, rules.ref.
Any help is appreciated. Thanks.
P.S: I use FireFox.
Sign In
Create Account
This topic is locked
Back to top










