Jump to content

PixelPlay

Members
  • Posts

    6
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Perhaps this may be better if it were posted in their forum?
  2. So I just updated MBAM from 1887 I believe, it had to close and install the update. When it was finished installing Spybot - Search & Destory popped open saying this: "...has encountered and terminated a process that is listed as a part of a malicious software. Process ID: 184 Filename: regsvr32.exe Found in: C:\WINDOWS\system32\ Identified as: Win32.Bancos.zm" It's sitting here still open should I be concerned? Does this have anything to do with MBAM's update? Please, any help as soon as possible is greatly appreciated! Thank you.
  3. Awesome thank you so much it's a great relief! Now I can peacefully go to sleep. ^-^
  4. I've had this program for several months now and love it. I just recently joined the MBAM forum. 4:45 AM here and very tired I decided to do a routine scan with MBAM before I logged off only to find 3 instances of wextract.exe. I went over the past couple threads finding out there was a false positive for C:\WINDOWS\system32\wextract.exe. The other 2 instances are C:\WINDOWS\ServicePackFiles\i386\wextract.exe (Trojan.Vundo) C:\WINDOWS\$NtServicePackUninstall$\wextract.exe (Trojan.Vundo) I haven't taken any action yet and I'm hoping this is related to the known false positive and can be considered as such. I followed the pinned topic so here is my developer's log. Malwarebytes' Anti-Malware 1.34 Database version: 1820 Windows 5.1.2600 Service Pack 3 3/5/2009 4:37:34 AM mbam-log-2009-03-05 (04-37-28).txt Scan type: Full Scan (C:\|D:\|J:\|K:\|) Objects scanned: 125550 Time elapsed: 33 minute(s), 6 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 3 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: C:\WINDOWS\ServicePackFiles\i386\wextract.exe (Trojan.Vundo) -> No action taken. [5253514247403034173621171717182334393639392422172539391822352118181717171822373 61917251717363636363636363636362535393922222535383625182437173635181717171717172 4 22181725202437181717172422173425202437182139382422172120203617383518253939242218 2 13939242218173939242217363939242217253939202234173621171717183939182235361818171 7 171822373619] C:\WINDOWS\system32\wextract.exe (Trojan.Vundo) -> No action taken. [5253514247403034173621171717182334393639392422172539391822352118181717171822373 61917251717363636363636363636362535393922222535383625182437173635181717171717172 4 22181725202437181717172422173425202437182139382422172120203617383518253939242218 2 13939242218173939242217363939242217253939202234173621171717183939182235361818171 7 171822373619] C:\WINDOWS\$NtServicePackUninstall$\wextract.exe (Trojan.Vundo) -> No action taken. [5253514247403034173621171717182334393639392422172539391822352118181717171822373 61917251717363636363636363636362535393922222535383625182437173635181717171717172 4 22181725202437181717172422173425202437182139382422172120203617383518253939242218 2 13939242218173939242217363939242217253939202234173621171717183939182235361818171 7 171822373619] Any help greatly appreciated [:
  5. Hmm alrighty then. I'm just afraid if I were to shutdown and go to sleep that it'll damage my computer or if I were to delete them and it ends up as a false positive that it'll damage my computer. I'm not to experienced in false positives so any clarification is appreciated. ^^;
  6. I got something similar to that as well. 3 instances of wextract.exe appeared when I performed a full scan. So now I'm just sitting here with the results page open wondering if it's safe to remove them. Files Infected: C:\WINDOWS\ServicePackFiles\i386\wextract.exe (Trojan.Vundo) -> No action taken. C:\WINDOWS\system32\wextract.exe (Trojan.Vundo) -> No action taken. C:\WINDOWS\$NtServicePackUninstall$\wextract.exe (Trojan.Vundo) -> No action taken. I am getting tired would it make a difference if I were to remove them? Sorry if this is the wrong place to post.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.