Andy-FML
-
Posts
4 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by Andy-FML
-
-
Also received the same thing today.
Malwarebytes' Anti-Malware 1.34Database version: 1849Windows 5.1.2600 Service Pack 3 3/15/2009 1:22:43 AMmbam-log-2009-03-15 (01-22-43).txt Scan type: Quick ScanObjects scanned: 67746Time elapsed: 1 minute(s), 25 second(s) Memory Processes Infected: 0Memory Modules Infected: 0Registry Keys Infected: 0Registry Values Infected: 0Registry Data Items Infected: 2Folders Infected: 0Files Infected: 0 Memory Processes Infected:(No malicious items detected) Memory Modules Infected:(No malicious items detected) Registry Keys Infected:(No malicious items detected) Registry Values Infected:(No malicious items detected) Registry Data Items Infected:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Hijack.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Hijack.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Folders Infected:(No malicious items detected) Files Infected:(No malicious items detected)
-
Hi All.
Sorry, this is a known FP and we have corrected it. Please update your database and scan again. Sorry for any trouble this caused.
Updated. Scanned. No more FP. Thanks for your great work!
-
I just installed Windows XP on a new system this morning. I ran MB and it found this.
Seems wextract.exe is a known FP.
Looks like dotnetfx.exe windows component of some sort. Is this a FP?
I have no idea what wmfdist95.exe is.
Malwarebytes' Anti-Malware 1.34Database version: 1820Windows 5.1.2600 Service Pack 3 3/5/2009 11:25:53 AMmbam-log-2009-03-05 (11-25-52).txt Scan type: Quick ScanObjects scanned: 56747Time elapsed: 1 minute(s), 7 second(s) Memory Processes Infected: 0Memory Modules Infected: 0Registry Keys Infected: 0Registry Values Infected: 0Registry Data Items Infected: 0Folders Infected: 0Files Infected: 3 Memory Processes Infected:(No malicious items detected) Memory Modules Infected:(No malicious items detected) Registry Keys Infected:(No malicious items detected) Registry Values Infected:(No malicious items detected) Registry Data Items Infected:(No malicious items detected) Folders Infected:(No malicious items detected) Files Infected:C:\WINDOWS\system32\wextract.exe (Trojan.Vundo) -> No action taken.C:\Documents and Settings\FranBox\Local Settings\Temp\VSD165.tmp\dotnetfx\dotnetfx.exe (Trojan.Vundo) -> No action taken.C:\Documents and Settings\FranBox\Local Settings\Temp\NERO1002052\Redist\wmfdist95.exe (Trojan.Vundo) -> No action taken.
Infected Registry Data Item
in File Detections
Posted
I disabled mine myself and was concerned that they just started to show up now.
Also there was suspicious login activity in an online account of mine, which was disabled as a result so I felt it was related. Ran full scan of both drives with Avast but nothing was found. (sorry OT)