Jump to content

Joe67

Members
  • Posts

    8
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Thanks my query was answered here https://forums.malwarebytes.org/index.php?/topic/149752-pups-keep-coming-back-after-quarantine/
  2. Many thanks for your reply. It appears that Malwarebytes has flushed out the remnants of the PUP's because I have had clean scans on all four machines for the last couple of days. I was not as convinced as you they had gone because Trovi A, Search Protect and Conduit A had all returned in different locations even after Malwarebytes had produced clean logs. Your points about prevention before cure are good. I regularly scan with Malwarebytes and very rarely get any nasties so this has been a real eye opener especially when I read some of the threads about Search Protect and Conduit! I have started a trail of 'real time protection' and will upgrade at the end of the trail period. Thanks again.
  3. Thank you for your reply daledoc1. I have just done a scan using the settings advised and it has come up clean as below. However I am almost certain the PUP's will return tomorrow because that is what has happened on all four computers I am using. I can post the last couple of days logs if required or do you want me to wait until the PUP's return? Malwarebytes Anti-Malwarewww.malwarebytes.org Scan Date: 31/05/2014Scan Time: 17:40:02Logfile: Administrator: Yes Version: 2.00.2.1012Malware Database: v2014.05.31.07Rootkit Database: v2014.05.21.01License: FreeMalware Protection: DisabledMalicious Website Protection: DisabledSelf-protection: Disabled OS: Windows 7 Service Pack 1CPU: x64File System: NTFSUser: Terry Scan Type: Threat ScanResult: CompletedObjects Scanned: 261704Time Elapsed: 6 min, 33 sec Memory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: EnabledHeuristics: EnabledPUP: EnabledPUM: Enabled Processes: 0(No malicious items detected) Modules: 0(No malicious items detected) Registry Keys: 0(No malicious items detected) Registry Values: 0(No malicious items detected) Registry Data: 0(No malicious items detected) Folders: 0(No malicious items detected) Files: 0(No malicious items detected) Physical Sectors: 0(No malicious items detected) (end)
  4. Thank you for your advice . I had already followed daledoc1's advice and reposted on the other forum so this is now a duplicate thread. Sorry. Should I adjust the Detection and Protection settings as you advise or wait for a reply on the other forum?
  5. A couple of days ago Search Protect A, Trovi A ,Open Candy and Conduit A was found in 20 folders and 81 files during a routine scan with Malwarebytes I quarantined everything and did another scan and everything was clear. The next day Trovi A was found in one file only during another scan. I quarantined it and then used AdwCleaner to clean everything it found. I then ran Malwarebytes and AdwCleaner again to ensure they gave me clean scans. This morning Conduit A came back in 7 files. I have quarantined them. AdwCleaner scan was clear. No doubt they will return so is there any way I can stop them. I am prepared to do clean reinstall of Win7 but I think the infection may be on four machines as they were used to back up files! FRST.txt file is attached as advised in the 'I'm Infected What Do I Do' page
  6. A couple of days ago Search Protect A, Trovi A ,Open Candy and Conduit A was found in 20 folders and 81 files during a routine scan with Malwarebytes I quarantined everything and did another scan and everything was clear. The next day Trovi A was found in one file only during another scan. I quarantined it and then used AdwCleaner to clean everything it found. I then ran Malwarebytes and AdwCleaner again to ensure they gave me clean scans. This morning Conduit A came back in 7 files. I have quarantined them. AdwCleaner scan was clear. No doubt they will return so is there any way I can stop them. I am prepared to do clean reinstall of Win7 but I think the infection may be on four machines as they were used to back up files!
  7. I have a copy of the original log.....is that what is needed? I know if I do a new scan now it will show nothing. Does the procedure above do something else than a new scan? TIA
  8. I got this today as well. Could it be a FP? Files Infected: C:\Program Files\Microsoft Office\WINWORD.EXE (Backdoor.Bot) -> Quarantined and deleted successfully
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.