Jump to content

MPN

Members
  • Posts

    4
  • Joined

  • Last visited

Posts posted by MPN

  1. Windows 7 has changed the method used for doing this. Scanning mapped drives though is pretty much almost a waste of time. The drive that is physically part of that Server should be the one that is scanning for detection and removal. You cannot lock a remote file for removal or kill a process to remove it. Basically its just a dormant left over file that should be cleaned by your Anti-Virus. MBAM is designed to detect and clean immediate threats, not piles of old infections.

    Thanks for the Win7 info.

    I was using MBAM to clean/delete some old files, it was easier than doing it manually.

  2. We are able to reproduce this on a test system now so we will not need to subject your system to testing. As soon as we find a fix we will post it.

    For now you can either disable the IP blocking on demand or permanently. Please see the FAQ at the top of this forum IP management.

    In case this info is helpfull for the fix. IP blocking slows down the network receive speed on our Windows 7 x64 machines, unless they are connecting to another win7 machine. Receiving from XP, Server 2000 and NAS drives is slow. Our XP machines do not have the issue unless they access a Win7 machine, then sending to the Win7 machine is slow.

  3. The scan found these a couple of days ago, the previous scans did not. They appear to be from our Icewarp Merak email server. The keys have been there for awhile as evidenced by the older versions found. I installed the latest email server today 9.4.2, and the scan imediatly showed that as well.

    6/25/2009 9:46:15 AM

    mbam-log-2009-06-25 (09-46-01).txt

    Scan type: Quick Scan

    Objects scanned: 80193

    Time elapsed: 2 minute(s), 11 second(s)

    Memory Processes Infected: 0

    Memory Modules Infected: 0

    Registry Keys Infected: 8

    Registry Values Infected: 0

    Registry Data Items Infected: 0

    Folders Infected: 0

    Files Infected: 0

    Memory Processes Infected:

    (No malicious items detected)

    Memory Modules Infected:

    (No malicious items detected)

    Registry Keys Infected:

    HKEY_CLASSES_ROOT\config.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\merak-9.3.1.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\merak-9.3.2.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\merak-9.4.0.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\merak-9.4.1.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\merak-9.4.2.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\setup.dochostuihandler (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    HKEY_CLASSES_ROOT\CLSID\{3f2bbc05-40df-11d2-9455-00104bc936ff} (Rogue.FastAntiVirus) -> No action taken. [4054423730922071196767681722142117697114181869191426212222141717181721676826202

    3717194]

    Registry Values Infected:

    (No malicious items detected)

    Registry Data Items Infected:

    (No malicious items detected)

    Folders Infected:

    (No malicious items detected)

    Files Infected:

    (No malicious items detected)

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.