Jump to content

BooksWorkfFine

Members
  • Posts

    1
  • Joined

  • Last visited

Reputation

0 Neutral
  1. I run a scan on my system since I started to have problems with internet explorer opening by itself with random ads and found 25 items. I don't know what to delete from these since I don't want to damage the system. Is anyone willing to help me? I've ran the scan normally, not in safe mode. Here's the log: Database version: v2014.01.01.03 Windows Vista Service Pack 1 x86 NTFSInternet Explorer 7.0.6001.18000dragos :: PC-DRAGOS [administrator] Protection: Disabled 01/01/2014 14:59:18MBAM-log-2014-01-01 (15-37-58).txt Scan type: Quick scanScan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUMScan options disabled: P2PObjects scanned: 260117Time elapsed: 30 minute(s), 15 second(s) Memory Processes Detected: 0(No malicious items detected) Memory Modules Detected: 1C:\Users\dragos\AppData\Local\YccfPack\prl_newsid.dll (VirTool.Vbcrypt) -> No action taken. Registry Keys Detected: 5HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> No action taken.HKCU\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> No action taken.HKLM\Software\Iminent (PUP.Optional.Iminent.A) -> No action taken.HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> No action taken.HKLM\System\CurrentControlSet\Servises (Malware.Trace) -> No action taken. Registry Values Detected: 3HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|Load (PUM.UserWLoad) -> Data: C:\Users\dragos\AppData\Local\Temp\{00581~1.EXE -> No action taken.HKCU\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Data: 11111111 -> No action taken.HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Data: 11111111 -> No action taken. Registry Data Items Detected: 0(No malicious items detected) Folders Detected: 3C:\Program Files\Common Files\PersonalSecUninstall (Rogue.PersonalSecurity) -> No action taken.C:\Program Files\PersonalSec (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec (Rogue.PersonalSecurity) -> No action taken. Files Detected: 13C:\Users\dragos\AppData\Local\YccfPack\prl_newsid.dll (VirTool.Vbcrypt) -> No action taken.C:\Users\dragos\AppData\Local\Temp\xmrda.dll (Trojan.Dorkbot.ED) -> No action taken.C:\Users\dragos\AppData\Local\Temp\kxnxivsc.exe (Trojan.Dorkbot.ED) -> No action taken.C:\Users\dragos\AppData\Local\Temp\OpenCandy\OCSetupHlp.dll (PUP.Optional.OpenCandy) -> No action taken.C:\Users\dragos\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PersonalSec.lnk (Rogue.PersonalSecurity) -> No action taken.C:\Program Files\Common Files\PersonalSecUninstall\Uninstall.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Computer Scan.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Help.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Personal Security.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Registration.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Security Center.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Settings.lnk (Rogue.PersonalSecurity) -> No action taken.C:\ProgramData\Microsoft\Windows\Start Menu\PersonalSec\Update.lnk (Rogue.PersonalSecurity) -> No action taken. (end) Thank you.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.