wizard1970
-
Posts
32 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by wizard1970
-
-
I ran antivirus scan today and it found trojan vmain.class in java.It was deleted by norton.I then ran a scan with malwarebytes and everything was clean.Does anybody know anything about this trojan has i cant find any info anywhere.?I assume im am clean as both scans come back clean.
-
I have done several manual updates but my program still says version 1.45.
I am using the free version.Do i need to manual uninstall 1.45 and download 1.46.
Thanks
-
thanx for the quick reply
-
Since updating to 1.45 i have noticed that everytime i update the file size is around 4.2mb compared to the 1.44 version.Is this correct or am i doing something wrong.?
Using windows 7 and free version.
-
my son was surfing the net when suddenly a fake antivirus page popped up.He closed the page straight away and i have run a full scan with malwarebytes and my antivirus.Both results have come back clear.Should i be worried or not?
-
i just put them in ignore list.I also bought a toshiba laptop and get the same files coming up.looks like most new pcs have these files.
-
Just bought another new acer laptop and ran malwarebytes scan with these results.
Ive added them to the ignore list as i think they are false.Have i done the right thing?
Scan type: Quick Scan
Objects scanned: 89121
Time elapsed: 1 minute(s), 29 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 7
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\kt_bho.KettleBho (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\TypeLib\{86676e13-d6d8-4652-9fcf-f2047f1fb000} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{9517fb66-3dcf-44eb-8ce5-1a0f8a058d12} (Trojan.BHO) -> No action taken.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\ProgramData\Partner\Partner.dll (Trojan.BHO) -> No action taken.
-
i also have norton installed on 3 pcs and no problems.version 2009 and 2010 havent even had to exclusions list
-
thanks for that.The laptop is a acer.
-
I have just bought a new laptop and have scanned with malwarebytes and getting theses results.Are they false or should i delete them?
Malwarebytes' Anti-Malware 1.42
Database version: 3296
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
04/12/2009 22:22:58
mbam-log-2009-12-04 (22-22-58).txt
Scan type: Quick Scan
Objects scanned: 88978
Time elapsed: 1 minute(s), 38 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 7
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\kt_bho.KettleBho (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{86676e13-d6d8-4652-9fcf-f2047f1fb000} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9517fb66-3dcf-44eb-8ce5-1a0f8a058d12} (Trojan.BHO) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\ProgramData\Partner\Partner.dll (Trojan.BHO) -> Quarantined and deleted successfully.
-
Has i said i deleted the files so i cant restore them is there another way to get them back.?
-
i also deleted the files now when i start my pc i get windows has blocked a program from starting thius being malwarebytes
-
forgot
running
windows vista
-
For the last 2 days when the automatic quick scan starts its not minimized.I have the box checked to start scans minimized.Anyone any ideas ?
-
I use the paid version of malwarebytes and the problem i have is.I have created an account for my son on my laptop with parental controls.When the program should check for updates its not doing it.When we tried to update manually we got a error code(cant remember number)after trying 3 times it updated.If i am logged on in my name as administrator the updates work fine.In parental controls i have it so his account allows malwarebytes to run.I use windows vista 32 home premium.Any suggestions?
-
You need to add them to your ant-virus software not malwarebytes exclusion list.
-
I just figured out that i have hidden folders.Thanx anyway.Hope this solves my problem with pc freezing.
-
I have added all but 1,which i cant locate.
C:\ProgramData\Malwarebytes' Anti-Malware\rules.ref
I dont have programdata on c drive.Any help?
-
I have the registered version.Since the program was updated to 1.41 my laptop freezes and have to press the power button to turn off.I thought is was a fault with the laptop to start with.So i rang the support center explained my laptop was freezing and couldn't shut it down.They took the laptop in for repair and replaced the hard drive.I then got my laptop back but the next day i got the same problem.I rang them up again and explained the problem and the tech person talked me throughdoing a full recovery.This time i was told not to install any other software to see if the laptop would run ok.After a few days i installed my software 1 at a time to see if it was a software issue.Everything was fine till i downloaded malwarebytes.If i uninstall the program the laptop is fine again.I am using windows vista 32 and have norton internet security 2009.Anybody got any ideas why this is happening.
-
Everything is running fine now.THANK YOU
-
Hello
And this one was also bad:
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sunjavaupdatesched (Trojan.Agent) -> Quarantined and deleted successfully.
How can we repair, this mistake ?
MAM
I have deleted these is there a way to get them back?
-
"C:\Program Files\Java\jre6\bin\jusched.exe" should be a legitimate file... Where did you download java from?
From the Java website
-
I scanned my pc and found these two problems,
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sunjavaupdatesched (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Java\jre6\bin\jusched.exe (Trojan.Agent) -> Delete on reboot.
After rebooting i would get a icon in the task bar saying windows has blocked a program from starting.The program being malwarebytes.If i right clicked on the icon i could run the program.Ran scanner again and didnt find the 2 problems above.But everytime i start my pc malwarebytes gets blocked by windows.Running windows vista.
Forgot to mention have checked start up programs and malwarebytes is ticked.
-
I scanned my pc and found these two problems,
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sunjavaupdatesched (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\Java\jre6\bin\jusched.exe (Trojan.Agent) -> Delete on reboot.
After rebooting i would get a icon in the task bar saying windows has blocked a program from starting.The program being malwarebytes.If i right clicked on the icon i could run the program.Ran scanner again and didnt find the 2 problems above.But everytime i start my pc malwarebytes gets blocked by windows.Running windows vista.
vmain.class trojan
in Malwarebytes for Windows Support Forum
Posted
i have done a scan with kaspersky and it found nothing,then did scan with norton also nothing found,then with malwarebytes and found nothing.I guess that removing all the java cache and reinstalling the program has got rid of it.Should i turn off system restore and then turn it back on to get rid of the old restore points?
Thanks