Jump to content

wildman424

Malware Hunters
  • Posts

    1,679
  • Joined

Everything posted by wildman424

  1. from Microsoft SDK ? File name: ctrpp.exe Submission date: 2011-06-05 22:03:01 (UTC) Result: 0/ 43 (0.0%) MD5 : 39b94ea30633fedb92aa0ba960dcaac0 SHA1 : 1eff950042ea9b3f75ea123179ac5772cb373f91 SHA256: 406f512d82442819587415ba1b45def42bf64e963651a2793a3f768ee8eae6ee http://www.virustotal.com/file-scan/report.html?id=406f512d82442819587415ba1b45def42bf64e963651a2793a3f768ee8eae6ee-1307311381 === Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Database version: 6776 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 6/5/2011 5:52:17 PM mbam-log-2011-06-05 (17-52-17).txt Scan type: Full scan (C:\|D:\|E:\|) Objects scanned: 292458 Time elapsed: 2 hour(s), 41 minute(s), 0 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 1 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\documents and settings\wildman424\my documents\visual studio 2010\microsoft sdk\Tools\Bin\ctrpp.exe (Trojan.FakeMS) -> Quarantined and deleted successfully. ==== Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Database version: 6779 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 6/5/2011 7:24:51 PM mbam-log-2011-06-05 (19-24-51).txt Scan type: Quick scan Objects scanned: 1 Time elapsed: 3 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 1 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\documents and settings\wildman424\my documents\visual studio 2010\microsoft sdk\Tools\Bin\ctrpp.exe (Trojan.FakeMS) -> Quarantined and deleted successfully. [94e773a76d933cc4ae94b7e69070ab55]
  2. some local kids these dudes are hilarious :lol: {removed} Toejappy Look At Me Now I pulled it down maybe just a little too extreme there called Toejappy, you can find em on youtube
  3. http://www.youtube.com/watch?v=p6LQXJsFIVw&feature=BFa&list=PLCF769C62FAEE7DDD&index=35 http://www.youtube.com/watch?v=NaEcm_754Ug
  4. http://www.youtube.com/watch?v=bhMIiggCgvQ&playnext=1&list=PLCF769C62FAEE7DDD
  5. that thing is garbage you should be embarrassed to produce such a piece of crap Thanks for giving us your rouge, so much easier then hunting them FakeAV.Violasoft Spycar Test - failed Eicar Test - failed ZeroDay Test - failed this piece of junk contraption is? useless,it doesn't detect squat it downloads it's "update" from a malicious IP it didn't detect anything it allowed malware to run on the test machine a folder with 154 pieces of malware it didn't detect not one of them - test folder Malwarebytes scan of test folder Malwarebytes' Anti-Malware 1.51.0.1200 www.malwarebytes.org Database version: 6753 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 6/2/2011 10:04:27 AM mbam-log-2011-06-02 (10-04-21).txt Scan type: Quick scan Objects scanned: 461 Time elapsed: 1 minute(s), 20 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 154 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: c:\documents and settings\Tester1\my documents\malware reasearch\test\alterhostsfile.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\bestantivirus2011(1).exe (Trojan.Downloader.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\bestantivirus2011(2).exe (Trojan.Downloader.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\bestantivirus2011.exe (Trojan.FakeAlert.PGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\HKCU_Run.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\hkcu_runonce.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\hkcu_runonceex.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\HKLM_Run.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\hklm_runonce.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\hklm_runonceex.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-homepagelock.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killadvancedtab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killconnectionstab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killcontenttab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killgeneraltab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killprivacytab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killprogramstab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-killsecuritytab.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-sethomepage.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\ie-setsearchpage.exe (Simulation.Spycar) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\javac.exe (Trojan.Banker) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\jcq.exe (Trojan.Downloader.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\pms.exe (Trojan.Downloader.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\w32_blaster_remover.exe (Spyware.Agent) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_01b24e0a9c43c473161b7587f83e17fe.ex0 (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_01b362d8a9d0984018fe873b61ab3d8a.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_01b3a0a9816a4b86322a283c9b994256.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_01e5cd00000c6387c5a5fc2ee95fd2f0.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_01f52b27ca96dcf91322602b3e15933e.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_021384ea9b168ae0fbeeaefe75617ca9.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_023a62d903f5ce412be3ea33e6de60aa.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_02a2f450a82eb32e3dbda6aef2b9ff8e.ex0 (Backdoor.Bot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_030398f2af3e40cc4f812e2dd0f054e1.ex0 (Backdoor.Bot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_032e762a30a877258360e5e57d2858ce.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_03c1b1a60716607f320e2c80af152c11.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0403608e4eb8f064bdfecf8edd71f149.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_042271fc19604f5d861196b75c4e5b40.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_046721abfddec19a168cb1cae24dff60.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0484228e57b026cb2e6c1ff051ed9cb6.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0484cdb6a8f48fc321a379d4d56ddbf2.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_04966c92954176339d796ebac55bfaeb.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_08c6c744a10efb15616fe031375bce17.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0903781f3a893ed6657bf2850f7ac7ae.ex0 (Trojan.Agent) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0906b09b68f3b9869b39795572132316.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_09073e61efc7d333ed8054e437e88426.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_091d6e13f2da46bd8b6331d9831c7529.ex0 (Trojan.FakeAlert) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0923347b41a470224478c27f99570d15.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_09757ff1b2eb9883c4cdaa638bbdd516.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_09d1c1a3dbe173b57981a748ea83d987.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_09dc110608c1d49c80f021cfc73992e2.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0a37868c5bb735eec655ae8546581d94.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0a64f9e0e3751f1c931149c54a19c707.ex0 (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0ac6cdc4e5c18f197a2ce36be79cd055.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b02cd966a5ee0ea0ed9bcf874cefb6e.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b1a18c037ffec556d3dee81584bbb49.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b464cf55962303d23b4ae61984e6d96.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b5d874bb2718e8562c2b6398b0f91c8.ex0 (Trojan.FakeAlert) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b6ee6df701b3d8a024a755b8b6eac68.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0b748a4f8636a80ea12015507b6ae1bc.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0bfe6a47edab92b928b1b1b16209d47b.ex0 (Trojan.FakeAlert) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c13ace64a84d286afc3b0e17e38a8be.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c1ac4235b4370062be521348f0592c8.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c3256f885a8718ba0a693effd989ce2.ex0 (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c346f2f428299b8536ea2c93264cdf7.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c40c0dbfb55cb7ad7f9810560b24cec.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c6d6bf6be68d5531b98f1751e911035.ex0 (Rogue.SecurityShield) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c79fe54dda2e786ae5efa18d63c0268.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0c7f5fbd7758663abea44bbd28493d4d.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0cecf9625478b4476362a3d5e10a2c5c.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0d16db0597a968e906dd53d803e6ad84.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0d1fe2972feae642f5fc823f0d5a6572.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0d3317c247d28d0634057484d1f1dfea.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0d5133c11f5992a1f080ed5f7cfbe140.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0d9f8434b14445b2b1a2e0cc402aeaff.ex0 (Trojan.Zbot.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0db22c564e4ff03864904b400414db35.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0ddd1e1f825204f68d1ca5dfe31c57b4.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0e27ce48e915471ffdb4602e0c43f228.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0e3d8aa2271113d9f6c4ac1300cd14d6.ex0 (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0e430809c2887686fd6b790e9555fd9a.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0e6c3081b534618e47c2a07b5c0ad393.ex0 (Spyware.Passwords.XGen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0ebfd5a1ca8b98cbaf4346905cede455.ex0 (Trojan.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0ed13e842777562a1b29307c6e21ea1d.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0f50312e20f6b5f2ff1ec5bbdfca4ee3.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0f7d581dfa08f3b981eebbf0f785b3f3.ex0 (Spyware.Zbot) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zeusbin_0f816e0ea061ebcc16b0c43df15070ce.ex0 (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\Zoxo.exe (Trojan.SpyEyes) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\3dmark03prov3.4.0\Keygen.exe (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\acebuddyv3.0\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\adobeacrobatv6.0professional\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\akalaexelockv3.0\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\akalapasswordrevealerv1.0\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\allmediafixerprov2\Keygen.exe (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\allsonicfoundry\Keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\allsonyproducts\Keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\argosoftftpserverforwindowsv1.4.1.8\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\argosoftmailserverprowithimapv1.8.5.9\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\argosoftnewsserverv1.0.2.1\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\backupmagicv1.40\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\cdtomp3makerv1.15\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\cleanupxpv1.0.105\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\consealpcfirewallv2.09\Keygen.exe (Trojan.Agent.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\coreldrawgraphicssuitex3\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\cyberlinkpowerdvdv5.0\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\divxprov5.02bundle\Keygen.exe (Trojan.Agent.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\dumeterv3.05\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\easycd-daextractorv4.7.1\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\familykeyloggerv2.5\family.key.logger.2.5-keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\fontmapv2.33\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\freememprofessionalv5.2\Keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\guitarprov4.07\keygen.exe (Trojan.Backdoor) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\HideIPv2.31\keygen.exe (Trojan.Agent.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\imtoocdripperv1.0.2\k-gen_imtoo_cd_ripper_v1.0.2.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\imtoodvdaudioripperv1.0.21.709\imtoo.dvd.audio.ripper.v1.0.21.709.incl.keymaker-embrace\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\imtoodvdripperv2.0.12.331\imtoo.dvd.ripper.v2.0.12.331.incl.keymaker-embrace\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\imtoomp3wavconverterv1.0.13.1029\imtoo.mp3.wav.converter.v1.0.13.1029.incl.keymaker-embrace\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\incopycsv3.0\Keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\installshielddevstudiov9.0\cr-is90k.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\installshieldexpressv5.0sp2\keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\installshieldprofessionalv7.01\keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\intervideowindvdplatinumv7.0.b27.066\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\lavavoaudiocdripperv2.9.0.0\lavavo.cd.ripper.v2.9.0.0.incl.keymaker-embrace\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\macromediadreamweaverv8.0\Keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\magicutilities2005v3.40\magic.utilities.2005.v3.40.incl.keygen.winall-cphv\keygen.exe (Malware.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\mightyfaxv3.20\mightyfax.v3.20.win9xme.incl.keygen-virility\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\neroburningromv6.6.x.x\ahead.nero.burning.rom.v6.6.0.13.ultra.edition.winall.incl.keymaker-core\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\neroincdv4.3.14.1\ahead.nero.incd.v4.3.14.1.winall.incl.keymaker-core\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\neromediaplayerv1.4.0.35\ahead.nero.mediaplayer.v1.4.0.35.winall.incl.keymaker-core\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\neromixv1.4.0.32\ahead.neromix.v1.4.0.32.winall.incl.keymaker-core\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\nerovisionexpressv3.1.0.7\ahead.nerovision.express.v3.1.0.7.winall.incl.keymaker-core\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\o&odefragprofessionaleditionv8.0\oo.defrag.professional.edition.v8.0.incl.keymaker-zwt\keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\officeprofessionalv2003\microsoft.office.professional.2003.keymaker.only-again\Keymaker.exe (Malware.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\Operav8.01\opera.v8.01.7624.incl.keymaker-zwt\keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\passwortagentv1.2.0\keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\powerdvdv5.0xp\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\powerkaraokeplusv1.2.13\Keymaker.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\quicktimev4-5-6-7\KeYGeN.exe (Trojan.Dropper) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\retinanetworksecurityscannerv4.9.86\keygen.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpastaudiocapturev5.1\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpastaudiocdripperv5.5.2.50802\river.past.audio.cd.ripper.v5.5.2.50802.winall.keygen.only-brd\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpastaudioconverterv3.0.2.40128\keygen-riverpastaudioconverter.exe (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpasttalkativev3.2\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpastvideoperspectivev5.1\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\riverpastvideoslicev3.1\keygen.exe (Malware.Packer.Gen) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\smartvideoconverterv1.5.22\Keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\snagitv7.2.5\keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\supervideoconverterv1.0.9\keygen-supervideoconverter.exe (Spyware.Passwords) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\tinyfirewall2005prov6.5.120\tiny.firewall.2005.pro.v6.5.120.incl.keymaker-again\keymaker.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\TVToolv9.7\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\visualcdripperv2.10\visual_cd_ripper_2.10.exe (RiskWare.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\xdvdripperv1.2.1\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\xilisoftwmamp3converterv1.0.13.1030\xilisoft.wma.mp3.converter.v1.0.13.1030.incl.keymaker-embrace\keygen.exe (Trojan.Downloader) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zonealarmprov6.0.631.003\zonelabs.zonealarm.pro.v6.0.631.003.incl.keymaker-zwt\keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zonealarmsecuritysuitev6.0.631.003\zonelabs.zonealarm.security.suite.v6.0.631.003.incl.keymaker-zwt\keygen.exe (Riskware.Tool.CK) -> No action taken. c:\documents and settings\Tester1\my documents\malware reasearch\test\zonealarmwithantivirusv6.0.631.002\zonealarm.with.antivirus.v6.0.631.002.incl.keymaker-zwt\keygen.exe (Riskware.Tool.CK) -> No action taken. Avast Pro scan of test folder 119 detections edit: correction it detected one file and it was a false positive a dll included with a tool we use
  6. we hate to see you go, thank you for the great contributions you've made, hope we see you back here again soon.
  7. Welcome to Malwarebytes
  8. We don't work on Malware removal in the general forums.Please DO NOT POST LOGS in the "General Forums" unless requested please follow All the instructions below and an Expert will assist you Please print out, read and follow the directions HERE, skipping any steps you are unable to complete. Then post a NEW topic HERE.One of the Expert helpers there will give you one-on-one assistance when one becomes available. After posting your new post make sure under options that you select Track this topic and choose one of the Email options so that you're alerted when someone has replied to your post. NOTE: Please DO NOT post back to (bump) your topic within the first 48 hours. Replying to your own posts changes the post count and helpers are looking for topics with zero replies. If you reply to your own post helpers may think that you're already being helped and thus overlook your post. If there is no reply from any experts after 48 hours, you can reply to the topic, asking for help again. Or You may send a Private Message to a Moderator asking for assistance. Additionally As a paying customer, you can contact the help desk at support@malwarebytes.org or via this help desk link HERE Our online experts will be able to assess your problem further If you're a Corporate or Technician Licensed customer seeking assistance: Please send an email to Corporate Support Team <corporate-support@malwarebytes.org> with your Cleverbridge order reference number and they will assist you. Please be patient, someone will assist you as soon as it is possible.
  9. yep, that's the I used to make user bars for our staff. its tricky but it works
  10. It should be noted that Ark scanners commonly produce false positives, you should seek the help of an Expert to correctly interpret the results before taking any action on them
  11. I have no ideal what the Stig is, he does kinda look like that guy huh
  12. Windows XP sp3 x86 Installed on top of previous version no problems
  13. dratz the reg script I created for you did what it was suppose to but still didn't solve your issue I have to go away for a few days but your in good hands with Exile
  14. I see the problem lets correct it First backup the registry Modifying the Registry can create unforeseen problems, so it's always wise to create a backup before doing so. This is a free program that allows you to keep a complete backup of your registry and restore it when needed. ERUNT utility program Download: Please download ERUNT...by Lars Hederer. Save it to your desktop. Double-click erunt-setup-exe to run the install process. Install ERUNT by following the prompts. VISTA & Windows 7 users must right-click erunt-setup-exe, select "Run As Administrator" to run the install process. Install by following the prompts. Start ERUNT either by double clicking on the desktop icon or choosing to start the program at the end of the setup process. VISTA & Windows 7 users must right-click the desktop icon, select "Run As Administrator" or start it at the end of the setup process. Choose a location for the backup. Note: the default location is C:\WINDOWS\ERDNT which is fine. - perfered so you can get to it from the recovery console if need be Click on OK ... then click on "YES" to create the folder. ===== next run this reg script to fix the entry Please open a new Notepad file. Copy and paste the following from the codebox exactly as its written into Notepad: Windows Registry Editor Version 5.00 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders "AppData"=hex(2):25,00,55,00,53,00,45,00,52,00,50,00,52,00,\4F,00,46,00,49,00,4C,00,45,00,25,00,5C,00,41,00,70,00,70,00,44,00,61,00,\74,00,61,00,5C,00,52,00,6F,00,61,00,6D,00,69,00,6E,00,67,00,00,00 Important: there has to be a blank line at the end Save this as fix.reg, save it to your desktop. Double click fix.reg to run it. Select yes to the registry merge prompt. then see if you can install or uninstall iTunes without any errors
  15. hard to tell sorry wish I had a better answer for you lets try this: Go to Start / program files / accessories / command prompt and right click on command prompt and click on run as administrator. Type sfc /scannow (note the space - it's important) and press enter and let it run. It will scan some of your system files and fix them if it can (let us know if it finds any errors it cannot repair). If it completes successfully, try the installation again. Also, you may need to be logged in as an administrator to install the program - some programs require that (but I'm not sure in this case so log in as an administrator just to be sure that isn't the issue). Let us know if this works or if it doesn't work (and we can try some other option).
  16. %APPDATA% is a system variable for your Application Data folder, in Windows 7 its C:\Users\your_name\AppData it is a hidden folder, The issue your discribing may occur if there is an incorrect setting in one of the following registry subkeys: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders try Microsoft Fix it 50356 and see if it resolves the issue for you
  17. Happy Birthday Spidey
  18. Welcome To Malwarebytes I'd be glad to point you in the right direction please follow All the instructions below above and an Expert will assist you ( same as Sam's Directions)
  19. I'm getting an IP block on Hex-Rays site, its blocking the download for IDA Pro Free 02:27:26 wildman424 IP-BLOCK 95.211.133.202 (Type: outgoing) 02:27:29 wildman424 IP-BLOCK 95.211.133.202 (Type: outgoing) 02:27:35 wildman424 IP-BLOCK 95.211.133.202 (Type: outgoing) this link http://95.211.133.202/files/idafree50.exe on this page http://www.hex-rays.com/idapro/idadownfreeware.htm ==== VT report for the link: Normalized URL: http://95.211.133.202/files/idafree50.exe URL MD5: 41d35e616ba2bc9228037ab743d74e5c Content-Type: application/x-msdos-program Submission date: 2011-05-14 23:15:46 (UTC) Webscan result: 1 /16 (6.2%) http://www.virustotal.com/url-scan/report.html?id=41d35e616ba2bc9228037ab743d74e5c-1305407746 ==== File I was downloading: File name: idafree50.exe Submission date: 2011-05-14 23:10:47 (UTC) Result: 0/ 43 (0.0%) MD5: 15bed40e1fd1c8d095b1d7d9f47fef18 http://www.virustotal.com/file-scan/report.html?id=e3a5e1f2334f68f14f5ee81c3fcc44121cb24f514be78dfc30805ceee0de6029-1305414647
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.