Jump to content

Search the Community

Showing results for tags 'Trojan.Agent.0BGen2'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Privacy
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 1 result

  1. A Win7 Pro x64 Laptop has become infected over the past couple of days (very slow operation; protected by Malwarebytes & Vipre). Malwarebytes log extracts are appended, with the Trojan identifications including: Trojan.Agent.ED Trojan.Agent.0BGen2 Exploit.Drop.70 Trojan.Dorkbot.ED These files are on the Windows desktop (and elsewhere): HELP_DECRYPT.HTML HELP_DECRYPT.PNG HELP_DECRYPT.TXT HELP_DECRYPT.URL And "The Windows Security Center can't be started" - MicrosoftFixit50981.msi doesn't work, nor can 'Security Center' services be started. Any suggestions would be much appreciated. Dave. Detection, 12/02/2015 11:14:59, XXX, XXX-LAPTOP, Protection, Malware Protection, File, Trojan.Agent.ED, C:\Users\XXX\AppData\Local\Ommics\NmGd3.exe, Quarantine, [b57bf22b385289adefcb79a226dc0bf5] Scan, 12/02/2015 13:38:07, SYSTEM, XXX-LAPTOP, Manual, Start:12/02/2015 13:07:15, Duration:19 min 35 sec, Threat Scan, Completed, 0 Malware Detections, 6 Non-Malware Detections, Detection, 12/02/2015 15:21:49, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 188.165.164.184, ip-addr.es, 49572, Outbound, C:\Windows\SysWOW64\svchost.exe, Detection, 12/02/2015 15:21:55, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 188.165.164.184, ip-addr.es, 49572, Outbound, C:\Windows\SysWOW64\svchost.exe, Detection, 12/02/2015 15:22:01, SYSTEM, XXX-LAPTOP, Protection, Malware Protection, File, Trojan.Agent.0BGen2, C:\Users\XXX\AppData\Local\Temp\3F42.tmp, Quarantine, [ee4261bcf6940f27a6e68685de249b65] Detection, 12/02/2015 15:22:09, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 114.202.247.141, dcmaulmembers.com, 49587, Outbound, C:\Windows\SysWOW64\svchost.exe, Detection, 12/02/2015 15:22:15, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 114.202.247.141, dcmaulmembers.com, 49587, Outbound, C:\Windows\SysWOW64\svchost.exe, Detection, 12/02/2015 15:22:25, XXX, XXX-LAPTOP, Protection, Malware Protection, File, Trojan.Agent.ED, C:\Users\XXX\AppData\Local\Temp\update.exe, Quarantine, [db552bf2e4a63ef818752fef49b949b7] Detection, 12/02/2015 15:24:49, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 188.165.164.184, ip-addr.es, 49791, Outbound, C:\Windows\SysWOW64\svchost.exe, Detection, 12/02/2015 15:26:30, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 166.78.144.80, sksqqagakeicoeso.org, 49859, Outbound, C:\Windows\SysWOW64\regsvr32.exe, Detection, 12/02/2015 15:26:31, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 166.78.144.80, sksqqagakeicoeso.org, 49859, Outbound, C:\Windows\SysWOW64\regsvr32.exe, Update, 12/02/2015 15:27:22, SYSTEM, XXX-LAPTOP, Manual, Malware Database, 2015.2.11.4, 2015.2.12.3, Detection, 12/02/2015 15:27:34, SYSTEM, XXX-LAPTOP, Protection, Malware Protection, File, Exploit.Drop.70, C:\Users\XXX\AppData\Local\Temp\tmpa2d9f912\run.exe, Quarantine, [76ba2af37a101e18265d1658eb1527d9] Detection, 12/02/2015 15:27:50, XXX, XXX-LAPTOP, Protection, Malware Protection, File, Trojan.Dorkbot.ED, C:\Users\XXX\AppData\Local\Temp\tmp2206b12f\new.exe, Quarantine, [7320c15c1575d4624cd9ed99bb46fb05] Detection, 12/02/2015 15:36:12, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 50834, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 15:45:28, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 5.149.250.194, 51799, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 15:45:34, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 51800, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 15:49:22, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 216.172.61.83, appsrumors.com, 52584, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 15:49:22, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 52585, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 15:59:35, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 46.250.111.47, uociwiiqgmqwwmkq.org, 57901, Outbound, C:\Windows\SysWOW64\regsvr32.exe, Detection, 12/02/2015 16:01:24, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 58133, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:25:33, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 216.172.61.83, newslikes.com, 52571, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:25:33, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 52583, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:30:03, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 5.149.250.194, 56096, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:30:03, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 56097, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:30:20, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 166.78.144.80, sksqqagakeicoeso.org, 56098, Outbound, C:\Windows\SysWOW64\regsvr32.exe, Detection, 12/02/2015 16:30:20, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 166.78.144.80, sksqqagakeicoeso.org, 56098, Outbound, C:\Windows\SysWOW64\regsvr32.exe, Detection, 12/02/2015 16:30:41, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 5.149.250.194, 56107, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:30:42, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 56108, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:33:27, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 5.149.250.194, 56162, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:33:28, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 56163, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:33:52, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 5.149.250.194, 56169, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 16:33:52, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 56170, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Scan, 12/02/2015 16:35:10, SYSTEM, XXX-LAPTOP, Manual, Start:12/02/2015 15:27:29, Duration:29 min 50 sec, Threat Scan, Completed, 8 Malware Detections, 0 Non-Malware Detections, Detection, 12/02/2015 16:41:08, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 212.117.180.190, search-inter.com, 49192, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 17:01:26, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 216.172.61.83, appsrumors.com, 56895, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe, Detection, 12/02/2015 17:08:35, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 173.224.248.55, uociwiiqgmqwwmkq.org, 57504, Outbound, C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe, Detection, 12/02/2015 17:13:47, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 31.193.87.88, uociwiiqgmqwwmkq.org, 57732, Outbound, C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe, Detection, 12/02/2015 17:22:08, SYSTEM, XXX-LAPTOP, Protection, Malicious Website Protection, IP, 208.43.117.244, data.rtbfy.com, 58438, Outbound, C:\Program Files (x86)\Internet Explorer\iexplore.exe,
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.