Jump to content

help with log results


Recommended Posts

need to know if i should have removed these items based on the logs

Malwarebytes' Anti-Malware 1.33

Database version: 1711

Windows 5.1.2600 Service Pack 3

1/30/2009 10:17:36 PM

mbam-log-2009-01-30 (22-17-36).txt

Scan type: Full Scan (C:\|)

Objects scanned: 113181

Time elapsed: 1 hour(s), 17 minute(s), 17 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 2

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 1

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7db2d5a0-7241-4e79-b68d-6309f01c5231} (Trojan.FakeAlert) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{7db2d5a0-7241-4e79-b68d-6309f01c5231} (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\Program Files\McAfee\VirusScan\scriptsn.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Malwarebytes' Anti-Malware 1.33

Database version: 1709

Windows 5.1.2600 Service Pack 3

1/30/2009 1:52:03 PM

mbam-log-2009-01-30 (13-52-03).txt

Scan type: Full Scan (C:\|)

Objects scanned: 112938

Time elapsed: 1 hour(s), 30 minute(s), 35 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 2

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\WINDOWS\system32\dllcache\beep.sys (Trojan.Patched) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\drivers\beep.sys (Trojan.Patched) -> Quarantined and deleted successfully.

Thanks for the help anyone

Link to post
Share on other sites

You need to restore all of these from your quarantine.

The first log shows a current FP against the McAfee Script Checker (or something like that). The second shows a FP against beep.sys (which was fixed as soon as we knew about it).

I've been trying to talk to Bruce about the McAfee issue, but I don't think he's actually there. Add it to your ignore list for now.

Link to post
Share on other sites

You need to restore all of these from your quarantine.

The first log shows a current FP against the McAfee Script Checker (or something like that). The second shows a FP against beep.sys (which was fixed as soon as we knew about it).

I've been trying to talk to Bruce about the McAfee issue, but I don't think he's actually there. Add it to your ignore list for now.

Thank you very much for your help

Link to post
Share on other sites

OK, our Lead Researcher says the McAfee false positive should be fixed. Please remove it from your ignore list, and follow the instructions below (number 1 thru 3). This will start Malwarebytes' Anti-Malware in Developer Mode. Please run a Quick Scan so that we can see if the problem persists, and if so can get some more information about it.

1. Click the Start button.

2. Click Run.

3. Type in "mbam.exe /developer", without the quotes.

Please copy and paste the contents of the log into a reply for us, and I will make sure that our lead researcher gets it. :D

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.