Jump to content

Probably false positives


littlea

Recommended Posts

Hello

Please, can you post (attach) the mbam log ?

Here is the mbam log

Malwarebytes Anti-Malware 1.62.0.1300

www.malwarebytes.org

Database version: v2012.07.20.09

Windows XP Service Pack 3 x86 NTFS

Internet Explorer 8.0.6001.18702

Owner :: ÆÆÆ [administrator]

21.7.2012 1:54:38

mbam-log-2012-07-21 (02-06-25).txt

Scan type: Quick scan

Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM

Scan options disabled: P2P

Objects scanned: 231269

Time elapsed: 6 minute(s), 43 second(s)

Memory Processes Detected: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Registry Keys Detected: 0

(No malicious items detected)

Registry Values Detected: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Folders Detected: 1

c:\nvidia\fjnwzi (Trojan.Agent) -> No action taken.

Files Detected: 8

c:\nvidia\dnlauncher_.dll (Trojan.Agent) -> No action taken.

c:\nvidia\win2kxp\769\svchost.exe (Trojan.Agent) -> No action taken.

c:\nvidia\displaydriver\ghng.ghfh (Backdoor.Agent) -> No action taken.

c:\nvidia\displaydriver\regeit.dll (Backdoor.Agent) -> No action taken.

c:\nvidia\displaydriver\time360.iou (Backdoor.Agent) -> No action taken.

c:\nvidia\displaydriver\svchfst.exe (Trojan.Agent) -> No action taken.

c:\nvidia\displaydriver\svchwst.exe (Trojan.Agent) -> No action taken.

c:\nvidia\fjnwzi\svchpstb.vbs (Trojan.Agent) -> No action taken.

(end)

Link to post
Share on other sites

  • 5 weeks later...

No intention to hijack this thread, but I've found McAfee write-ups for each of the files detected by MBAM, in those exact locations, so these are most certainly no false positives

http://home.mcafee.c...key=883000#none

http://home.mcafee.c...key=567339#none

http://vil.nai.com/v...nt/v_567314.htm

http://home.mcafee.c...aspx?key=567293

http://home.mcafee.c...aspx?key=588405

http://home.mcafee.c...aspx?key=730483

http://home.mcafee.c...aspx?key=834387

I strongly suggest you start by reading the following topic:

I'm infected - What do I do now?

Then start a new topic in the Malware Removal - HijackThis Logs section, and one of the analysts will come to your assistance as soon as one is available

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.