dwdraw2 Posted October 2, 2013 ID:736724 Share Posted October 2, 2013 I just got done scanning with Malwarebytes. It discovered 11 malwares. Within the listing of some of the (PUPs) listing had the word "Roaming". What does it mean by roaming? Does it mean the PUPs (puppys) actually move randomly around, or is it a name given to them? After the scan, I saved a log of the scan, then I deleted all listed malware, then restarted computer. Can someone tell me what type of Trojan that I was infected with? And what does it do? Below is a copy of the scan. Malwarebytes Anti-Malware (PRO) 1.75.0.1300www.malwarebytes.org Database version: v2013.10.01.06 Windows 7 Service Pack 1 x64 NTFSInternet Explorer 9.0.8112.16421Dan :: BUBBA [administrator] Protection: Enabled 10/1/2013 3:40:00 PMMBAM-log-2013-10-01 (19-31-05) PUP's and more.txt Scan type: Full scan (C:\|)Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUMScan options disabled: P2PObjects scanned: 793779Time elapsed: 3 hour(s), 39 minute(s), 12 second(s) Memory Processes Detected: 0(No malicious items detected) Memory Modules Detected: 0(No malicious items detected) Registry Keys Detected: 0(No malicious items detected) Registry Values Detected: 0(No malicious items detected) Registry Data Items Detected: 0(No malicious items detected) Folders Detected: 0(No malicious items detected) Files Detected: 11C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabStart.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabStart64.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabWrap.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabWrap64.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe (PUP.Optional.DefaultTab.A) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\update.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old.000\ProgramData\WORDsearch\Library\RyrieNotes\Linked\images\coverimage.jpg (Extension.Mismatch) -> No action taken.C:\Windows.old.000\Windows\Logs\CBS\CBS.log (Extension.Mismatch) -> No action taken.C:\Windows.old.000\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[1].exe (PUP.Optional.Sweetim) -> No action taken.C:\Windows.old.000\Windows\Temp\HPSLPSVC0003.log (Trojan.Small.Gen) -> No action taken. (end) By-the-way, I want to thank the folks here at Malwarebytes for an outstanding malware scanning program. Thanks for your time. dwdraw2 Link to post Share on other sites More sharing options...
Root Admin AdvancedSetup Posted October 4, 2013 Root Admin ID:737587 Share Posted October 4, 2013 Sorry for the delay. Please run MBAM and check for updates and do a Quick Scan. This time tell MBAM to remove the threats. If you need further assistance after that please let me know. Link to post Share on other sites More sharing options...
dwdraw2 Posted October 4, 2013 Author ID:737764 Share Posted October 4, 2013 Thanks for the reply Ron. I had already deleted them using Malwarebytes. What I was wanting to know is what specifically does this particular Of "Trojan.Small.Gen" do to the performance of your operating system? I did a internet search on it but did not find this particular Trojan. I thought that somebody might be familiar with this type of Trojan that would elaborate a little on it. But, thanks for your help. dwdraw2 Link to post Share on other sites More sharing options...
Root Admin AdvancedSetup Posted October 4, 2013 Root Admin ID:737812 Share Posted October 4, 2013 I'm sorry but I don't know the specifics of the detection. Since you're okay though I'll go ahead and close your topic now. Thank you Link to post Share on other sites More sharing options...
Root Admin AdvancedSetup Posted October 4, 2013 Root Admin ID:737813 Share Posted October 4, 2013 Since this issue is resolved I will close the thread to prevent others from posting here. If you need assistance please start your own topic and someone will be happy to assist you. Link to post Share on other sites More sharing options...
Recommended Posts