Jump to content

Infected please help


Crim

Recommended Posts

today .. about 3 hours ago i noticed my PC acting very strange.... when i try to open ANYTHING the system stalls and the hour glass stays up and it kinda turns all white and i cant click anything but hte mouse still moves.... ihave Avira and MBAM .. i ran MBAM fullscan in safemode and it returned 3 infections the first time.. it suposedly removed them .. i rrestarted and it found 4 more infections which look like the same as the first ... but i see something up there saying perlx.exe what the hell is that?? . .. heres my log .. someone please help as quick as u can while my pc is still halfway functional..

Malwarebytes' Anti-Malware 1.44

Database version: 3772

Windows 6.1.7600 (Safe Mode)

Internet Explorer 8.0.7600.16385

2/21/2010 8:09:00 PM

mbam-log-2010-02-21 (20-09-00).txt

Scan type: Full Scan (C:\|)

Objects scanned: 253589

Time elapsed: 23 minute(s), 1 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 2

Registry Values Infected: 0

Registry Data Items Infected: 2

Folders Infected: 0

Files Infected: 2

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{3uq75lv2-554l-31jw-4741-pr48v0dfs1a4} (Generic.Bot.H) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Cerberus (Backdoor.Trace) -> Quarantined and deleted successfully.

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

HKEY_CLASSES_ROOT\regfile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Folders Infected:

(No malicious items detected)

Files Infected:

C:\Windows\perlx.exe (Generic.Bot.H) -> Quarantined and deleted successfully.

C:\Program Files (x86)\Recycle\UNWISE.EXE (Malware.Packer.Morphine) -> Quarantined and deleted successfully.

Link to post
Share on other sites

  • 4 weeks later...
  • 2 weeks later...
  • Staff

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.