Jump to content

Recommended Posts

Hi all,

Forgive me if I explain something wrong or something, as I am pretty much a novice with this stuff.

So anyway, I have the "Real Antivirus" spyware on my computer. It changed my wallpaper, gave me the system tray icon, the whole nine. For the past day or so I've been trying to remove it- first using Malwarebytes then also using a few other tools. I've had no luck. Though there is spyware on my computer as shown by the scan on malwarebytes, nothing happens when I restart my computer.

Here is my log:

Malwarebytes' Anti-Malware 1.25

Database version: 1090

Windows 5.1.2600 Service Pack 2

2:14:36 PM 12/26/2008

mbam-log-12-26-2008 (14-14-36).txt

Scan type: Quick Scan

Objects scanned: 61672

Time elapsed: 9 minute(s), 15 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 0

Registry Values Infected: 1

Registry Data Items Infected: 1

Folders Infected: 0

Files Infected: 4

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

(No malicious items detected)

Registry Values Infected:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\betotowuji (Trojan.Agent) -> Quarantined and deleted successfully.

Registry Data Items Infected:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallpaper (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Folders Infected:

(No malicious items detected)

Files Infected:

C:\WINDOWS\system32\cs.dat (Malware.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\rc.dat (Malware.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\ps1.dat (Malware.Trace) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\alog.txt (Stolen.Data) -> Quarantined and deleted successfully.

I'm really unsure of what to do, and will provide more information if necessary. I will be checking this forum every hour or so most likely.

Any help will be greatly appreciated and I apologize if this is just the easiest thing ever.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.