We’d like to remind Forumites to please avoid political debate on the Forum.
This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Is this legit
Comments
-
yes
if you are infected after a reboot, using system restore may undo it, then start scanning and posting logs
http://forums.moneysavingexpert.com/showpost.php?p=41605432&postcount=5!!
> . !!!! ----> .0 -
Does this mean anything to you...well, I'm sure it will...but what...thanks:
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5907
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000
28/02/2011 21:22:41
mbam-log-2011-02-28 (21-22-41).txt
Scan type: Quick scan
Objects scanned: 140853
Time elapsed: 8 minute(s), 52 second(s)
Memory Processes Infected: 1
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
c:\program files\IDM\desktop sms\desktopsms.exe (Worm.P2P) -> 2276 -> Failed to unload process.
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Desktop SMS (Worm.P2P) -> Value: Desktop SMS -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\program files\IDM\desktop sms\desktopsms.exe (Worm.P2P) -> Delete on reboot.And if, you know, your history...0 -
reboot, then do a full scan, fix anything found before closing.
then post a hijackthis log
then scan with kaspersky.
are you getting any unusual symptoms?!!
> . !!!! ----> .0 -
no unusal symptoms. will follow what you said, thanks.And if, you know, your history...0
-
41 minutes, 81,000 items...can this full scan take hours and hours potentially?And if, you know, your history...0
-
yes, depends how much data you have
You've probably escaped infection, it's precautionary as are the other suggestions, post a hijackthis log now, and leave them scanning overnight if they are taking a while.
don't forget to fix anything found before closing the scanner, otherwise you will have to start from the beginning again!!
> . !!!! ----> .0 -
I couldn't find a way to copy the log. With regard leaving it overnight, i think my comp will prob go into standyby mode and lose internet connection or something (we tried to download photos overnight a few times and think this happened)...is there any way of avoiding that? apart from stayinmg up, ordering a takeaway and pulling a sickie?
edit - forgot, it is showing one item as infectedAnd if, you know, your history...0 -
turn off, or adjust power saving in control panel.
losing internet connection doesn't matter.
copy and paste the hijackthis log - control A, control C, then control v to paste!!
> . !!!! ----> .0 -
Just wouldn't seem to allow any copy but will retry, ta.And if, you know, your history...0
-
you have to scan, then save log (as a txt file) first.!!
> . !!!! ----> .0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 351.7K Banking & Borrowing
- 253.4K Reduce Debt & Boost Income
- 454K Spending & Discounts
- 244.7K Work, Benefits & Business
- 600.2K Mortgages, Homes & Bills
- 177.3K Life & Family
- 258.4K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.2K Discuss & Feedback
- 37.6K Read-Only Boards