We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Party_Animal Malwares Result

Options
Malwarebytes' Anti-Malware 1.50.1.1100
https://www.malwarebytes.org

Database version: 5363

Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702

4/8/2011 8:56:35 AM
mbam-log-2011-04-08 (08-56-35).txt

Scan type: Quick scan
Objects scanned: 136719
Time elapsed: 4 minute(s), 58 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 5
Folders Infected: 0
Files Infected: 2

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\NoChangingWallPaper (PUM.Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (PUM.Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Folders Infected:
(No malicious items detected)

Files Infected:
c:\documents and settings\administrator\Cookies\MM2048.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
c:\documents and settings\administrator\Cookies\MM256.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
In reply to earlier post, thanks
«1

Comments

  • closed
    closed Posts: 10,886 Forumite
    edited 29 December 2011 at 8:34PM
    post a hijackthis log.

    and update malwarebytes and then do a full scan, not quick - the version you have is out of date
    !!
    > . !!!! ----> .
  • Thanks can't download " hijackthis log". Malawares updated today. I'll do a full scan.
  • Posting this from laptop. Problem is on main pc. Have updated, last update 2pm today, and running full scan. Will post results. Thanks
  • closed
    closed Posts: 10,886 Forumite
    Should be


    Malwarebytes Anti-Malware 1.60.0.1800
    Database version: v2011.12.29.04

    or later.

    what happens when you try to download hijackthis
    !!
    > . !!!! ----> .
  • Also that mbam log is from
    4/8/2011 8:56:35 AM
    mbam-log-2011-04-08 (08-56-35).txt
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
  • closed wrote: »
    Should be


    Malwarebytes Anti-Malware 1.60.0.1800
    Database version: v2011.12.29.04

    or later.

    what happens when you try to download hijackthis
    Windows can't open the file, just updated malwares twice today. Why is it an old version?
  • GunJack
    GunJack Posts: 11,834 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    edited 29 December 2011 at 11:15PM
    Malwarebytes' Anti-Malware 1.50.1.1100
    https://www.malwarebytes.org

    Database version: 5363

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702

    4/8/2011 8:56:35 AM
    mbam-log-2011-04-08 (08-56-35).txt

    check the version number and database number, current, as has been pointed out, is 1.60.xx.xx and db version format has recently changed to something like a 9-digit number as of 22/12/2011

    edit - now the db version is date-stamped as part of the version name :)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • GunJack wrote: »
    check the version number and database number, current, as has been pointed out, is 1.60.xx.xx and db version format has recently changed to something like a 9-digit number as of 22/12/2011
    Slow tonight GJ :p new thread https://forums.moneysavingexpert.com/discussion/3699295
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
  • GunJack
    GunJack Posts: 11,834 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic

    only just getting on tonight..... found this one before he posted the new one :p
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • sorry, just got the hang of it. I'd clicked on an old scan before.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.8K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.