PDA

View Full Version : system32.exe added by AGOBOT-KU WORM!



wandering-kid
2008-10-25, 13:22
(I am new to spybot and the forum so please excuse any mistakes I make!)

The tea-timer alerted me of this change in the start up process "system32.exe added by AGOBOT-KU WORM!" change - value deleted. Allow change or deny?
This was activated by just a normal start up when my computer is connected to the internet. I did not activate any program by the way.
It's confusing, is spybot deleting the registry entry or is the entry operating? So whether to allow or deny the change is difficult to determine, please help anyone???

drragostea
2008-10-26, 02:07
I would suggest that if you are not familiar with TeaTimer (Spybot-Search&Destroy's Resident Shield), you can disable it anytime.

The "system32.exe" process should not be in the Startup Manager under normal circumstances.

If it's value was removed, then it means that the process will not startup in future reboots.

Have you allowed it or denied it?