Page 3 of 3 FirstFirst 123
Results 21 to 23 of 23

Thread: Win32.Agent.bb

  1. #21
    Junior Member
    Join Date
    Jan 2012
    Posts
    24

    Default

    Hi Satchfan,

    Sorry for the delayed response. The MBAM report is as follows:



    Malwarebytes Anti-Malware 1.60.0.1800
    www.malwarebytes.org

    Database version: v2012.01.23.02

    Windows 7 x86 NTFS
    Internet Explorer 8.0.7600.16385
    Rob :: SONYLAPTOP2 [administrator]

    24/01/2012 09:32:10
    mbam-log-2012-01-24 (09-32-10).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 184569
    Time elapsed: 7 minute(s), 58 second(s)

    Memory Processes Detected: 0
    (No malicious items detected)

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 1
    C:\Users\Rob\Downloads\download_Ladbrokes.exe (PUP.Casino.Gen) -> Quarantined and deleted successfully.

    (end)

  2. #22
    Junior Member
    Join Date
    Jan 2012
    Posts
    24

    Default

    Contents of Eset log text file:


    C:\Microgaming\Poker\LadbrokesMPP\install.exe a variant of Win32/PrimeCasino application cleaned by deleting - quarantined
    C:\Qoobox\Quarantine\C\ProgramData\Tarma Installer\{2E1037EA-038A-425F-86B9-6CD19B8497E9}\_Setupx.dll.vir a variant of Win32/Adware.Yontoo.B application cleaned by deleting - quarantined

  3. #23
    Security Expert Satchfan's Avatar
    Join Date
    Feb 2009
    Location
    Exeter, UK
    Posts
    259

    Default

    Hi Robertomac

    Well done, your computer appears to be clean.

    Now that you’re free from malware, as long as your computer seems to be running well, please follow these simple steps to tidy up you computer and decrease the likelihood of getting infected again:


    Uninstall Combofix

    Follow these steps to uninstall Combofix
    • click START then RUN
    • now type Combofix /uninstall in the runbox and click OK.

    Note the space between the X and the /, it needs to be there.


    • please follow the prompts to uninstall Combofix.
    • once it's finished uninstalling itself you will receive a message saying Combofix was uninstalled successfully
    .

    ===================================================

    Uninstall OTL
    • double-click OTL.exe
    • click the CleanUp! button.
    • select Yes when the Begin cleanup Process? prompt appears.
    • if you are prompted to reboot during the cleanup, select Yes.
    • the tool will delete itself once it finishes, if not delete it by yourself.
    • NOTE: If you receive a warning from your firewall or other security programs regarding OTL attempting to contact the internet, please allow it to do so.

    aswMBR can be deleted from your desktop.

    ===================================================

    Uninstall and update Java

    The version you have is old and therefore vulnerable to infections.

    • from the Start menu, select Control Panel.
    • in Large or Small icon view, click Programs and Features. If you're using Category view, under "Programs", click Uninstall a program.
    • look for all versions of Java or Java Rintime Environment, and click Uninstall. Alternatively, right-click the program and select Uninstall.

    Install Version 6 Update 30, from here

    ==================================================

    Windows updates

    I notice that Windows updates are waiting to be installed. Click here to get the latest Windows updates:

    ==================================================

    Update and run Malwarebytes. This really is an excellent program that you should update and run on a regular basis, probably weekly.

    ===================================================

    Spybot - Search and Destroy – Although you have Spybot on your computer, it only provides real time spyware and hijacker protection if TeaTimer is enabled which it is not on your computer. I suggest you enable it.

    A tutorial on using SS&D can be found here:

    You should scan your computer with the program on a regular basis as you would with your anti-virus software.

    ===================================================

    It’s important to keep programs up to date so that malware doesn't exploit any old security flaws.

    FileHippo Update Checker is an extremely helpful program that will tell you which of your programs need to be updated.

    ===================================================

    I also recommend that you read the following:

    How to prevent malware by miekiemoes


    Finally, if your computer has no more problems, I'll close this topic.

    Safe computing

    Satchfan

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •