Hi, i run a program today, but since it seemed a little not trustworthy i used sandboxie, but somehow it managed to pass through, disable UAC for a moment, but i instantly turned it on again, and create a fake svchost.exe file in my windows folder. It registered it self to boot on the next startup of windows but windows defender stopped it. I haven't realized it before the first restart, but after that with a full scan of spybot i seem to have managed to delete it. one registry key was in use and spybot restarted the pc and scanned before the vista booted up and found nothing.
Before spybot deleted it, i run the context menu scanner of spybot and it identified it for smitfraud-c.generic, and while the full system scan, it recognized the fake svchost.exe file as CoolWWWSearch.olehelp.
So can i rest sure that it was deleted?
I downloaded some additional scanners, and no one finds something wrong. But maybe its hidden somewhere.
So can someone plz assist me, maybe i can post some logs here to analyze and tell me that its gone for sure? otherwise, any advice to remove it completely would be greatly appreciated.
I am very concerned about keyloggers and trojans in general and if i cant get it of my system i will reformat my hard drives but in this way i will loose data.
So plz some can help me plz.
Thanks in advance for reading my problem.