Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Support
Windows Malware Removal Help & Support
Security Shield
Message
<blockquote data-quote="ziggy783" data-source="post: 58851" data-attributes="member: 1714"><p>I have pasted the MBAM log below. </p><p>The MBAM program ran properly and prompted a re-start. I accessed this log after the re-start.</p><p>A couple of notes:</p><p>- When I click on the "quarantine" tab on MBAM, there are 52 total items noted. Should I "delete all" at this point? If you recall, the exe program starting with the letter z was quarantined by me earlier.</p><p>- No more Security Shield pop-ups are coming up</p><p>- However, my wireless network status is now "local only" -- no internet</p><p>- Also, it appears that hidden files are being shown on the desktop</p><p>- Finally, I have not yet run Windows Repair by Tweaking.com -- should I do that at this point?</p><p>Thanks</p><p></p><p></p><p></p><p></p><p>Malwarebytes Anti-Malware (Trial) 1.61.0.1400</p><p>www.malwarebytes.org</p><p></p><p>Database version: v2012.06.29.11</p><p></p><p>Windows Vista Service Pack 2 x86 NTFS</p><p>Internet Explorer 8.0.6001.18943</p><p>Paulgun :: PAULGUN-PC [administrator]</p><p></p><p>Protection: Disabled</p><p></p><p>6/30/2012 12:24:24 AM</p><p>mbam-log-2012-06-30 (00-24-24).txt</p><p></p><p>Scan type: Full scan</p><p>Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM</p><p>Scan options disabled: P2P</p><p>Objects scanned: 474479</p><p>Time elapsed: 2 hour(s), 6 minute(s), 24 second(s)</p><p></p><p>Memory Processes Detected: 0</p><p>(No malicious items detected)</p><p></p><p>Memory Modules Detected: 0</p><p>(No malicious items detected)</p><p></p><p>Registry Keys Detected: 0</p><p>(No malicious items detected)</p><p></p><p>Registry Values Detected: 0</p><p>(No malicious items detected)</p><p></p><p>Registry Data Items Detected: 0</p><p>(No malicious items detected)</p><p></p><p>Folders Detected: 9</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\db (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\dwld (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\report (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\res1 (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Program Files\SmartShopper (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Program Files\SmartShopper\cs (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p>C:\Program Files\SmartShopper\cs\antiphishing (Adware.SmartShopper) -> Quarantined and deleted successfully.</p><p></p><p>Files Detected: 8</p><p>C:\Users\Paulgun\AppData\Local\{50904225-4dab-82b5-0359-4c2b153d91d0}\n (Trojan.Dropper.PE4) -> Quarantined and deleted successfully.</p><p>C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\n (Trojan.Dropper.PE4) -> Quarantined and deleted successfully.</p><p>C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\00000001.@ (Trojan.Small) -> Quarantined and deleted successfully.</p><p>C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\80000000.@ (Trojan.Sirefef) -> Quarantined and deleted successfully.</p><p>C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully.</p><p>C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\00000001.@ (Trojan.Small) -> Quarantined and deleted successfully.</p><p>C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\80000000.@ (Trojan.Sirefef) -> Quarantined and deleted successfully.</p><p>C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully.</p><p></p><p>(end)</p></blockquote><p></p>
[QUOTE="ziggy783, post: 58851, member: 1714"] I have pasted the MBAM log below. The MBAM program ran properly and prompted a re-start. I accessed this log after the re-start. A couple of notes: - When I click on the "quarantine" tab on MBAM, there are 52 total items noted. Should I "delete all" at this point? If you recall, the exe program starting with the letter z was quarantined by me earlier. - No more Security Shield pop-ups are coming up - However, my wireless network status is now "local only" -- no internet - Also, it appears that hidden files are being shown on the desktop - Finally, I have not yet run Windows Repair by Tweaking.com -- should I do that at this point? Thanks Malwarebytes Anti-Malware (Trial) 1.61.0.1400 www.malwarebytes.org Database version: v2012.06.29.11 Windows Vista Service Pack 2 x86 NTFS Internet Explorer 8.0.6001.18943 Paulgun :: PAULGUN-PC [administrator] Protection: Disabled 6/30/2012 12:24:24 AM mbam-log-2012-06-30 (00-24-24).txt Scan type: Full scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 474479 Time elapsed: 2 hour(s), 6 minute(s), 24 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 9 C:\Users\Paulgun\AppData\Roaming\SmartShopper (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\db (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\dwld (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\report (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Users\Paulgun\AppData\Roaming\SmartShopper\cs\res1 (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Program Files\SmartShopper (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Program Files\SmartShopper\cs (Adware.SmartShopper) -> Quarantined and deleted successfully. C:\Program Files\SmartShopper\cs\antiphishing (Adware.SmartShopper) -> Quarantined and deleted successfully. Files Detected: 8 C:\Users\Paulgun\AppData\Local\{50904225-4dab-82b5-0359-4c2b153d91d0}\n (Trojan.Dropper.PE4) -> Quarantined and deleted successfully. C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\n (Trojan.Dropper.PE4) -> Quarantined and deleted successfully. C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\00000001.@ (Trojan.Small) -> Quarantined and deleted successfully. C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\80000000.@ (Trojan.Sirefef) -> Quarantined and deleted successfully. C:\Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully. C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\00000001.@ (Trojan.Small) -> Quarantined and deleted successfully. C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\80000000.@ (Trojan.Sirefef) -> Quarantined and deleted successfully. C:\_OTL\MovedFiles\06292012_155455\C_Windows\Installer\{50904225-4dab-82b5-0359-4c2b153d91d0}\U\800000cb.@ (Rootkit.0Access) -> Quarantined and deleted successfully. (end) [/QUOTE]
Insert quotes…
Verification
Post reply
Top