Jump to content
Sign in to follow this  
alumaline

Re-loading viruses

Recommended Posts

Hi,

These two viruses are detected every time by

SuperAntiSpyware and quarantined only to be

reinstalled at next startup of computer. This

has happened for 10-12 days now.

Any ideas?

Backdoor.Bot [Zbot]

Malware.Trace

machine is IBM X40 with XP

thanks

Mark S

Share this post


Link to post
Share on other sites

Hi,

These two viruses are detected every time by

SuperAntiSpyware and quarantined only to be

reinstalled at next startup of computer. This

has happened for 10-12 days now.

Any ideas?

Backdoor.Bot [Zbot]

Malware.Trace

machine is IBM X40 with XP

thanks

Mark S

Welcome to the SAS forum Mark.

Please post your latest scan log for review, but don't include tracking cookies if they're in the log.

The log(s) can be found in SAS's Preferences-->Statistics/Logs.

Share this post


Link to post
Share on other sites

Welcome to the SAS forum Mark.

Please post your latest scan log for review, but don't include tracking cookies if they're in the log.

The log(s) can be found in SAS's Preferences-->Statistics/Logs.

Here is the current Stat/Log

SUPERAntiSpyware Scan Log

https://www.superantispyware.com

Generated 07/14/2010 at 02:55 AM

Application Version : 4.33.1000

Core Rules Database Version : 5189

Trace Rules Database Version: 3001

Scan type : Complete Scan

Total Scan Time : 00:55:27

Memory items scanned : 260

Memory threats detected : 0

Registry items scanned : 4768

Registry threats detected : 10

File items scanned : 24326

File threats detected : 10

Adware.Tracking Cookie

(removed as requested0

Backdoor.Bot[ZBot]

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7}

HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7}

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6}

HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6}

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{4776c4dc-e894-7c06-2148-5d73cef5f905}

HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{4776c4dc-e894-7c06-2148-5d73cef5f905}

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{3446af26-b8d7-199b-4cfc-6fd764ca5c9f}

HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{3446af26-b8d7-199b-4cfc-6fd764ca5c9f}

Malware.Trace

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network#uid [ USER-1466108791_7875768FC7E59A74 ]

HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#USERINIT

Share this post


Link to post
Share on other sites
Guest airjordan

I'm dealing with what seems like an insurmountable problem. Even though I've resigned myself to the idea that there is no "fix" for this, I'm going to go ahead and throw this out there anyway.

I spend a good amount of my day helping people "clean up" their computers. Aside from tweaking msconfig and regedit, doing a disk cleanup and disk defrag, running wincleaner 1-click, ccleaner and memory optimizer, and replacing norton/mcafee with avg and spybot, I also like to install and run AVG Anti-Virus, Spybot and AdAware.

Share this post


Link to post
Share on other sites
Guest maha

You are infected with spyware if:

* You see too much pop-up advertisements.

* Your browser has toolbars that you haven't installed.

* Your homepage has changed (and you can't change it back).

* Other settings have changed without your permission.

* Your computer is slow.

To get rid of spyware and keep your computer clean you can use an antispyware or even more.

You can download a antispyware software. There are 10 good anti-spywares.

here is the reviews: <--http://toptenantispywareviews.com/

You can download one and scan your system.

All are safe and can be trusted.

_______________________________________________

Funeral Insurance| Funeral Cover

Share this post


Link to post
Share on other sites
Guest
This topic is now closed to further replies.
Sign in to follow this  

×