Quantcast
Channel: Tech Support Forum - Virus/Trojan/Spyware Help
Viewing all articles
Browse latest Browse all 2798

SpyBot and Misc Help

$
0
0
All i'm interested in is to know what is safe to delete from what i use, nothing more. I want to delete everything that i can. I'm not having any problems except on Opera (may not be one of the following faults) but that doesn't mean it's not doing something in the background. All have updated defs. Saves me from trial and error and time to do it if someone could help me out i'd appreciate it.

Opera problem: going to ebay, it does not load and instead says invalid certificate; date and time is correct, same certificates i used before for a few years that includes expired ones and ran until recently so the actual certificates are not the problem. At first the home page won't load but i don't know what i did the home page now loads but the login page does not, same message. Firefox loads ebay fine on same certificates.

SuperAntiSpyware:

Trojan.Agent/Gen-Backdoor
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1852\A0167895.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1852\A0167896.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1875\A0168889.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1894\A0184887.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1894\A0184919.EXE

Trojan.Agent/Gen-Sirefef
C:\SYSTEM VOLUME INFORMATION\_RESTORE{739C306C-EA8F-4821-A184-C4C0B0F167C4}\RP1876\A0184053.SYS




Spybot - Used to use 1.4 until recently 2.4. How come 1.4 will find a few things that 2.4 does not and vice versa? Same updated defintions.

2.4 :


rootkit:

:: RootAlyzer Results
File:"Unknown ADS","C:\WINDOWS\$NtUninstallKB40611$:SummaryInformation:$DATA"
File:"Unknown ADS","C:\WINDOWS\Prefetch\3325467223:2825242937.EXE-0EBBBE84.pf:$DATA"

Check Registry files, there is no need for to check out the other files listed in the attachments. One section says internet explorer and media player; i don't have either one installed (k-lite media player classic different than microsofts media player [think it's refering to microsoft] is what i use) should be deleted?

2.4 = 150417-1812.txt attachment

1.4 = 150419-1927.txt attachment (fake bho and fraud xpdefender, two sections that 2.4 does not find are safe to delete, don't have to read those entries)

Attached Files
File Type: txt Checks.150417-1812.txt (11.7 KB)
File Type: txt Checks.150419-1927.txt (9.0 KB)

Viewing all articles
Browse latest Browse all 2798

Trending Articles