Disappointment
#1
Отправлено 28 Декабрь 2009 - 19:41
My good friend called me because his Dr.Web Demo-version expired today. He wanted to buy full version. When I arrived to assist him the behaviour of PC was suspicious. How big was our disappointment when we checked the computer with Malwarebytes. MB found 140 items. Really! No viruses or trojans but adware and spyware...
#2
Отправлено 28 Декабрь 2009 - 20:16
#3
Отправлено 28 Декабрь 2009 - 20:52
Please visit http://support.drweb.com/sendnew/My good friend called me because his Dr.Web Demo-version expired today. He wanted to buy full version. When I arrived to assist him the behaviour of PC was suspicious. How big was our disappointment when we checked the computer with Malwarebytes. MB found 140 items. Really! No viruses or trojans but adware and spyware...
#4
Отправлено 28 Декабрь 2009 - 20:54
Really? Are they real files, or cookies, traces in Registry, etc. ? Do you have these files? Can you show http://www.virustotal.com/ results ?MB found 140 items. Really! No viruses or trojans but adware and spyware...
#5
Отправлено 28 Декабрь 2009 - 22:06
I swear! This is a bare fact. I didn't make any picture but i think that Malwarebytes creates some "resume". I am going to visit him tomorrow and i will share this file. If you check Dr. Web´s key functions you will see that Dr. Web should protect you also before adware and spyware. Btw. Malwarebytes doesn't look for cookies.
#6
Отправлено 28 Декабрь 2009 - 22:22
Is there any copy of these malware files? Does MB have some kind of quarantine ?
#7
Отправлено 28 Декабрь 2009 - 23:12
Hello
My good friend called me because his Dr.Web Demo-version expired today. He wanted to buy full version. When I arrived to assist him the behaviour of PC was suspicious. How big was our disappointment when we checked the computer with Malwarebytes. MB found 140 items. Really! No viruses or trojans but adware and spyware...
and all of 'em were in `infected' folder, yep?
#8
Отправлено 28 Декабрь 2009 - 23:13
mondeo1
Is there any copy of these malware files? Does MB have some kind of quarantine ?
I hope because after the scan put up the message in "txt" format. Yes, MB have quarantine. But I suppose that default action is "delete" and not "quarantine"...
#9
Отправлено 29 Декабрь 2009 - 13:31
Here is the report...
Прикрепленные файлы:
#10
Отправлено 29 Декабрь 2009 - 18:16
intresting for me only one file C:\WINDOWS\SYSDLG01.EXE other it's trash.Hi
Here is the report...
Doctor Web, Ltd.
#11
Отправлено 29 Декабрь 2009 - 20:50
intresting for me only one file C:\WINDOWS\SYSDLG01.EXE other it's trash.Hi
Here is the report...
Thanks for the reply. And the rest? False positive? I can tell you that the system (WinXP) was slow. Mozilla did not work. After the MB scan was everything OK again.
#12
Отправлено 29 Декабрь 2009 - 21:40
Send file C:\WINDOWS\SYSDLG01.EXE in virus laboratoryintresting for me only one file C:\WINDOWS\SYSDLG01.EXE other it's trash.Hi
Here is the report...
Thanks for the reply. And the rest? False positive? I can tell you that the system (WinXP) was slow. Mozilla did not work. After the MB scan was everything OK again.
https://vms.drweb.com/sendvirus/?lng=en
#13
Отправлено 31 Декабрь 2009 - 17:27
#14
Отправлено 02 Январь 2010 - 06:56
wow, alot of trash from MBAM then, i always thought it was a decent anti-malware.intresting for me only one file C:\WINDOWS\SYSDLG01.EXE other it's trash.Hi
Here is the report...
(as a second opinion on-demand scanner i mean)
#15
Отправлено 02 Январь 2010 - 07:07
download Gmer http://www.gmer.net/gmer.zipI didn't find any information about SYSDLG01.EXE on internet, i really wonder it.
run and find hidden file
#16
Отправлено 12 Январь 2010 - 12:50
restore file from MBAM quarantineI didn't find any information about SYSDLG01.EXE on internet, i really wonder it.
C:\WINDOWS\SYSDLG01.EXE (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Doctor Web, Ltd.
#17
Отправлено 12 Январь 2010 - 13:05
restore file from MBAM quarantineI didn't find any information about SYSDLG01.EXE on internet, i really wonder it.
C:\WINDOWS\SYSDLG01.EXE (Trojan.FakeAlert) -> Quarantined and deleted successfully.
why?
#18
Отправлено 13 Январь 2010 - 01:23
Читают тему: 0
0 пользователей, 0 гостей, 0 скрытых