xxx and uuu filles in temp folder on xp

  1. #1
    franky1955 is offline Newbie

    xxx and uuu filles in temp folder on xp

    hi i noticed recently when using ccleaner that there was always one or two files left after cleaning! xxx file and sometimes uUu file i googled and came up with mbam which i duly ran on my pc it found 7 infections which i cleaned from my pc. i havea laptop which i am on now and used mbam again it found several infections on here i will include the mbam log report from here (my laptop)but i would also like to post my pc mbam log report here at some stage thanks in advance franky
    Malwarebytes' Anti-Malware 1.46
    Malwarebytes

    Database version: 5476

    Windows 6.0.6000
    Internet Explorer 7.0.6000.16609

    07/01/2011 15:17:37
    mbam-log-2011-01-07 (15-17-37).txt

    Scan type: Quick scan
    Objects scanned: 154114
    Time elapsed: 7 minute(s), 58 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 1
    Registry Values Infected: 6
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER\dark (Trojan.Banker) -> Quarantined and deleted successfully.

    Registry Values Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\OLE\dram prosessor (Trojan.Agent) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\RunServices\dram prosessor (Backdoor.Bot) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Products\compname (Rogue.PCVirusless) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Products\prodname (Rogue.PCVirusless) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Products\rdomain (Rogue.PCVirusless) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\Session Manager\AppCertDlls\appsecdll (Trojan.Agent) -> Quarantined and deleted successfully.

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)

  2. #2
    Digerati is offline Super Moderator
    I hope you are using a real-time scanner too. Let's make sure your system is clean. Please read this then start a new topic here. When done, read through my sticky, Practicing Safe Computing to make sure you are not reinfected.

  3. #3
    franky1955 is offline Newbie
    thanks digerati for the rapid response i am in deed using avast antivirus automatically updated very regulary...but having said that how are these items getting through? i will follow your instructions and repost there regards franky

  4. #4
    franky1955 is offline Newbie
    a bit shocked actually i ran gmer several times and got bsod even tried in safe mode! any ideas? regards franky

  5. #5
    Digerati is offline Super Moderator
    any ideas?
    Yes. Follow the instructions above for getting malware removal help from one of our Malware Removal experts. Then post back here if still having problems.

+ Reply to Thread