Hi Cypher,
That worked better. Thanks. Here are the requested files. Mbam did find files in the C:\system volume information folder, and I left them alone, as requested.
Denske
RogueKiller V4.3.4 by Tigzy
contact at
http://www.sur-la-toile.commail: tigzyRK<at>gmail<dot>com
Feedback:
http://www.sur-la-toile.com/discussion- ... ntees.htmlOperating System: Windows XP (5.1.2600 Service Pack 3) 32 bits version
Started in : Normal mode
User: user [Admin rights]
Mode: Scan -- Date : 03/26/2011 13:12:36
Bad processes: 0
Registry Entries: 0
HOSTS File:
127.0.0.1 localhost
Finished : << RKreport[1].txt >>
RKreport[1].txt
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.orgDatabase version: 6182
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
3/27/2011 8:34:08 AM
mbam-log-2011-03-27 (08-34-08).txt
Scan type: Full scan (C:\|D:\|)
Objects scanned: 179466
Time elapsed: 16 minute(s), 39 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 15
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\documents and settings\user\application data\Sun\Java\deployment\cache\6.0\5\5435e05-18444ad7 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\user\application data\Sun\Java\deployment\cache\6.0\11\3c8cd8cb-7101ab13 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\user\application data\Sun\Java\deployment\cache\6.0\20\1a579fd4-7d0e7e0e (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\documents and settings\user\application data\Sun\Java\deployment\cache\6.0\56\664fddf8-1f4a2386 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\documents and settings\user\local settings\application data\gxx.exe.vir (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\documents and settings\user\local settings\application data\krj.exe.vir (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\documents and settings\user\local settings\application data\nsi.exe.vir (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\Qoobox\quarantine\C\documents and settings\user\local settings\application data\psu.exe.vir (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP66\A0006567.rbf (Adware.WidgiToolbar) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010099.exe (Trojan.FakeAlert) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010100.exe (Trojan.FakeAlert) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010262.exe (Trojan.FakeAlert) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010263.exe (Trojan.FakeAlert) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010706.exe (Trojan.FakeAlert) -> Not selected for removal.
c:\system volume information\_restore{20176d02-4ad7-40fd-8f7b-bf65468fad41}\RP90\A0010707.exe (Trojan.FakeAlert) -> Not selected for removal.