SpyWare BeWare! ASAP
May 19, 2013, 08:45:01 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News:
 
   Home   Help Search Calendar Donations Login Register Chat  



Google It!
Pages: [1]   Go Down
  Print  
Author Topic: MalwareBytes found a worm but no info on it and did not get rid of it  (Read 1971 times)
0 Members and 1 Guest are viewing this topic.
bwebterms
Newbie
*
Offline Offline

Date Registered:August 01, 2009, 08:29:10 PM
Posts: 2


« on: August 01, 2009, 08:39:34 PM »

Hi, i need a little help. When I did a MalwareBytes scan (MB is updated, v1.39), my computer picked up a worm.autorun and did not give any info on it and did not quarantine it? the log did not state it found anything but it clearly was there? i wonder why was that, is it because its a new worm or one that is undetectable? here a pic of it and my log, please advise. thanks

edit: I also download SUPERAntiSpyware but it did not find anything.. how can i get rid of it thx




Malwarebytes' Anti-Malware 1.39
Database version: 2541
Windows 6.0.6001 Service Pack 1

8/1/2009 12:29:18 PM
mbam-log-2009-08-01 (12-29-18).txt

Scan type: Full Scan (C:\|)
Objects scanned: 287595
Time elapsed: 1 hour(s), 56 minute(s), 45 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
Logged
Rorschach112
ASAP Members
Hero Member
*****
Offline Offline

Date Registered:September 14, 2007, 07:49:41 PM
Posts: 3673



« Reply #1 on: August 02, 2009, 08:36:54 AM »

You need to post in the Malware Removal forum
Logged

By the power of truth, I, while living, have conquered the universe.

~Scratch~

My help is always free, but if you want to donate to help me continue my fight against malware then click here
M-DeeziE
Newbie
*
Offline Offline

Date Registered:October 30, 2009, 02:13:40 PM
Posts: 8


« Reply #2 on: October 31, 2009, 05:03:58 PM »

Worm.AutoRun Technical Details    

 Category       Worm
 Discovered         11/19/2005 10:17:26 AM
 Modified         10/30/2009 3:58:09 PM
 Threat Level       Critical
 Category Description
A Worm is a malicious program that spreads itself without any user intervention. Worms spread without attaching to or infecting other programs and files. A Worm can spread across computer networks via security holes on vulnerable machines connected to the network and also through email by sending copies of itself to everyone in the user's address book. A Worm may consume a large amount of system resources and cause the machine to become noticeably sluggish and unreliable.

Removal:

   1. Before attempting removal of an autorun worm, you must first disable Autorun. (For Window's XP: http://antivirus.about.com/od/securitytips/ht/autorun.htm) | (For Vista: http://antivirus.about.com/od/securitytips...ta_autorun.htm)
   2. After you have disabled autorun, search the root of all drives (including all USB/thumb drives) for the presence of an autorun.inf file. When you have located the autorun.inf file, open it using a text editor such as Notepad and look for any lines that begin with Label=" and "shellexecute=". Note the name of the file designated by these lines.
   3. Close the autorun.inf file and delete it from the drive. Now locate the file that was designated in Step 2 and delete that file as well.
   4. Repeat these steps for all local, mapped, and removable drives.
   5. Note that if an autorun worm is discovered, you should anticipate other infections have occurred and also that your antivirus/firewall/security software may have been disabled and/or tampered with. Ensure the antivirus is working properly by using an Eicar test file.
   6. If you are unable to delete the malware files, or they reappear after deleting, use a bootable antivirus rescue CD to access the drive without allowing the malware to load first. You should then be able to delete the target files.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  


Powered by MySQL Powered by PHP Powered by SMF 1.1.17 | SMF © 2011, Simple Machines Valid XHTML 1.0! Valid CSS!