Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

coolswitch (Trojan.FakeAlert.H)


  • Please log in to reply

#1
bob33

bob33

    New Member

  • Member
  • Pip
  • 2 posts
I installed tonight and updated Malwarebytes before running it:
Log:
Malwarebytes' Anti-Malware 1.27
Database version: 1134
Windows 5.1.2600 Service Pack 3

9/9/2008 9:35:35 PM
mbam-log-2008-09-09 (21-35-30).txt

Scan type: Full Scan (C:\|F:\|)
Objects scanned: 173879
Time elapsed: 55 minute(s), 58 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 1
Registry Data Items Infected: 2
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\coolswitch (Trojan.FakeAlert.H) -> No action taken.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Broken.SecurityProviders) -> Bad: (msapsspc.dll schannel.dll digest.dll msnsspc.dll) Good: (msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll) -> No action taken.
HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> No action taken.

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\Downloaded Program Files\atmgr.exe (Trojan.Agent) -> No action taken.


I clicked on the correct/fix button and after doing it, I'm wondering what I do about the following entries:
1. coolswitch (Trojan.FakeAlert.H) -> No action taken.
2. SecurityProviders (Broken.SecurityProviders) -> Bad...>No action taken
3. atmgr.exe (Trojan.Agent) -> No action taken.

Do I need to be concerned and if so, what corrective action should I take?

TIA,
bob
  • 0

Advertisements


#2
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,051 posts
Hello bob33,

Welcome to Geekstogo.

Just noticed that you had been missed.

Are you still looking for help.?

If so have you been to the self help section?

You need to go there before you come here.Posted Image

If you read the thread there you will see step by step instructions to help fix your problem, in your case running the Malwarbytes program again and getting it to fix what it finds should help you.

If your machine still has problems after that you can come back here with your HijackThis log.

The link below will take you there.

http://www.geekstogo...-Log-t2852.html

Regards
emeraldnzl
  • 0

#3
bob33

bob33

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts
Emeraldz,
No help needed now. I waited a few days and reran malwarebytes.exe again and nothing showed so I guess I'm good to go.
Thanks anyhow,
bob
  • 0

#4
emeraldnzl

emeraldnzl

    GeekU Instructor

  • GeekU Moderator
  • 20,051 posts
Good to know everything is fine now.

emeraldnzl
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP