Here is a the log from last Malwarebytes scan:
Malwarebytes' Anti-Malware 1.30
Database version: 1433
Windows 5.1.2600 Service Pack 2
11/28/2008 11:59:53 AM
mbam-log-2008-11-28 (11-59-53).txt
Scan type: Quick Scan
Objects scanned: 63108
Time elapsed: 8 minute(s), 12 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 2
Files Infected: 16
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
C:\Documents and Settings\Maira\Application Data\GetModule (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Start Menu\Programs\AntivirusPro2009 (Rogue.AntivirusPro2009) -> Quarantined and deleted successfully.
Files Infected:
C:\Documents and Settings\Maira\Local Settings\Temp\wJQs.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temporary Internet Files\Content.IE5\K1MJWTEN\install[1].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temporary Internet Files\Content.IE5\OPQRSTUV\install[1].exe (Trojan.Clicker) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temporary Internet Files\Content.IE5\OPQRSTUV\pipo[1] (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Application Data\GetModule\dicik.gz (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Application Data\GetModule\kwdik.gz (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Application Data\GetModule\ofadik.gz (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Start Menu\Programs\AntivirusPro2009\AntivirusPro2009.lnk (Rogue.AntivirusPro2009) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Start Menu\Programs\AntivirusPro2009\Uninstall.lnk (Rogue.AntivirusPro2009) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\dllcache\figaro.sys (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn3 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn4 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn5 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn6 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn7 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Maira\Local Settings\Temp\wrdwn8 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Go to the top of the page
Edit Post+Quote Post
V Full Edit
V Quick Edit
garmanma
View Member Profile
Add as Friend
Send Message
Find Member's Topics
Find Member's Posts
post Today, 05:59 PM
Post #12
Computer Masochist
******
Group: Moderator
Posts: 8,851
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618
Well, seeing how you posed a scan, I'm Moving this to Am I Infected
-------------------------------------
Please reboot your computer. Update mbam, and run afull scan
Post the log when finished
--------------------
Mark
why won't my laptop work?
Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
+Quote Post
suzy5
View Member Profile
Add as Friend
Send Message
Find Member's Topics
Find Member's Posts
post Today, 06:42 PM
Post #13
New Member
*
Group: Members
Posts: 6
Joined: 3-April 07
Member No.: 121,947
I tried everything suggested by BC. I am having the same probelm. Here is the log from my latest scan.
Malwarebytes' Anti-Malware 1.30
Database version: 1435
Windows 5.1.2600 Service Pack 3
11/30/2008 6:24:31 PM
mbam-log-2008-11-30 (18-24-31).txt
Scan type: Full Scan (C:\|D:\|F:\|G:\|H:\|I:\|J:\|)
Objects scanned: 171575
Time elapsed: 1 hour(s), 2 minute(s), 25 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP36\A0044787.exe (Adware.ClickSpring) -> Quarantined and deleted successfully.