Question by legenddael: I just ran anti malwares and i have registry keys infected how do i know if its imporatant to the computer?
Here is the log that it made after the full system scan from malwarebytes anti malware.
Scan type: Full Scan (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Objects scanned: 316483
Time elapsed: 1 hour(s), 34 minute(s), 19 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 7
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 23
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
\?\globalroot\systemroot\system32\geyekrxoblnylq.dll (Trojan.TDSS) -> No action taken.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{3m170670-p1d8-04il-321a-4xn20gri82tg} (Generic.Bot.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{16cde0aa-8522-4353-bb65-a0d738912afa} (Trojan.Agent) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{07ef953f-09cd-4e08-88fd-f63c6d65e2b9} (Trojan.Agent) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{16cde0aa-8522-4353-bb65-a0d738912afa} (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{16cde0aa-8522-4353-bb65-a0d738912afa} (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\install.exe (Trojan.Dropper) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Bind (Malware.Trace) -> No action taken.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\microsoft windows update service (Trojan.Agent) -> No action taken.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
\?\globalroot\systemroot\system32\geyekrxoblnylq.dll (Trojan.TDSS) -> No action taken.
C:\WINDOWS\system32\ase.dll (Trojan.Agent) -> No action taken.
c:\chfp.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp33462946.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp42994196.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp10181696.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp16900446.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp81744196.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\dailybucks_install.exe (Rogue.SystemSecurity) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\db.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\dc0×4x.exe (Rogue.AntiVirusBest) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\install.48349.exe (Trojan.Downloader) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\install.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\login.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\notepad.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\services.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\smss.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\spoolsv.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\system.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\win.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\winamp.exe (Trojan.Dropper) -> No action taken.
c:\documents and settings\hp_administrator\local settings\Temp\zjhufhdfe.exe (Trojan.Ertfor) -> No action taken.
c:\WINDOWS\system32\gsf83iujid.dll (Trojan.Ertfor) -> No action taken.
Best answer:
Answer by Sly_Old_Mole
I can see Trojan TDSS – is malwarebytes updating ?
Trojan TDSS can stop anti virus & anti spyware programs from updating or running.
You need to remove trojan tdss first.
On a scale of 1 to 10 & 10 being bad, trojan TDSS gets a 10.
Know better? Leave your own answer in the comments!