Malwarebytes issue

Page 1 of 2 12 LastLast

  1. Posts : 107
    Windows 7 Home 64bit
       #1

    Malwarebytes issue


    Hi, though this question is Vista related, but the Vista forum is dead.....hopefully somebody will reply here.

    A friend asked me to clean his Vista PC. I installed Malwarebytes and at Heuristic Analysis it found multiple problems, mostly popups. I quarantined them and then deleted them all. Then I repeated the scan and it found exactly the same problems. I repeated it 2 more times and the same infections came up. How is it such a trusted tool failed to quarantine/delete infections......? I tried to re-install it but it did not help.

    I have been using Malwarebytes on many computers for many years without any issues.

    Additional information:
    Antivirus - MSE
    Other scanners ran OK - ESET, Emsisoft, Spybot2, SuperAntiSpyware + CCleaner.

    Any advise....?

    Thanks,
    BBDS
      My Computer


  2. Posts : 20,583
    Win-7-Pro64bit 7-H-Prem-64bit
       #2

    Hi,
    You might post the scan results for review ?
    It would be best to ask on the mbam website forum and have them investigate the issue
    https://forums.malwarebytes.org/inde...-removal-help/
    Cheers.
    Last edited by ThrashZone; 12 Sep 2014 at 00:26. Reason: link
      My Computer


  3. Posts : 1,049
    Windows 7 Pro 32
       #3

    Disable System Restore
    Scan
    Enable System Restore
      My Computer


  4. Posts : 7,781
    Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
       #4

    Possibly a rootkit. Try scanning with TDSSKiller.

    TDSSKiller Download

    Also, try running RKill before you run MBAM.

    http://www.bleepingcomputer.com/download/rkill/

    As RKill only terminates a program's running process, and does not delete any files, after running it you should not reboot your computer as any malware processes that are configured to start automatically will just be started again. Instead, after running RKill you should immediately scan your computer using some sort of anti-malware or anti-virus program so that the infections can be properly removed.
      My Computer


  5. Posts : 4,566
    Windows 10 Pro
       #5

    Tookeri said:
    Disable System Restore
    Scan
    Enable System Restore
    This is most likely what is happening. Malware loves the system restore feature. Disable system protection and clean all threats found, then re-enable it.

    In addition:

    1.) Download herdprotect: (choose the portable version)

    Download herdProtect - Free Anti-Malware Platform

    2.) Run the scan.

    3.) When the scan finishes, save the results per the screenshot below. Then upload the log here.

    DO NOT REMOVE ANYTHING YET. I will advise if anything needs removed when I receive the log.

    Attached Images
      My Computer


  6. Posts : 8,608
    Windows 7 Ultimate 32bit SP1
       #6

    Unfortunately Spybot search and destroy needs to be disabled when running other scans. It 'interferes' with the other anti-malware tools.


    PUPS ...potentially unwanted programs ... could be adware.

    Please download AdwCleaner by Xplode and save to your Desktop.
    Step 1.
    • Double click on AdwCleaner.exe to run the tool.
      Vista/Windows 7/8 users right-click and select Run As Administrator.
    • Click on the Scan button.
    • AdwCleaner will begin...be patient as the scan may take some time to complete.
    • After the scan has finished, click on the Report button...a logfile (AdwCleaner[R#].txt) will open in Notepad for review (where the largest value of # represents the most recent report).
    • The contents of the log file may be confusing. Unless you see a program name that you know should not be removed, don't worry about it. If you see an entry you want to keep, let me know about it.
    • Copy and paste the contents of that logfile in your next reply.
    • A copy of all logfiles are saved in the C:\AdwCleaner folder which was created when running the tool.





    Step 2.
    Using AdwCleaner v3: Scan & Clean:
    This time click on the Clean button.
    Press OK when asked to close all programs and follow the onscreen prompts.
    Press OK again to allow AdwCleaner to restart the computer and complete the removal process.
    After rebooting, a logfile report (AdwCleaner[S#].txt) will open automatically (where the largest value of # represents the most recent report).
    Copy and paste the contents of that logfile in your next reply.
    A copy of that logfile will also be saved in the C:\AdwCleaner folder


    ******Post both .txt logs
      My Computer


  7. Posts : 25,847
    Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
       #7

    Good catch Jacee. Spybot interferes with everything on a computer.
    Spybot has been out of the picture for many of years. I wish it would go away again and stay gone.
      My Computer


  8. Posts : 107
    Windows 7 Home 64bit
    Thread Starter
       #8

    1.) Download herdprotect: (choose the portable version)

    This is the first time I've heard of herdprotect. I read some reviews and many are not very complimentary. Is this a truly good tool to have....?

    BBDS
      My Computer


  9. Posts : 1,049
    Windows 7 Pro 32
       #9

    FYI if you only want to check specific files, for example downloaded programs before running or installing them, I created a script you use with the Send To context menu that can check files on HerdProtect(and VirusTotal) without installing the HerdProtect software.

    The Tutorial is here: VirusTotal + HerdProtect - Check Files with Simultaneously
      My Computer


  10. Posts : 4,566
    Windows 10 Pro
       #10

    boyboyds said:
    1.) Download herdprotect: (choose the portable version)

    This is the first time I've heard of herdprotect. I read some reviews and many are not very complimentary. Is this a truly good tool to have....?

    BBDS

    Where are the reviews that are not complementary?

    It is not the average tool the average joe should download and use on there own.

    It is for logging purposes so I can see if anything is there infection wise. You know hijack this? It is sort of like that. Not everything it finds is actually malware. Its not a remove everything it finds tool.
      My Computer


 
Page 1 of 2 12 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 19:19.
Find Us