Rogue.Fake.MSE & Don't.Steal.Our.Software

Fred44

Member
I just ran a full Malwarebyte scan today and came up with these 2 items. The Rogue bit is supposedly caused by a fake version of MSE. I downloaded mine from the Microsoft site and even confirmed it today by attempting to download it again. I was told that MSE was already installed on my machine. So I know my version of MSE is legit.

The Don't. Steal bit has something to do with a company (Obit, I believe). Which has supposedly pirated some proprietary components of Malwarebytes for their anti-malware app.

Interestingly, when the scan was over I got a message on my toolbar that Malwarebytes had been blocked from the startup menu.

Since I have the real version of MSE, I'm just wondering how I picked up this Rogue.Fake.MSE bug? And how about the Don't.Steal,etc. thing? Where do you pick this stuff up? I'm very careful about what sites I visit.

Fred
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
I did read that a company stole Malwarebytes code and they caught them by releasing false virus definitions which turned up in the other companies updates. Don't know if that helps you. There is still ill feeling between the two though.
 

My Computer

System One

  • Manufacturer/Model
    Lenovo Thinkpad T400
    CPU
    Intel Mobile Core 2 Duo P8700 @ 2.53GHz
    Motherboard
    LENOVO 64734VM
    Memory
    2.00GB Single-Channel DDR3 @ 531MHz
    Graphics card(s)
    Intel Mobile Intel 4 Series Express Chipset Family
    Sound Card
    Conexant 20561 SmartAudio HD
    Monitor(s) Displays
    15 inch
    Screen Resolution
    1280 x 800
    Hard Drives
    1x 180GB Intel 530 series SSD 1 x 120GB Hitachi 5400rmp 1 x 650GB Western Digital Elements 5400rpm 1x 1Tb Western Digital Elements 5400rpm
    Internet Speed
    Medium for New Zealand
    Other Info
    Weakest part of my computer is the graphics chipset. Only ever used a laptop. Also use USB Freeview TV Card Lenovo Docking Station External Speakers Other bits a pieces as needed
I did read that a company stole Malwarebytes code and they caught them by releasing false virus definitions which turned up in the other companies updates. Don't know if that helps you. There is still ill feeling between the two though.

These items turned up after a Mawarebytes full scan and then Malwarebytes was disabled from my start menu. And the Rogue.Fake.MSE..? Where could that have come from, since I know I have a legit version of MSE downloaded from their website???

Fred
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Perhaps they didn't come from that source then.

Do you download any illegal content? Because this is often a source of viruses.
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Perhaps they didn't come from that source then.

Do you download any illegal content? Because this is often a source of viruses.

No. but just uninstalled MSE and downloaded a fresh version, ran the Malwarebytes sacn and came up with Rogue.Fake.Mse again. Malwarebytes was again disabled.
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
So malware bytes disabled itself?
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
So malware bytes disabled itself?

I guess that's what happened. I was running a full scan with Malwarebytes and at the end it found 2 or 3 instances of the Rogue.Fake.MSN. I chose to delete them, restarted the computer and got a message on the toolbar that Malware bytes had been disabled. I'm now running a scan with a-squared to see what it comes up with.
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Alright, let me know how that goes.

Do you have CCleaner?
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Alright, let me know how that goes.

Do you have CCleaner?

a-squared is still scanning. I don't have CCleaner. Had it once but removed it because of erratic behavior. Can't remember what the problem was, but just remember there were some issues with it. Would you recommend running CCleaner? I know lot's of people recommend it.
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Copy and paste the Malwarebytes' log ...
 

My Computer

System One

  • Manufacturer/Model
    Bruce ... somewhere in his 40's
    CPU
    Intel(R) Core(TM)2 Quad CPU
    Motherboard
    INTEL/D975XBX2
    Memory
    4 GB
    Graphics card(s)
    ATI Radeon HD 2600 Pro
    Monitor(s) Displays
    Samsung SyncMaster 914v
    Screen Resolution
    1280 x 1024
    Hard Drives
    2/500GB each ... ST3500630AS ATA Device. One is not connected
    PSU
    Rocketfish 700 W
    Case
    G.Skill Gigabyte Chassis
    Mouse
    Microsoft PS/2 Mouse
    Keyboard
    Standard PS/2 Keyboard
    Internet Speed
    DSL
    Other Info
    ATI HDMI Audio
Alright, let me know how that goes.

Do you have CCleaner?

a-squared is still scanning. I don't have CCleaner. Had it once but removed it because of erratic behavior. Can't remember what the problem was, but just remember there were some issues with it. Would you recommend running CCleaner? I know lot's of people recommend it.

If you had problems with it, then don't install it. I would ususally recommend running it to clean up keys which could be corrupted, but on this occasion I don't recommend it.
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Jacee asked me to copy and paste the malwarebytes log. When I click on the link the post is not here. If you're there Jacee, is this the log you mean?

Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 4176
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
6/8/2010 11:40:40 AM
mbam-log-2010-06-08 (11-40-40).txt
Scan type: Quick scan
Objects scanned: 1
Time elapsed: 2 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
BTW, I just found out that my son has installed SoulSeek on his desktop and downloaded some music files. When I click on the folers or files that he downloaded and scan with Malwarebytesn no malicious items are found. What should I do?
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Ideally we need a MBAM log which is infected so we can see exactly what files are showing up as infected, though Jacee will have to look at it (see my signature)
 

My Computer

System One

  • Manufacturer/Model
    Dell XPS 420
    CPU
    Intel Core 2 Quad Q9300 2.50GHz
    Motherboard
    Stock Dell 0TP406
    Memory
    4 gb (DDR2 800) 400MHz
    Graphics card(s)
    ATI Radeon HD 3870 (512 MBytes)
    Sound Card
    Onboard
    Monitor(s) Displays
    1 x Dell 2007FP and 1 x (old) Sonic flat screen
    Screen Resolution
    1600 x 1200 and 1280 x 1204
    Hard Drives
    1 x 640Gb (SATA 300) Western Digital: WDC WD6400AAKS-75A7B0 1 x 1Tb (SATA 600) Western Digital: Caviar Black, SATA 6GB/S, 64Mb cache, 8ms Western Digital: WDC WD1002FAEX-00Z3A0 ATA Device
    PSU
    Stock PSU - 375W
    Case
    Dell XPS 420
    Cooling
    Stock Fan
    Mouse
    Advent Optical ADE-WG01 (colour change light up)
    Keyboard
    Dell Bluetooth
    Internet Speed
    120 kb/s
    Other Info
    ASUS USB 3.0 5Gbps/SATA 6Gbps - PCI-Express Combo Controller Card (U3S6)
Fred, if you don't mind, I would prefer to contact you through the thread system, this way others can benefit from the solutions :) How many files have been downloaded? If you want to be sure, you could upload them to:

VirusTotal - Free Online Virus and Malware Scan

And this will scan the file against a range of anti virus detection files. This is a bit OTT, but if there is only a few and you want to be sure, then do it.

I doubt that this is the problem however.

From your log file, I see that you are running MBAM 1.45, have you tried updating to 1.46 to see if this works?

Malwarebytes' Anti-Malware Free Download and Reviews - Fileforumhttp://www.malwarebytes.org/
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
And in your MBAM log you have only scanned 2 files, why is it only 2? And are these any files in specific?

Preferably we need a MBAM log file of a full scan of your whole computer.
 

My Computer

System One

  • Manufacturer/Model
    Build #1
    CPU
    Intel Core i7 3770K @4.4GHz
    Motherboard
    ASUS P8Z77-V PRO
    Memory
    Corsair Vengeance 2x4GB DDR3 1600MHz Low Profile (White)
    Graphics card(s)
    Gigabyte Radeon HD 7850 (2GB GDDR5)
    Sound Card
    Integrated on motherboard
    Monitor(s) Displays
    23" LG LCD/LED IPS
    Screen Resolution
    1920*1080
    Hard Drives
    Samsung EVO 128GB SSD Seagate Barracuda 2TB 7200rpm 2x500GB Seagate FreeAgent 5400rpm
    PSU
    Corsair TX650W V2 (80+ Bronze)
    Case
    NZXT Phantom 410
    Cooling
    Corsair H100 Water Cooler, 1x140mm and 1x120mm stock fans
    Mouse
    Microsoft Desktop 2000 Wireless Mouse
    Keyboard
    Microsoft Desktop 2000 Wireless Keyboard
    Internet Speed
    95 Mb/s Download 70 Mb/s Upload
Fred, if you don't mind, I would prefer to contact you through the thread system, this way others can benefit from the solutions :) How many files have been downloaded? If you want to be sure, you could upload them to:

VirusTotal - Free Online Virus and Malware Scan

And this will scan the file against a range of anti virus detection files. This is a bit OTT, but if there is only a few and you want to be sure, then do it.

I doubt that this is the problem however.

From your log file, I see that you are running MBAM 1.45, have you tried updating to 1.46 to see if this works?

Malwarebytes' Anti-Malware Free Download and Reviews - Fileforum

I just updated. It said I updated from 4176 to 4180. I'll try to upload the MBAM files you need. Not sure I know how? Will a quick scan with Malwarebytes be sufficient?
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Oh, BTW, A-squared found nothing suspect after a full scan. Is this good news?
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 4176
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
6/8/2010 10:39:27 AM
mbam-log-2010-06-08 (10-39-27).txt
Scan type: Full scan (C:\|)
Objects scanned: 270926
Time elapsed: 1 hour(s), 1 minute(s), 35 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpnwmon (Rogue.FakeMSE) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Program Files\Microsoft Security Essentials\Drivers\mpnwmon\mpnwmon.sys (Rogue.FakeMSE) -> Quarantined and deleted successfully.
C:\Windows\System32\drivers\MpNWMon.sys (Rogue.FakeMSE) -> Quarantined and deleted successfully.
Here's one of the MBAM logs with the Rogue items
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Here's another. (I just ran a quickscan and no malicious items Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 4176
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
6/7/2010 5:37:40 PM
mbam-log-2010-06-07 (17-37-40).txt
Scan type: Full scan (C:\|)
Objects scanned: 269967
Time elapsed: 53 minute(s), 42 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 3
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mpnwmon (Rogue.FakeMSE) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\Program Files\Microsoft Security Essentials\Drivers\mpnwmon\mpnwmon.sys (Rogue.FakeMSE) -> Quarantined and deleted successfully.
C:\Users\Fred\Documents\Fred's Files\Programs_Patches_Setup\mbam-setup.exe (Dont.Steal.Our.Software) -> Quarantined and deleted successfully.
C:\Windows\System32\drivers\MpNWMon.sys (Rogue.FakeMSE) -> Quarantined and deleted successfully.
were found. Should I run another full scan?)
 

My Computer

System One

  • Manufacturer/Model
    HPs3700y Slimline
    CPU
    AMD Athlon64 X2 (B) 50000+ 2.6 GHz (65W)
    Motherboard
    Asus M2N61-AR
    Memory
    3 GB
    Graphics card(s)
    NVDIA GeForce 6150SE nForce 430 (Integrated on motherboard)
    Sound Card
    High Definition 6-channel audio ALC 888S chipset
    Monitor(s) Displays
    SAMSUNG SYNCMASTER 914V FLAT PANEL LCD
    Screen Resolution
    1280 X 1024
    Hard Drives
    320GB SATA 3G (3.0 Gb/sec)
    PSU
    160W
    Mouse
    Logitech Marble Mouse
    Keyboard
    HP
    Internet Speed
    Broadband Cable Connection (256 Kpbs?)
    Other Info
    Not sure what case or cooling means. Could not find in any documentation. The keyboard is the standard that comes with the HP Slimline.
Back
Top