please help

avast says i have 2 infected files that cannot be found…what am i supposed to do? under threat it says “Win32:FakeAlert-FB[Trj]” is that a trojan?? What do i do??

It says its in temporary internet files. I dont know what i am doing. I’m scanning with malwarebytes right now. will that help?

Malwarebytes’ Anti-Malware 1.44
Database version: 3782
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18882

2/23/2010 8:36:45 PM
mbam-log-2010-02-23 (20-36-45).txt

Scan type: Quick Scan
Objects scanned: 114255
Time elapsed: 9 minute(s), 27 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) → Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

can someone tell me if i did right?

If I deleted the registry will my comp. be ok? Please someone help… ??? ???

Hi Leslies, calm down, you did right, don’t do any more for now.

Especially do not delete the entire registry, nor any registry key unless you know it needs to be deleted (which you don’t), it will basically kill your computer, and you’d need to re-install Windows.

More in a minute.

Right, what you have is not going to significantly harm you, in my opinion. It’s relatively minor, and it sounds like it’s the Avast webshield detection that alerted you. If that was the case, the files would have been prevented from downloading.

Did these detections occur during a scan, or did the alerts pop up when you were browsing/downloading something?

I’d like you to run a quick scan again with MBAM. This time, when the scan completes, a report (log) will present itself, as the one you copied before, and there are options to select all, and near the bottom right, remove selected.
Do that. And then post the scan report here, and please answer the question above.
Removing that one detected reg key would be a good thing to do. The reason I posted in a rush earlier was that I did not want you deleting the entire registry, but I think your question probably related to the detected key, yes?

What version of Avast do you use?

My comp. was running slow, so I did a full scan and thats how I found out. I did the malware scan thing and selected all in the corner. There was only one though. Do it again?

welcome to the forum

you could also scan with superantispyware to get an second opinion.

http://filehippo.com/download_superantispyware/

don’t forget to update before scanning and delete what its finds, it will first quarantine the threats before removing them.

good luck and write back if you have any question or getting problems.

I’d also be interested to know the files Avast detected during this scan. Did you take any action with these detections?
Open Avast and look in the chest (quarantine) and see if you can spot a couple of recently quarantined items.
What are the original filenames and where were they?

The avast chest is empty. There is nothing in there. Malwarebytes found the file and quarantined it I guess. Not too sure about all this. I am downloading the superantispyware and I guess I am supposed to update it before I scan with it or what?

Under the avast scan logs it says there are two infected files detected. When I go into that page it lists the file, status, action, and result, it says under action “delete” under status: “action complete” does that mean they were deleted? How come it still says there are 2 infected files?

If it is in the basic log stats e.g. 351 files scanned, 2 infected then that is just historical data relating to that scan not that you are infected.

Update Superantispyware, then scan with it. It’s likely the scan results will return a number of cookies. These are not a big worry at all, they are simple text files that record website preferences etc, however any cookies recorded by the program as malicious can be removed, just don’t lose sleep over it; it’s not a big deal.

I’d be interested in any other malicious files Superantispyware finds.

Try also running another scan with Avast.
If the malware files are deleted, they’re gone. If they don’t appear again in subsequent scans, they’re gone for good.
In future scans it’s best (for any scanner program) to quarantine any malicious detections, rather than deleting them. We have little info about the files found so can not really say what they were nor how bad.

Depending on your Avast version (which you still haven’t said) it can be configured to quarantine (send to chest) rather than deleting Always a good idea, in case the detection is a false positive, but also so that others can get an idea what the infection was if further action is needed.

I have avast 5.0. I just updated and then scanned with spywaredoctor it says there are 9 threats and 308 infections. do i click the “fix checked” button now? what about the “create restore point” option. do i check that box?

Sorry, SpywareDoctor, you’re on your own.
I’ve no experience with this program.

Well I am running another scan with avast. Cant do anything with the spywaredoctor without registering and paying for it, all i can see is what is wrong with my comp. how do i clean the threats and infections??

From reports I’ve read over the years, this is one of the limitations of SpywareDoctor.
Perhaps if you were to post the scan report, someone might be prepared to advise if there are really threats or not, and if so, how serious.
What is wrong with using the tools recommended to you?

I’m really confused. Spywaredoctor found all kinds off stuff avast didnt. how am i to use avast to clean the files it doesn’t even know are infected?? what tools do i have to use to get rid of them? i dont understand what you are asking/telling me. please help explain…

how do i post the scan log report?