Like so many other posters in this forum, keep getting constant notifications from Avast about Win32.Downloader-PKU and Win32.Malware-Gen.
The location of these (from the avast notification log) is at: C:\Windows\Installer{6cdbd412-545c-88a6-1532-b1548af2b6e8}\U
I’ve attached the OTL log and aswMBR log.
Here’s the mbam log:
Malwarebytes Anti-Malware 1.62.0.1300
www.malwarebytes.org
Database version: v2012.08.04.10
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
XinWei :: XINWEI-PC [administrator]
8/4/2012 9:16:22 PM
mbam-log-2012-08-04 (21-16-22).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 193051
Time elapsed: 3 minute(s), 41 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 2
C:\Windows\Installer{6cdbd412-545c-88a6-1532-b1548af2b6e8}\U\00000008.@ (Trojan.Dropper.BCMiner) → Quarantined and deleted successfully.
C:\Windows\Installer{6cdbd412-545c-88a6-1532-b1548af2b6e8}\U\000000cb.@ (Rootkit.0Access) → Quarantined and deleted successfully.
(end)