Positive identification (DLL): Keylog.MUSpy 1.7 (dll)

Discussion in 'Trojan Defence Suite' started by wesleytheant, Jan 7, 2004.

Thread Status:
Not open for further replies.
  1. wesleytheant

    wesleytheant Registered Member

    Joined:
    Jan 7, 2004
    Posts:
    9
    I'm getting the below alarms; I'm new to this trojan stuff; how should I get rid of this? Thanks and standing by...

    Suspicious Filename: HTA file in suspicious location
    File: c:\system volume information\_restore{e72a9014-58e6-4cbc-800f-2dbef83c3ec9}\rp43\a0013024.hta

    Positive identification (DLL): Keylog.MUSpy 1.7 (dll)
    File: c:\system volume information\_restore{e72a9014-58e6-4cbc-800f-2dbef83c3ec9}\rp57\a0015762.dll
     
  2. Pieter_Arntz

    Pieter_Arntz Spyware Veteran

    Joined:
    Apr 27, 2002
    Posts:
    13,332
    Location:
    Netherlands
    Hi wesleytheant,

    Welcome at Wilders. :)

    These files are found in your Restore points.
    To clean them out you will have to disable System Restore, reboot and re-enable System Restore.
    Then make a new Restore Point manually once you have made sure you are clean.

    A nice explanation on disabling and enabling System Restore for XP can be found here: http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039

    Click here if you are using Me

    Regards,

    Pieter
     
  3. wesleytheant

    wesleytheant Registered Member

    Joined:
    Jan 7, 2004
    Posts:
    9
    Thanks; you guys are great!
     
Thread Status:
Not open for further replies.