Live Chat & Podcast at 1:00PM Eastern on Sunday!
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
General Security
Tag Cloud
access acer asus batch bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming gpu hard drive hardware hdmi internet laptop malware memory modem monitor motherboard network printer problem ram registry router slow software sound trojan ubuntu 11.10 uninstall usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
Solved: What the heck is this? (Log detail inside.)

Reply  
Thread Tools
Shane7's Avatar
Computer Specs
Junior Member with 12 posts.
 
Join Date: Jun 2009
Experience: Intermediate
26-Jun-2009, 01:40 AM #1
Question Solved: What the heck is this? (Log detail inside.)
After casually scanning my computer for malware and expecting to find nothing, (as I do not visit any nasty websites), I found that Malwarebytes detected the following:: (One registry infection)

Malwarebytes' Anti-Malware 1.38
Database version: 2335
Windows 6.1.7100
6/25/2009 7:31:43 PM
mbam-log-2009-06-25 (19-31-43).txt
Scan type: Full Scan (C:\|)
Objects scanned: 146465
Time elapsed: 10 minute(s), 18 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explo rer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)


How on earth did I get this? Is it even a real infection? What is it?? How can I prevent it??

Help? :-/
NeonFx's Avatar
Senior Member with 4,817 posts.
 
Join Date: Oct 2008
Location: California, USA
26-Jun-2009, 01:49 AM #2
Hi there

See information here:
http://www.insidetheregistry.com/reg...sp?valueid=255

It is a setting that is typically not enabled, and if it is, MBAM will consider this suspicious behavior.

Here is someone else with your same question, along with several answers:
http://forums.techarena.in/anonymity...am/1075636.htm

Network Administrators might prevent access to certain parts of the computer for security purposes. This is one of those settings that they commonly change.


By one of the administrators at MalwareBytes.org :

Quote:
All this indicates is that the ability to make changes to active desktop is disabled and MBAM is attempting to enable it . If you don't want to see this again tell MBAM to ignore the scan result .
__________________
Please post the final results, good or bad. Let me know if you won't be responding any longer.
Please don't send me requests for help. Use the forums instead.
Shane7's Avatar
Computer Specs
Junior Member with 12 posts.
 
Join Date: Jun 2009
Experience: Intermediate
26-Jun-2009, 03:51 AM #3
Forgive me..but I'm still very much confused.

After reading all the material above, I still can't really decide whether or not malware actually infested my computer...

I just want to keep my data safe. That's all I'm really concerned about. :-/

Any more help? (If this is all a stupid concern, forgive my ignorance.)
NeonFx's Avatar
Senior Member with 4,817 posts.
 
Join Date: Oct 2008
Location: California, USA
26-Jun-2009, 04:59 AM #4
Oh no, don't worry. This is not malware.

It is simply a setting on your computer that can be turned on and off. When it is turned on, it locks the access to active desktop. The program you ran just wanted to turn that off.

A security program on your computer could have turned it on as a security measure to protect the active desktop from being messed with. Or if you are part of a domain, your administrator could have set it manually to prevent people from messing with it.
__________________
Please post the final results, good or bad. Let me know if you won't be responding any longer.
Please don't send me requests for help. Use the forums instead.

Last edited by NeonFx; 26-Jun-2009 at 05:04 AM..
Shane7's Avatar
Computer Specs
Junior Member with 12 posts.
 
Join Date: Jun 2009
Experience: Intermediate
26-Jun-2009, 02:07 PM #5
Thank you. :-) I appreciate your quick responses and willingness to help.
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 12:32 AM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.