Tech Problem Aggregator

Malware downloaded

Q: Malware downloaded

Hello

I downloaded a program that was marked safe by Norton. However it downloaded some malware with it and changed my home page to delta search, as well as blank tabs to delta search. The computer program processing and internet speed has slowed down so I suspect more programs (malware/viruses) have been downloaded. Also, five programs were downloaded - Browser Protect, Delta Chrome Toolbar, Delta Toolbar, Gorilla Price, Yontoo 2.51. Additionally a window that won't go away keeps coming up with "BrowserProtect.exe has stopped working". Finally, the above five programs are running processes - when closed in Task Manager (windows vista) they come back - hence I think they are malware.

I was cautious about just deleting the programs installed listed above as I've had damage done to my computer previously when this happened about a year ago. Additionally I don't know how to stop the message above reappearing. Also, as mentioned, I think I have additionally (undetected) malware downloaded.

I've run a Norton Scan but it has only detected tracking cookies and deleted these. Nothing else is detected, and the latest virus etc. definitions were downloaded prior to starting the scan.

I've added the logs requested in the "read this before posting" file as attachments as the previous post I attempted was deemed too long (i.e. over 300000 characters". Sorry - I hope this is ok, otherwise I can re-post them individually.

Help would be greatly appreciated.

Thanks

A: Malware downloaded

16 more replies
Answer Match 52.08%

these are the instructions I followed:Uninstall itclick on this link ? and then select run.http://www.malwarebytes.org/affiliates/2...INSTALL IT TO YOUR DESKTOP, update it, then run a full scan and remove everything it finds.some viruses will try to disable it so if malwarebytes will not start up then go into the folder it is in and rename the mbam file to XXX then double click on the file you just renamed to start it up.after you have used malwarebytes then do this on-line scan.to make sure you have nothing else hiding away.http://www.bitdefender.com/scan8/ie.htmlpreferably in safe mode with networking.it's important you install it on your desktop so you can easily get into the folder and change the name of the mbam file.and viruses do not always look on the desktop for it.OR you can try the on-line scan first.This seemed to have helped but I still can't run Malware bytes and my computer redirects websites I try to get into sometimes. I installed Norman Malware cleaner is this is what it said:Removed 5 of these ( deleted file:C:/windows\system.32\UACqfqboedxvctjti.dat)in red appeared- To many infections/an unexpected error (Please contact support):C\Windows\system32\UACqfqboedxvctjtit.dat (infected with Text/Td.ss.A)File marked for defered cleaning (reboot required) c:\windows\Temp\UAC314c.tmp(infected with W32\FakeAlert.NEUI clicked quit afer it finished scanning and it prompted me to reboot computer automatically. I ... Read more

A:The computer at work is infested with PAV. I downloaded Malware bytes anti-Malware but it still won't scan

Hello it appears you are heavily infected with rootkits. They are interfereing with removal.You need to run HJT/DDS.Please follow this guide. go and do steps 6 and 7 ,, Preparation Guide For Use Before Using Hijackthis. Then go here HijackThis Logs and Virus/Trojan/Spyware/Malware Removal ,click New Topic,give it a relevant Title and post that complete log.Let me know if it went OK.

1 more replies
Answer Match 47.88%

Hi,

My son downloaded a malware software presented as a virus removal. It infected the computer and ask us to buy the software so it can be removed.

I cannot install anything because it reboots explorer on an ongoing basis. Tried to run AVG but it's very very very slow...for some reason it allowed me to open it!

Please help! No computer geek..

Dryheat4u
 

A:Malware Downloaded

Click here to download HJTInstall.exe

Save HJTInstall.exe to your desktop.
Doubleclick on the HJTInstall.exe icon on your desktop.
By default it will install to C:\Program Files\Trend Micro\HijackThis .
Click on Install.
It will create a HijackThis icon on the desktop.
Once installed, it will launch Hijackthis.
Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
Come back here to this thread and Paste the log in your next reply.
DO NOT have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.

 

1 more replies
Answer Match 47.04%

Hi, I was purchasing some content from a vendor, he gave me a defunct link with 404 error which downloaded the following file named rukinogi64.exe.bin :
 
https://www.virustotal.com/en/file/70c65bd0e084398a87baa298c1fafa52afff402096cb350d563d309565c07e83/analysis/1459987364/
 
I noticed it has an overwhelming unfavorable rating by analysts at virustotal, and 1 comment even claimed that it is a variant of Locky ransomware.
 
I can't find this file on my computer using unhide or SearchEverything, and I'm worried that something bad might result from this.
 
Would appreciate assistance on this, thanks!

A:rukinogi64.exe.bin downloaded, it is malware?

Hi,
 
This file while named rukinogi64.exe.bin is an HTML file.
 
With your virustotal link you will want go to additional information there you will spot: 
 
File type HTML

Magic literal
HTML document text

TrID HyperText Markup Language (100.0%)
 
The Comments do say Ransomware/locky - while this link could of been that infection. The host is down and uploading the 404 page as your file rukinogi64.exe.bin

2 more replies
Answer Match 47.04%

I just got a new Windows 10 computer and I was trying to download Citix Receiver. The original software through my company's website I guess isn't compatible with Windows 10 because after DL the file it wouldn't open. So I was trying to download a Ctirix Receiver program that was compatible with Windows 10 and I guess the website that I downloaded it from wasn't as reliable as I thought it was because I noticed that in my apps file 2 new programs were also downloaded, one called "Royal Raid" and the other I dont remember something ---stat. I already looked them up and it said they were malware. 
 
I deleted both of them from the apps folder. I looked online and one website said I had to download 3 other programs to completely remove them from my computer, but I wasn't sure about that.
 
I've already run malwarebytes anti-malware and spybot and ccleaner and considering I just installed the computer it found a lot of stuff. I don't remember what they were I've already run  both programs multiple times now. Is that enough?
 
But before I add any other (safe) programs how do I know all the malware has been deleted?
 
And while were on the subject, does anyone know where I can get a FREE anti-virus software? 
 
Thanks 

A:accidental malware downloaded

Install ONE of these:- Avast! free antivirus: http://www.avast.com/eng/download-avast-home.html- free Microsoft Security Essentials: http://windows.microsoft.com/en-GB/windows/products/security-essentialsNote for Windows 8 users: Microsoft Security Essentials comes preinstalled and renamed as Windows Defender.You can keep it or you have to disable it before installing another AV program.  How to...- free Comodo Antivirus: http://www.comodo.com/home/internet-security/antivirus.phpUpdate, run full scan, report on any findings. Then...  Download Security Check from here or here and save it to your Desktop. Double-click SecurityCheck.exe Follow the onscreen instructions inside of the black box. A Notepad document should open automatically called checkup.txt; please post the contents of that document.NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.NOTE 2. SecurityCheck may produce some false warning(s), so leave the results reading to me.NOTE 3. If you receive UNSUPPORTED OPERATING SYSTEM! ABORTED! message restart computer and Security Check should run Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.Make sure the following options are checked:
Internet ServicesWindows FirewallSystem RestoreSecurity Center/Action CenterWindows UpdateWindows DefenderOther ServicesPress "Scan".It will create a log (FSS.txt) in the same directory t... Read more

3 more replies
Answer Match 47.04%

So I downloaded Flash Player Pro so I could watch tv shows on project free tv.com and I think in the process I downloaded some malware with it. I have a toolbar now that I didn't have before and I have all these processes going on that are slowing my computer down and making me crash and it's just all a big ol mess.

I sure could use some help.

Here are my logs, I hope I have them all, and in the right order:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:50:42 AM, on 4/16/2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Dell DataSafe Local Backup\TOASTER.EXE
C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
C:\Program Files (x86)\PCD\Pantech\EUDL\UTM\PantechUTM.exe
C:\Users\Momma\AppData\Roaming\SearchProtect\bin\cltmng.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\program files (x86)\supreme savings\supreme savings-bg.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\Momma\Downloads\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Exp... Read more

A:Possible malware?/downloaded recently

Friendly Bump
 

1 more replies
Answer Match 47.04%

My husband paid to download spyware-help7 two months ago. I'm not sure if this is the cause of our current computer trouble (disasterously slow), but I'd like to at least look at this thing that he bought and find out what it is.

I'm not very computer literate, so it's been a difficult problem for me to chase down. I'm using a HP Pavilion a1330n with Windows XP. We have Norton 360 anti-virus software, as well as Spyware Doctor. I've run Spybot four times, it now says we're clean, I'm runnning a Stinger scan now. I have yet to run Ad-Aware, but it's on my list. I have a Hijackthis log as well, but I can't read it.

I wasn't here when he downloaded the software, and the only thing he was able to find to tell me anything about it is the charge they made on his credit card, that's how I know the name spyware-help7.com.

I really appreciate any help anyone can give me. Here's my HJthis log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:10:45 PM, on 4/27/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WIND... Read more

A:I think my husband downloaded some malware

Run HJT again and put a check in the following:

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.browsergate.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.browsergate.com/redirect.php (file missing)
O15 - Trusted Zone: http://*.trymedia.com (HKLM)

Close all applications and browser windows before you click "fix checked".

Looks fine.
 

1 more replies
Answer Match 47.04%

I went to the following site: www.thekeys.ws/?look=prevx+csi+3.0+activation+key
and downloaded some .exe file and ran it like a fool. It was immediately detected by my av for some backdoor dropper virus. And after that i am having problems working in windows in normal mode. Everything just hangs and the mouse doesnt respond. THe computer has just come fresh after a windows re-installation. I know i shouldn hav downloaded that file. But now i want to repair the system. PLease help me. I am using windows xp sp2, intel t1300 1.66ghz, 1gb ram and 80 gb hdd.
I will log into the normal mode and take a hijack log and post that.
 

A:downloaded malware or virus

I forgot to mention that i am using Avast AV.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:07 PM, on 11/11/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\msdrv32.exe
C:\WINDOWS\system\svchost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.in/
F3 - REG:win.ini: load=C:\WINDOWS\system\svchost.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\... Read more

3 more replies
Answer Match 47.04%

Hi, I'm constantly getting browser redirects, new programs installing, etc... I was foolish and installed a trainer program that I should not have.
 
Things that are getting installed are stuff like sunnydays, cleanbrowser, bubble toolbar, etc.. 
 
 
 
 
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by tcameron (administrator) on TALEK (11-03-2016 20:20:38)
Running from C:\Users\tcameron\Downloads
Loaded Profiles: tcameron (Available Profiles: tcameron)
Platform: Windows 10 Pro Version 1511 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
(Fortinet Inc.) C:\Windows\SysWOW64\FortiSSLVPNdaemon.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
() C:\Program Files (x86)\E9FCBAE0-1457739380-11BD-8B5F-305A3ADFCE85\k... Read more

A:malware accidently downloaded

talick,  back to BleepingComputer! 
My name is Jason and I'll be helping you with your computer problems. You can call me by my screename jntkwx or Jason is fine.
 
 
 
Ground Rules:
First, I would like to inform you that most of us here at Bleeping Computer offer our expert assistance out of the goodness of our hearts. Please try to match our commitment to you with your patience toward us. If this was easy we would never have met.  
Please do not run any tools or take any steps other than those I will provide for you while we work on your computer together. I need to be certain about the state of your computer in order to provide appropriate and effective steps for you to take. Most often "well intentioned" (and usually panic driven!) independent efforts can make things much worse for both of us. If at any point you would prefer to take your own steps please let me know, I will not be offended. I would be happy to focus on the many others who are waiting in line for assistance.
Please perform all steps in the order they are listed in each set of instructions. Some steps may be a bit complicated. If things are not clear, be sure to stop and let me know. We need to work on this together with confidence.
Please copy and paste all logs into your post unless directed otherwise. Please do not re-run any programs I suggest. If you encounter problems simply stop and tell me.
When you post your reply, use the  button.
In the upper right h... Read more

12 more replies
Answer Match 46.62%

Hi folks
 
Win 10 Pro desktop, running free versions of Avast and Malwarebytes.  Tried to install a trial version of Clone CD software but think I've used a dodgy download link as it quickly started popping up unexpected boxes that appeared to be trying to get me to accept messages I didn't like the look of.  Avast started getting a bit excited and seemed to block a few things attempting to run.  It then advised a boot scan, which I ran over the course of several hours after disconnecting my PC from my router.  That didn't find much.
 
I ran Malwarebytes in safe mode, which found quite a lot!

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 11/08/2016
Scan Time: 19:02
Logfile: 160811 malware detected search results.txt
Administrator: Yes

Version: 2.2.1.1043
Malware Database: v2016.06.22.02
Rootkit Database: v2016.05.27.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 8
CPU: x64
File System: NTFS
User: adria

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 400286
Time Elapsed: 5 min, 12 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 6
PUP.Optional.WebOptimum, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{314CC13E-2027-44CA-838B-546591A01FDA}, , [e4160df2e6b371c... Read more

More replies
Answer Match 46.62%

Hello,

I guess I downloaded a malware software.
It is not on the Uninstall list.
Also, MBAM detected some malwares and removed it after installation, but now I can't remove the software.

What can I do?

*Update: I tried a software named "Revo Uninstaller" and used an option called "Force Uninstall", it did remove it and all the leftovers, but now the software folder appears on the "All Apps" in start menu.
Is there a way to remove that from there as well? Because there is no option to right click on it and click remove.

Thanks

A:Downloaded a malware-not on Uninstall list

Hi.
If you enable "show hidden files", you can navigate to C:\ProgramData\Microsoft\Windows\Start Menu\Programs and delete folders that way.

5 more replies
Answer Match 46.62%

I think i may have received a worm or other malware from an email. When reading an unfamiliar email my Trend Micro virus protection and firewall turned off and a windows notification popped up asking if i wanted to run something said to be published by trend micro located in: (cannot remember where). I pressed ok and TM virus protection and firewall turned back on.

A TM full system scan, malwarebytes full system scan, and window malware removal tool showed nothing.
(Im not sure if this happens during a full scan) but during the beginning of the quick scan the tsc.exe process runs, taking up about 50% of my CPU, but after it has finished scanning for trojans (about the first 10% of scan progress), the process disappears from my task manager.

Because of this i decided to search tsc in my c drive.
Two applications named tsc are showed:
The first is located in c:\program files\trend micro\internet security
size 413kb, date modified 1/04/2010 7:11am
When i double click this a black box (run?) opens and lots ofvarious (comands?) scroll down the box.
All of these (comands?) are: Executing (then: worm_yaha.t or troj_lemir or hundreds of other things that also start with worm or troj or various others) pattern...

While this is happening, tsc.exe is running in the task manager under the same cpu usage as during the scan.

The other tsc application showed after the c drive search is located in c:-program files-trend micro-internet security-component-engine-0x21080000
t... Read more

A:Worm/malware downloaded from email?

While running Windows Malicious software removal tool, there are two mrt.exe processes in the task manager.
Is this normal, or is one of them malware?

Also, the mrt scan says it has finished and that there where no problems detected before the green progress bar has reached the end (it gets to about 2/3 the way).
Note: the last items scanned before it ends are msiexec.exe (the m and first e change from lowere to uppercase many times)
Again is this the doing of malware?

Thanks, Ryan

1 more replies
Answer Match 46.62%

I went to the following site: www.thekeys.ws/?look=prevx+csi+3.0+activation+key
and downloaded some .exe file and ran it like a fool. It was immediately detected by my av for some backdoor dropper virus. And after that i am having problems working in windows in normal mode. Everything just hangs and the mouse doesnt respond and it takes a lot of time to load the desktop. Also applications get hung and task manager also does not respond. The computer has just come fresh after a windows re-installation. I know i shouldn hav downloaded that file. But now i want to repair the system. PLease help me. I am using windows xp sp2, intel t1300 1.66ghz, 1gb ram and 80 gb hdd. I am using avast home edition v4.8.
 

More replies
Answer Match 46.62%

While trying to download a TV program from PirateBay.org (that was ironically available on the ABC website, but I wanted to avoid the commercials), I was hit by a number of malware programs, including one that told me my machine was "infected" and tried to force me to purchase their software (animalware or something similar). I couldn't get Task Manager to open - the malware kept closing it - and there was no way to stop the program from controlling my machine, including when I tried to close it by right clicking the program icon in the system tray.

I also counldn't access "system restore" or other control panel applications while the malware was controlling the computer.

Fortunately I was able to log off the computer and then restarted in "safe mode" and was able to use 'system restore' to use a restore date from a few weeks back. This seemed to solve the immediate problem since I now could get access to my computer programs, including internet explorer.

I then purchased the AVG virus program since it had a root scan that the free version I had been using didn't have.

AVG found some malware attacks - appear to be Trojan viruses - including two programs that it wasn't able to disinfect.

Obviously I've unisnstalled Bittorrent and don't plan to use any P2P software after this fiasco. I wish I had found your website before installing Bittorrent, but 'live and learn' I guess.

I've posted the results of the AVG scan below the d... Read more

A:Downloaded Malware from PirateBay/BitTorrent

Friendly bump, please.

12 more replies
Answer Match 46.62%

I am working on a Gateway MX6025 NotebookCeleronWin XP HomeNot sure about much else.Apparently she clicked on a popup that stated that her registry had items that needed to be fixed and then it crashed. It wouldn't reboot so she inserted the system recovery CD. I attempted the Gateway System Recovery (with back up first, and then destructive). Each seemed to go well saying that recovery was successful, until restart when it gets about halfway through Setup and says: Windows XP Home Edition SetupInstalling Devices...Please wait while Setup detects and installs devices...your screen may flicker for a few seconds.Error message: rundll32.exe - Bad ImageThe application or DLL C:\WINDOWS\system32\streamci.dll is not a valid Windows image. Please check this against your installation diskette. click OKError message: RUNDLLError loading streamci%1 is not a valid Win32 applicationclick OKerror messages again and againFinally, after 2 hours of rebooting we are to the desktop. YAY.error message: Remind_XP.exe-Bad ImageThe application or DLL C:\WINDOWS\system32\MFC42u.DLL is not a valid Windows image. Please check this against your installation diskette.click OKEverything seems fine. This error pops up with every restart.What should I do now to fix this error?Thank you so much.

A:Malware Downloaded-recovered Xp Now Dll Error

You might want to try to wipe the hard drive with Dban and then retry the Recovery CD.http://dban.sourceforge.net/

1 more replies
Answer Match 46.2%

Hi all, I downloaded an SEO program from a forum and tested it with my local anti-virus and it was clean. I installed and everything was fine, then I decided to scan with Virus Total and it found a Trojan!

I searched the Trojan name and it said it's a key logger. I've downloaded a few trojan removers and spyware scanners but nothing's been found, plz help!

I followed the rules and uninstalled STPD, here's my paste and attached. I promise never to download anything again, unless it's from Cnet or something...

P.S. I was unable to scan with the rootkit GMR, it says system file is being used


DDS (Ver_09-12-01.01) - NTFSX64
Run by Jean-Patrick at 8:45:03.34 on Wed 02/03/2010
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_14
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.8190.1921 [GMT -6:00]

SP: SUPERAntiSpyware *enabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\... Read more

A:Suspect Malware, downloaded suspicious programs

bump, plz help

1 more replies
Answer Match 46.2%

Hi all!
 
Nowadays, of course by default you have your real-time multi-layered anti-virus, anti-malware and anti-exploit/anti-ransomware tools set to automatically scan your downloaded files for malware, as this is a security-wise imperative.
 
Moreover, it is equally important to scan your downloaded files on-demand for malware before using them, as this could further help eliminate malware; BTW I speak from experience.
 
I myself scan all the files that I am about to download with VirusTotals's Vtzilla browser add-on before actually downloading them, and afterwards with my AV/AM (EAM Pro) and MBAM Free. If the files are big however, I use Metascan Online.
 
There are several reputable online file analyzers & services as well as on-demand scanners out there, and hence my question is as follows: How do you scan your downloaded files on-demand for malware before using them?
 
Please specify which tools and methods you use!
 
Thank you very much in advance!
 
Regards,
midimusicman79

A:How do you scan your downloaded files on-demand for malware before using them?

How do you scan your downloaded files on-demand for malware before using them?
I don't.  I research programs I am interested in and download from either the home site or a reputable repository.

6 more replies
Answer Match 46.2%

Original thread : http://www.bleepingcomputer.com/forums/t/303551/malware-preventing-internet-access/Here is the SUPERanti spyware log:SUPERAntiSpyware Scan Loghttp://www.superantispyware.comGenerated 04/28/2010 at 02:14 AMApplication Version : 4.35.1002Core Rules Database Version : 4744Trace Rules Database Version: 1978Scan type : Complete ScanTotal Scan Time : 10:23:19Memory items scanned : 261Memory threats detected : 0Registry items scanned : 5712Registry threats detected : 10File items scanned : 272886File threats detected : 164Adware.Tracking CookieC:\Documents and Settings\steven\Cookies\[email protected][2].txt.2o7.net [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].2o7.net [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].2o7.net [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].2o7.net [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].2o7.net [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].advertising.com [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].advertising.com [ C:\Documents and Settings\jenni\Application Data\Mozilla\Firefox\Profiles\w0yfzx13.default\cookies.txt ].advertising.com [ C:\Documents and Settings\jenni\Applica... Read more

A:Think XP Security 2010 Has Downloaded Extra Malware

Hello , And to the Bleeping Computer Malware Removal Forum. My name is Elise and I'll be glad to help you with your computer problems.I will be working on your malware issues, this may or may not solve other issues you may have with your machine.Please note that whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer.The cleaning process is not instant. Logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that happen. Please reply using the Add/Reply button in the lower right hand corner of your screen. Do not start a new topic. The logs that you post should be pasted directly into the reply. Only attach them if requested or if they do not fit into the post.Unfortunately, if I do not hear back from you within 5 days, I will be forced to close your topic. If you still need help after I have closed your topic, send me or a moderator a personal message with the address of the thread or feel free to create a new one.You may want to keep the link to this topic in your favorites. Alternatively, you can click the button at the top bar of this topic and Track this Topic, where you can choose email notifications. The topics you are tracking are shown here.-----------------------------------------------------------If you have since resolved the original problem you were having, we would appreciate you let... Read more

16 more replies
Answer Match 46.2%

A few days ago I accidently downloaded Antivir 2010 malware thinking it was an update and it then tried to get me to hand over payment details which i didn't do. Realising my mistake i then deleted the files while in safe mode. Following that, while still in safe mode i used Avast!, malwarebyte and Mircosoft Windows malicious software removal but none of them seem able to find anything amiss, I just need to know if my computer really is clear again. Someone said i should used Runscanner to check if my computer is clear but i didn't understand what the result meant, i have pasted the logfile at the end of this post.I just really want to know if my computher is safe because i've been the victim of internet fruad before and its a nightmare.I'd be grateful for any help, Thanks in advanceZaharaRunscanner logfile* = signed file- = file not foundGeneral info------------Computer name : FARNAZ-PCCreation time : 25/01/2010 16:29:23Hosts <> 127.0.0.1 : 0Hosts file location : %SystemRoot%\System32\drivers\etcIE version : 8.0.6001.18882OS : Windows Vista ™ Home BasicOS Build : 6002OS SP : Service Pack 2RunScanner Version : 1.9.0.9User Language : English (United Kingdom)User rights : AdministratorWindows folder : C:\WindowsRunning processes----------------- C:\Program Files\Google\Google EULA\GoogleEULALauncher.exe ( )* C:\Windows\system32\agrsmsvc.exe (Agere Systems)* C:\Program Files\Common F... Read more

A:Downloaded Antivir 2010 malware, is it still on my computer

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

8 more replies
Answer Match 46.2%

Hey,
Long story short, i was dumb and downloaded a program I thought was safe (after scanning it), and it ended up being a pretty bad malware.
I turned my computer off, booted in safe mode, ran rogue killer and deleted 13 items. Then I ran Malwarebytes premium, deleted one suspicious item, then ran malwarebytes rootkit and found nothing.
I also ran FRST, and just wanted confirmation if I needed to fix anything.
Here is the FRST and Addition.txt down below.
Is there a fixlist.txt that I need or does everything appear to be in order?
I'm very dumb to have gotten into this situation, and would be grateful for any advice or help.
Thank you.

More replies
Answer Match 46.2%

Decided to download it since I was bored 
 
http://tinypic.com/r/9r3luh/8
 
http://i.imgur.com/uydEaZO.png
 
6 things it found...
 
Does this mean I need to change all my passwords?
 
weird, I can't even see the picture on tinypic when I click my link.

A:Downloaded malware bytes anti root kit and

bump

more replies
Answer Match 46.2%

Hello,
 
My colleague is not as tech savvy as some, and she downloaded a lot of malware onto her office computer. I ran MalwareBytes and it ended up quarantining a lot of stuff. I am not sure if these are things I can delete or not. I am also not sure if I should proceed with other programs like RKill or AdwCleaner. 
 
Here is the log from MalwareBytes -- 
 
Malwarebytes Anti-Malware
www.malwarebytes.org
 
Scan Date: 12/4/2014
Scan Time: 10:50:25 AM
Logfile: malwarebytes log 120214.txt
Administrator: Yes
 
Version: 2.00.3.1025
Malware Database: v2014.12.04.07
Rootkit Database: v2014.12.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Enabled
 
OS: Windows 8.1
CPU: x64
File System: NTFS
User: NAME REDACTED
 
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 406327
Time Elapsed: 24 min, 45 sec
 
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
 
Processes: 0
(No malicious items detected)
 
Modules: 0
(No malicious items detected)
 
Registry Keys: 7
PUP.Optional.BetterBrain.A, HKU\S-1-5-21-604601340-2333831010-3733641663-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C2DF6D43-F814-4C32-B021-209A74BAACA5}, Quarantined, [01d680de37451b1b39b75d663ec4d12f], 
PUP.Optional.BetterBrain.A, HKU\S-1-5-21-604601340-233... Read more

A:Coworker downloaded a lot of malware onto her office computer

Hello and welcome to Bleeping Computer! My nickname is Pystryker , and I will be helping you with your issue today.Before we get started, I have a few things I need to go over with youIf you are receiving help for this issue at another forum, please let me know so I can close this thread.Please do not install any new software during the cleaning process other than the tools I provide for you. This can hinder the cleaning process.Please do not attach your logs or put them inside code/quote tags. Do a Copy/Paste of the entire contents of the log file and submit it inside your post unless directed otherwise.At the top of your post, please click on the "Follow this topic" button and make sure that the "Received notification" box is checked and set to "Instantly" This will send an email to you as soon as I reply to your topic, allowing us to solve your problem faster.If any of your security programs give you a warning about any tool I ask you to use, please do not worry. All the links and tools I provide to you will be safe.Please read through my instructions carefully and completely before executing them. I will lay the instructions out in a step by step order to make them easy to follow.Please make sure that all the programs I ask you to download are downloaded to and run from your Desktop.Please make sure you (if you are able) to print out these instructions so that you will be able to refer to them while working on your machine. Part of the solution(s) to your problem may in... Read more

60 more replies
Answer Match 46.2%

Hi, two nights ago I downloaded a Google image and immediately a marketing message took over my screen (the message said something about the FBI and requesting payment to unlock my computer). I had to manually power off my computer in order to get rid of the message. From then on, my WinPatrol comes up every minute or so and says that a 'new autostart program has been detected.' I have to continuously keep pressing 'no' to decline. It shows the following files:

User/AppData/Roaming/8428C5 and
User/AppData/Local/Temp/EOBF

Virus scans are coming up clear and I can't locate these files to remove them manually. Any help getting rid of them would be greatly appreciated! DDS log file below. .ark and .attach are attached.

Thanks,
Breanna

DDS log:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.19328 BrowserJavaVersion: 1.6.0_30
Run by User at 19:30:48 on 2012-09-25
Microsoft? Windows Vista? Home Premium 6.0.6002.2.1252.61.1033.18.2974.1524 [GMT -4:00]
.
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32... Read more

A:Malware or virus downloaded from Google image

Hi and welcome to TSF.

I am currently reviewing your log. Please note that this is under the supervision of an expert analyst, and I will be back with a fix for your problem as soon as possible.

You may wish to subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

Please be patient with me during this time.

11 more replies
Answer Match 46.2%

Hello, I downloaded a program from http://phyxer.info/ and the real site is phyxer.org. I downloaded the program from the phishing site and installed it, when I clicked on it, nothing happened so I went to googe and typed in the name and then was directed to the real site where it had news of a spoof site.

So what i've done so far is: i'm currently running a scan using nod32, I emailed the program to nod and kaspersky as well as the author of the original software at phyxer.org, and ran hijack this. Here is the log, what should I do guys any help is appreciated.
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 2:39:44 PM, on 4/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\csrss.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Home Server\WHSTrayApp.exe
C:\Program Files\Windows Home Server\WHSConnector.exe
C:\Program Files\Port Explorer\PortExplorer.exe
C:\Program Files\Maxthon\Maxthon.exe
C:\Program Files\Eset\nod32.exe
... Read more

A:Help downloaded malware program from phishing site

here is an image of port explorer with nothing but nod32 and basic startup programs running, note: whsconnect is windows home server so thats nothing to worry about.
 

2 more replies
Answer Match 46.2%

Hey.
I'm currently running windows 7. I came across a fake kmspico site from "TeamDaz" and it promptly filled my computer with unwanted programs and other crap. I uninstalled the unwanted programs, ran malware bytes and junkware multiple times but the problem persists.
The symptoms are super slow google chrome, occasional pop ups of reimage plus, downloaded unwanted programs by itself days after initial download and after I ran malware removal, random folders and files created with things like .dll files and winsec.exe.
I tried deleting some of these files in this folder it created and nothing happened but the rest of the files refused to be deleted because they are apparently running.
Would appreciate any help, still a newbie with computers

A:Downloaded malware from fake kmspico site

Oh and forgot:
I have processes such as fchk.exe and i0swzera.exe that are running but I have no idea what they are, never seen them before, and can't close them.
I closed one of them through command prompt (winsec.exe) but these new ones popped up

2 more replies
Answer Match 46.2%

New laptop. Thought my norton trial antivirus was activated but I don't think it was. Was online downloaded 3 freeware music learning software. One downloaded fine works fine. The other 2... We're a bunch of programs. Googled them and they're all listed as malware. Mysearchdial. Search protect by conduit and bonanza live deals. That's just a few. I've since uninstalled and deleted all related programs (except for the one freeware that worked and didn't have malware,that I'm aware of). How serious are these malwares? Did uninstalling them remove them completely if I can't see them anywhere? What do i do now? How do I clean and know my laptop is back to new and malware free?

A:Downloaded malware accidentally uninstalled and deleted? Now what?

When searching for malware removal assistance on the Internet, it is not unusual to find numerous hits from untrustworthy and scam sites which mis-classify detections or provide misleading information. This is deliberately done more as a scam to entice folks into buying an advertised fix or removal tool. In some cases if the fix is a free download, users may be enticed to download a malicious file or be redirected to a malicious web site.Most of the "junkware" you likely encountered were unwanted toolbars and add-ons which in some cases are classified as Potentially Unwanted Programs (PUPs), many of which can be removed via via Add/Remove Programs or the Programs and Features in Control Panel.Please read About those Toolbars and Add-ons which change your browser settings - Removal TipsPlease download and use the following tools (in the order listed) which will search for and remove many potentially unwanted programs (PUPs), adware, toolbars, browser hijackers, extensions, add-ons and other junkware as well as related registry entries (values, keys) and remnants.RKill created by Grinler (aka Lawrence Abrams), the site owner of BleepingComputer.AdwCleaner created by Xplode.Junkware Removal Tool created by thisisu.1. Double-click on RKill to launch the tool. A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.Important: Do not reboot your computer until you complete the next step.2. Double-click on AdwCleaner.exe to run t... Read more

1 more replies
Answer Match 46.2%

Is there any way to tell? I had some very sensitive information on this computer and from what I can tell, I've deleted all of the files that may have posed a risk.I'd like to know what would have been accessed or downloaded, though. I'm feeling really nervous and restless because I'm not sure if any of my files were downloaded or not. I had things which could spell a lot of trouble for me in the future and I can't stand thinking that I might go through the rest of my life never knowing that a ton of very personal things that I went through great lengths to keep private could be floating around in cyberspace somewhere. I didn't have anything that'd put me in jail or anything, just details about me that I'd never like to never surface.What sort of files would a Trojan go after? How many files would have been downloaded? How long will they be stored elsewhere?All of my passwords and such have been changed and nothing happened to even my most important accounts, but is it only a matter of time until some hacker somewhere tries to do something with other information?A quick note is that I disabled system restore and did a disc cleanup because one of the files I found was malware located here: "c:\system volume information\_restore{08EDBA23(rest of the file I'd prefer to keep private, and it doesn't show up on Google beyond this point anyway)" Would LOIC have a reason to put a file there?There's a chance that the entire thing could have been a false positive an... Read more

A:Is there a way to tell which of my files (if any) were accessed or downloaded by a Trojan/malware?

If no one knows the answer, can someone at least point me in the right direction of where I should be asking this?

2 more replies
Answer Match 46.2%

My wife unfortunately hit the wrong button and downloaded Tuvaro, malware that redirects your home screen in IE and Chrome to a Tuvaro Bing search. I've googled it, saw several fixes, and I think I've fixed most of the problem, but whenever I open IE or Chrome, it redirects to this Tuvaro screen.

The program no longer shows up as a current program, I think I've deleted it with Malware Bytes and SpyBot, but it continues to do it. I've search the registry for "tuvaro" and can't find it.

Is there anything that I can do to get it to stop?

A:Downloaded Tuvaro, malware, cannot delete, redirects.

Try using AdwCleaner from the Bleeping Computer site.

AdwCleaner Download

9 more replies
Answer Match 45.78%

Today I downloaded a program called "Zwinky" for my Grandkids and lord almighty..I have worked all day trying to get rid of all the Garbage(malware and Trojans) that came alone with it. Thought it was a good program, being that it was advertised on "Facebook" little did I know!! Would someone please check my HJ log. I think I got rid most of it by using spybot , adware and ccleaner..

Any help would get greatly appreciated!!

Frank

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:08:50 AM, on 7/30/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe
C:\Program Files (x86)\Java\jre6\bin\jusched.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...estbuy&pf=cndt
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...estbuy&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...estbuy&pf=cndt
R1 - HKLM\Software\Microsoft\Internet ... Read more

More replies
Answer Match 45.78%

First noticed a problem when I downloaded an MP3 file from Amazon and it was deleted during the download security scan because it "contained a virus."  I figured it was a problem with Microsoft Security Essentials definitions so I went to Windows Update to see if there was an update.  Instead, I noticed that the latest MSE definitions update failed with error 0x80070643.  I also realized that MSE was not running as I expected.
 
Searching for that error code led me down a path that indicated I was infected with some type of malware.  I tried to restart MSE and it would not restart due to 'Access is denied' error.  Looking at running processes showed that there was a suspicious "iexploror.exe" running and that the folder "C:\Microsoft_SDK" contained the questionable file.
 
Ran MalwareBytes, which found some problems, and let it remove the files in question.  MSE still would not restart.  Then downloaded and ran HitmanPro, which also found some problems so I let it remove the files in question...seemingly the same files MB removed.  Once this was completed, MSE would now start and update to latest definitions. 
 
On reboot, a command prompt opened up and indicated that C:\Microsoft_SDK\iexploror.exe could not be found so I knew everything wasn't resolved.  Running msconfig.exe showed a .js file and mssecex.exe on the Startup tab.  'Erased' those files, disabled the startup items, and tried to delete the... Read more

A:Unknown malware - first symptom was deleting downloaded files

Hello lazykdan I would like to welcome you to the Malware Removal section of the forum.Around here they call me Gringo and I will be glad to help you with your malware problems.Very Important --> Please read this post completely, I have spent my time to put together somethings for you to keep in mind while I am helping you to make things go easier, faster and smoother for both of us!Please do not run any tools unless instructed to do so.We ask you to run different tools in a specific order to ensure the malware is completely removed from your machine, and running any additional tools may detect false positives, interfere with our tools, or cause unforeseen damage or system instability.Please do not attach logs or use code boxes, just copy and paste the text.Due to the high volume of logs we receive it helps to receive everything in the same format, and code boxes make the logs very difficult to read. Also, attachments require us to download and open the reports when it is easier to just read the reports in your post.Please read every post completely before doing anything.Pay special attention to the NOTE: lines, these entries identify an individual issue or important step in the cleanup process.Please provide feedback about your experience as we go.A short statement describing how the computer is working helps us understand where to go next, for example: I am still getting redirected, the computer is running normally, etc. Please do not describe the computer as "the same"... Read more

36 more replies
Answer Match 45.78%

I'm pretty sure I'm hijacked, but I've never had email related problems before. A whole bunch of processes have been messed with, and I can't fix them, and one is Task Manager, which is set to download stuff silently every four hours I think. I have an a2 guard/scanner which has picked up suspicious stuff running periodic silent downloads in pchealth and help and support. I think something's wrong with my IE too.

As for the emails, I can't delete them without opening them, so they keep piling up, about 10 per day. I'm afraid to open them, then again, I'm not sure whether this malware program even requires me to. I know you like to see hijack this logs, but I haven't got that program at the moment. I'll just run off now and see if I can get that downloaded from someplace, and I'll send a log off if I'm successful.

I'd be very thankful for any help you could give.
 

A:I have 44 junk emails I suspect are being downloaded by malware infection

Logfile of HijackThis v1.99.1
Scan saved at 12:06:25 AM, on 05/08/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\ezSP_Px.exe
C:\Progra... Read more

1 more replies
Answer Match 45.78%

Hey All,

I was on a joke website and I don't know if my Active X was enabled or if I clicked on an ad pop up when I was trying to close it, but something happened and I was swamped with some nasty programs. Desktop background changed to "spyware found", the computer tries to start up Internet Explorer and head to advertisements and other sites, registry setting was changed to prevent opening up Task Manager and the registry setting would change back if you tried to correct it. When I finally got Task Manager up, things like 444.470, rundll32.exe, iedll.exe, iexplore.exe and others were running.

I quickly unplugged my network cable and I ran the free AdAware version that I have on my machine and it found some stuff, but didn't clean everything. I removed some tax information that I have on my machine to a flash drive. WARNING---Since this was my first infestation and before I knew I was in over my head and found your website, I attempted to clean up my machine myself. I knew the date and time I was infected and could tell what files were modified at that time, so I knew they were bad programs. If it is helpful, I can provide a list of the filenames modified at the time of infestation from the C:\Windows and C:\Windows\System32 directory. I deleted a couple and they reappeared shortly after, so I then created blank text files, renamed them to the bad file name executable and put them into the C:\Windows and C:\Windows\System32 directory. That way the vir... Read more

A:Malware Downloaded to my System - DeeWoo, OuterInfo, CoolWebSearch plus others

Hello and welcome to TSF

Please subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

========

Please follow all instructions and in which order they come, if you have any questions, please ask before proceeding. Its important that you follow this through until i give you the all clear, a lack of symptoms does not mean that it is no longer present.

Please Do Not Attach logs to your posts unless you are advised to do so.

========

Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions.

========

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

Viewpoint Media Player<---Viewpoint is considered as foistware instead of malware since it is installed without users approval but doesn't spy or do anything "bad". This will change from what we know in 2006 read this article: http://www.clickz.com/news/article.php/3561546

Additional Information Here
and Here

Deewoo Network Manager removal

=========

Download SDFix and save it to your Desktop.

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:SDFix)

Please then reboot your computer in Safe Mode by doing the fol... Read more

19 more replies
Answer Match 45.78%

I read articles only by tiversa stating that their was a certain malware that was very common. This malware is embedded in files you download on peer 2 peer networks such as limewire. Once it is downloaded onto your network it changes the share folder that you had setup and modifies it to add all your personal documents and files into the p2p share folder inadvertently. I have talked to many people and some say it could happen and some say not likely. I've just asking if anyone has seen or heard of this and if it's likely to happen or is it as common as they say

A:Quiz on Malware embedded in files downloaded from P2P sites

There is a much better way to get the answer you seek. Just Do google search for P2P malware types.BTW P2P is the acronym for peer to peer.i_Xp/Vista/W7/W10 User

10 more replies
Answer Match 45.78%

I received this email from my university network admin a few days ago: 
 
"...We received the attached complaint from [academic journal], alleging that you have excessively downloaded PDFs.  They claim that you downloaded more than 1,500 PDFs on [date].
They have subsequently blocked your IP address.  Before they will re-instate the address, they have requested that you delete the PDFs that you downloaded, and agree to cease all forms of robotic or excessive crawling / downloading of files."
 
I didn't do this, and I have been told that it is unlikely that any ip spoofing is happening.
 
I downloaded wireshark, and I have a few dumps of the activity, which seems to be coming from Tsingua University (I found:
 
X-Forwarded-For: 171.67.8.8  \r\n

True-Client-IP: 166.111.8.8\r\n 
 
in some of the packets)

 
Turning on Windows firewall stops the problem for now.
 
I've run: avira, malwarebytes, superantispyware, spybot, combofix, and hijack this (and I'm running ad-aware atm) (my hijack this logfile is below).
 
I don't have time to reinstall the os etc, so if you have any advice, it'd be greatly appreciated.
 
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:29:07 PM, on 3/5/2014
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.16518)
Boot mode: Normal
 
Running processes:
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common ... Read more

A:1500 pdfs downloaded....strange malware (cs student--please help)

shamless hopefully not excessively awful bump

9 more replies
Answer Match 45.36%

I had discovered that Apple (iTunes) had decided to change all my synced photos to .ITHMB file extensions that couldn't be opened on my PC, and when the windows pop-up box asked me if I wanted to search the web for software to open this type of file, I agreed, and was taken to the site for Systweak File Optimizer. The site claimed their software could "fix" broken file extensions, including the .ITHMB type. I thought this issue was related to an issue I had with iTunes the day before (had to uninstall and reinstall), so ran the "free" program. It identified all these errors in different sectors of my PC. When it asked if I wanted to fix them, it said it would fix 5 file types for free without a full purchase, so I agreed, hoping it would fix the .ITHMBs. Of course it didn't, so I paid $19.95 for the full version. When asked if I wanted to download all their other programs, I unclicked all the boxes. I ran the full version of the program, yet the photo files weren't fixed. I planned on calling them and asking for a refund. In the meantime, I took the time to search apple.com to find a solution, and downloaded an appropriate program that successfully converted all the photo files back to .jpg extensions. I should have realized something was wrong when a pop-up box kept coming up asking if I wanted to run "PC Back-up", one of the programs I specifically declined to have Systweak download.  
 
The next afternoon, I checked my emai... Read more

More replies
Answer Match 45.36%

So I downloaded DaemonTools Lite for free and went for the express install (I realise now that this was a massive mistake). My computer now can't search on google without a bunch of ads (Dragon Branch), and I can't click anywhere on any webpage without being redirected to a site asking me to install malware removal software.
It's taken me several attempts just to make this post, and I need this computer to get coursework done for university, I have deadlines coming up next Friday and everything takes twice as long as it should to do. Does anybody know what I should do? I don't even know what information to provide here.

A:Downloaded DaemonTools Lite and got nasty malware (Dragon Branch Ads)

Hello, and welcome This should not take long - stay with me, and we'll get it done.MiniToolbox by FarbarPlease download MiniToolBox, save it to your desktop and run it.Checkmark the following checkboxes:Flush DNSReport IE Proxy SettingsReset IE Proxy SettingsReport FF Proxy SettingsReset FF Proxy SettingsList content of HostsList IP configurationList Winsock EntriesList last 10 Event Viewer logList Installed ProgramsList DevicesList Users, Partitions and Memory size.List Minidump FilesList Restore PointsClick Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.===Security Check by screen317Download Security Check by screen317 from here or here.Save it to your Desktop.Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.A Notepad document should open automatically called checkup.txt. Please copy and paste the contents of the log in your next reply.Regards,Alex

1 more replies
Answer Match 45.36%

Action center says my virus protection applications (Windows Defender and Malware Fighter) are off and cannot be switched on. Is this normal?










Solved!
View Solution.

A:I recently downloaded 10bit's Malware Fighter free edition ...

old_geekster wrote:Matt, welcome to the forum. This is normal for Windows Defender when another antivirus is installed.  It is automatically disabled.  You will have to contact Malware Fighter's Tech Support for help on why their program is not working properly.  They are the experts on their product. Please click the Thumbs up + button if I have helped you and click Accept as Solution if your problem is solved.Thanks for the reply. I sent them a screenshot of the 'action center- installed anti virus applications' so with any luck they will have a solution to the problem. I do get pop-ups telling me that 'harmful cookies have been removed' but I'm not sure if that has anything to do with the 'virus protection' element of the package or is just a separate  'malware detection/removal' function.

5 more replies
Answer Match 44.94%

Hi my computer is super slow, I accidentally download something from email and everytime i restart my computer it pop up windows couldn't find .....someting someting .vbs .
Also i download ed some software to remove start-up program and its slow the computer even more.
I use lavasoftusa adware removal program.
And i use spyblaster too clean spyware.
Anyway this is my hijack this log:

Logfile of HijackThis v1.99.1
Scan saved at 11:18:26 AM, on 9/6/2007
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Intel\ASF Agent\ASFAgent.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Dell\OpenManage\Client\Iap.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINNT\system32\regsvc.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\WINNT\system32\MSTask.exe
C:\WINNT\system32\stisvc.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINNT\System32\mspmspsv.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
... Read more

A:HELP! Computer super slow, too much malware and junk software downloaded from e-mail

7 more replies
Answer Match 29.82%

I was working trying to fix my DVDFab express tonight, and I was using a keygenerator... bad I know... but anyways, I ended up downloading and installing something that made my desktop wallpaper go to white and flicker... THe program initiated a msdos looking window with an error message that asked me if I wanted to abort... I couldn't choose anything and had to reboot... that's when I found it had erased my wallpaper and I couldn't get it fixed.. i knew it was some kind of malicious program...

so i came to you guys and I have followed all your steps... My wallpaper is back and I think I have gotten rid of most stuf, but my computer is still running kind of weird, slow, just not the same....

I have ran Adaware SE Personal, Spybot, Notron Anti-Virus, Kapersky Online Scanner, CWShredder, and Spyware Blaster... Please see if something else is on there...

Thanks Guys!!!!

Here is my HijackThis log...



Logfile of HijackThis v1.99.1
Scan saved at 12:32:05 AM, on 12/31/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Intern... Read more

A:I Downloaded Something Bad!!!!

Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order it is mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below.

Please download Ewido Security Suite at http://www.ewido.net/en/download/.

1. Install Ewido Security Suite.
2. When installing, under 'Additional Options' uncheck:
* Install background guard
* Install scan via context menu
3. Launch Ewido, there should be an icon on your desktop, double click it.
4. The program will now open to the main screen.
5. When you run Ewido for the first time, you will get a warning 'Database could not be found!'. Click OK. We will fix this in a moment.
6. You will need to update Ewido to the latest definition files.
* On the left hand side of the main screen click update.
* Then click on Start Update.
7. The update will start and a progress bar will show the updates being installed. The status bar at the bottom will display 'Update successful'.
8. Exit Ewido. DO NOT scan yet.

If you are having problems with the updater, you can go to http://www.ewido.net/en/download/updates/ to update manually.

Download CleanUp! http://cleanup.stevengould.org/ (Alternate Link if main link don't work - http://www.greyknight17.com/spy/CleanUp.exe ) and install it. Don't run it yet.

Restart your computer and boot into Safe Mode (if you d... Read more

1 more replies
Answer Match 29.82%

system running : windows XP professional with sp3

okay, as the title implies, while surfing the internet a tab appeared in the firefox window that said "Updating..." but never showed/displayed anything. After that, I noticed the windows start/tool bar had changed from the XP theme version to the classic version. Then i noticed that there was no network connectivity. When I tried to look up what was wrong, the properties, rename, and delete options have been disabled from the right-click menu.
I received a message that there was attempt to update registry but whatever was done was restored, then my PC reboot.
what I've done so far:
I tried to boot using the windows xp CD but nothing happens. Windows eventually boots up, but I don't get any options to run repair or anything.
Used CA anti-virus for scan and found nothing (did this again in safe mode and still found nothing)
I did a search to see if I could find what was modified, it shows that all user accounts including a Helpassist?? account have been updated in some form or fashion so i don't know what else to do

I see svchost.exe, services.exe, and system taking up 50% of CPU occasionally but not sure what to make of that.

to get the internet started I tried to turn on some network services but all failed due to 'timeout'

Please let me know any ideas, or how to get started on trying to fix this problem.

thanks,
homero
other pcs are connected to the internet just fine.

A:pop up downloaded something

any ideas? anyone? a starting point?

2 more replies
Answer Match 29.82%

I took advantage of the student offer of Windows 7 and last night downloaded windows 7. I thought that because my laptop was 64 bit capable I could do a clean install to it from the download, which I now obviously realise was a mistake.

Does anyone know how I can change this download for a 32 bit version?

Thanks

A:Downloaded 64 bit but need 32 bit

Why can't you install 64bit? Have you tried and got an error?

2 more replies
Answer Match 29.82%

Is there a way to find out just how much in total the Get Windows 10 app has downloaded it so far?

A:How much of W10 downloaded?

There's no way to know that when Windows 10 hasn't been officially released yet. Maybe at a later date.

41 more replies
Answer Match 29.82%

So I downloaded something and although avast said it blocked a trojan/virus, I just want to sure my PC is safe/clean. Think you guys can help me out? 
 
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 7:10:11 PM, on 2/5/2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18163)
 
FIREFOX: 42.0 (x86 en-US)
Boot mode: Normal
 
Running processes:
C:\Users\Gene\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Gene\Downloads\HijackThis.exe
 
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Softwar... Read more

A:downloaded something...

Hello, Welcome to BleepingComputer.I'm nasdaq and will be helping you.If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.===Download Malwarebytes' Anti-Malware from HereDouble-click mbam-setup-2.X.X.XXXX.exe to install the application (X's are the current version number).Make sure a checkmark is placed next to Launch Malwarebytes' Anti-Malware, then click Finish.Once MBAM opens, when it says Your databases are out of date, click the Fix Now button.Click the Settings tab at the top, and then in the left column, select Detections and Protections, and if not already checked place a checkmark in the selection box for Scan for rootkits.Click the Scan tab at the top of the program window, select Threat Scan and click the Scan Now button.If you receive a message that updates are available, click the Update Now button (the update will be downloaded, installed, and the scan will start).The scan may take some time to finish,so please be patient.If potential threats are detected, ensure that Quarantine is selected as the Action for all the listed items, and click the Apply Actions button.While still on the Scan tab, click the link for View detailed log, and in the window that opens click the Export button, select Text file (*.txt), and save the log to your Desktop.The log is automatically saved by MBAM and can also be viewed by clicking the History tab and then selecting Application Log... Read more

2 more replies
Answer Match 29.82%

Hey.
I have had some problems with my computer, and know I have tried my best. Someone told me to download Hijack and then post my log here. Could someone please take a look at it-, If there's something more to be done, please let me know.

Thanks

Logfile of HijackThis v1.98.2
Scan saved at 21:57:56, on 11.10.2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
C:\Programfiler\Norton AntiVirus\navapsvc.exe
C:\Programfiler\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\ScsiAccess.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Programfiler\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Programfiler\Nokia\Nokia PC Suite 5\DataLayer.exe
C:\Programfiler\Fellesfiler\Nokia\NCLTools\NclTray.exe
C:\PROGRA~1\ELEKTR~1\OPTISK~1\Amoumain.exe
C:\Programfiler\Elaborate Bytes\CloneCD\CloneCDTray.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe
C:\Programfiler\Fellesfiler\Nokia\Services\ServiceLayer.exe
C:\Programfiler\Musikk\MUSICMATCH Jukebox\mmtask.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\bcmwltry.exe
C:\Programfi... Read more

A:Just downloaded HJ.

Download LSP Fix

LSP Fix download link

It's a program that can restore your internet connection if it's lost after the NewDotNet uninstall.

Uninstall NewDotNet via Start-Control Panel-Add or Remove Programs.

Restart your computer.

If that fails, then follow the instructions below:
PROCEDURE 4 (Download Uninstall from New.net):

From a computer that has Internet access, click on the following link:

NewDotNet uninstaller
Download and save uninstall6_22.exe to a 3- floppy disk.

Insert the floppy disk into the floppy drive of the computer that needs to have our software uninstalled from.

Click on Start.

Click on Run.

In the Open window type, A:\uninstall6_22.exe.

Click on the OK button.

Re-start the computer.

http://www.newdotnet.com/


Uninstall:

MyWay or MyWebSearch

Twaintech

Restart the computer.

Download and save these freeware/donationware programs to a permanent folder. Remember to check for updates and run them weekly.
***NOTE***A new version of Ad-aware has been released.
***ALSO***A new version of SpyBot's been released (v1.3...it's no longer in beta). If you have been using 1.2 you can install right over it. If you downloaded and used 1.3 beta it is suggested you remove it and reboot prior to installing.
Ad-aware SE download

Configure Ad-aware
First in the main window look in the bottom right corner and click on "Check for updates now." then click Connect and download the latest reference files.... Read more

1 more replies
Answer Match 29.82%

i downloaded the Quick Lanch Button but everytime after full download completed, it says network error...

More replies
Answer Match 29.82%

alright so i would say i am pretty computer literate at least for 16 you put me in my whole high school i would pry be second best, here is my HJT file i cant find nothing but i can tell you my problem the quick launch bar is messed up i open it an nothing is there it opens but just lines come and regedit says its in use by another program and task manager wont open

View attachment 32453
 

A:Downloaded something bad help please

Clear these three items in HJT and rescan:

O2 - BHO: (no name) - {3745D43B-4A84-485D-8EE9-BC6D0401DBF6} - C:\WINDOWS\system32\vtUkIBqR.dll
O2 - BHO: (no name) - {4F96CCB9-01EC-419E-AAEA-C2C913F2A236} - C:\WINDOWS\system32\byXRkIYS.dll
O20 - Winlogon Notify: byXRkIYS - C:\WINDOWS\SYSTEM32\byXRkIYS.dll

If they are still present, then download MalwareBytes Anti-Malware and while you are there grab the RogueRemoverFree as well. FileASSASSIN is under More Tools in Anti-Malware, and can actually delete the files while in use. Run that if the files wont delete or keep showing up in HJT. Make sure you update MalwareBytes before you do a full scan
 

7 more replies
Answer Match 29.82%

I downloaded a program yesterday and ran it but nothing happened. Then I read comments on a video of it and someone said it was most likely a RAT and another guy saying it was probably a virus. I can provide the file if that will help. I don't want a RAT.

A:May have downloaded a RAT. Don't know what to do.

Welcome aboard   Download Security Check from here or here and save it to your Desktop. Double-click SecurityCheck.exe Follow the onscreen instructions inside of the black box. A Notepad document should open automatically called checkup.txt; please post the contents of that document.NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.NOTE 2. SecurityCheck may produce some false warning(s), so leave the results reading to me.NOTE 3. If you receive UNSUPPORTED OPERATING SYSTEM! ABORTED! message restart computer and Security Check should run Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.Make sure the following options are checked:
Internet ServicesWindows FirewallSystem RestoreSecurity Center/Action CenterWindows UpdateWindows DefenderOther ServicesPress "Scan".It will create a log (FSS.txt) in the same directory the tool is run.Please copy and paste the log to your reply. Please download MiniToolBox and run it.Checkmark following boxes:Report IE Proxy SettingsReport FF Proxy SettingsList content of HostsList IP configurationList Winsock EntriesList last 10 Event Viewer logList Installed ProgramsList Devices (do NOT change any settings here)List Users, Partitions and Memory sizeList Restore PointsClick Go and post the result. Please download Malwarebytes Anti-Malware (MBAM) to your desktop.NOTE. If you already have MBAM 2.0 installed scr... Read more

1 more replies
Answer Match 29.82%

I just purchased a new HP desktop, INtel core 2 Quad processor, 64 bit performance with 8gb of ram, 1 Terrabyte hard drive. It came with Vista home premium 64 bit edition. I had previously purchased Vista Ultimate for a laptop that no longer works. When I downloaded Vista Ultimate I put in the 32 bit instead of the 64.....I am not able to do a restore to go back to the way I purchased it. I am not very computer savvy. Can anyone please help??? Thank you. And what would be the down fall for keeping the 32 bit installed (somone had told me I wouldn't be using the full capicity of the computer) Thanks again.

A:Downloaded 32 bit instead of 64 bit HELP

Originally Posted by cmb1966


I just purchased a new HP desktop, INtel core 2 Quad processor, 64 bit performance with 8gb of ram, 1 Terrabyte hard drive. It came with Vista home premium 64 bit edition. I had previously purchased Vista Ultimate for a laptop that no longer works. When I downloaded Vista Ultimate I put in the 32 bit instead of the 64.....I am not able to do a restore to go back to the way I purchased it. I am not very computer savvy. Can anyone please help??? Thank you. And what would be the down fall for keeping the 32 bit installed (somone had told me I wouldn't be using the full capicity of the computer) Thanks again.



32bit will only see 4gigs of ram and usually only be able to use abt 3.3 its also a bit slower depending on how you use it. when changing from one OS format (32bit) to another (64bit) it has to be a clean install.

Now about restoring you may have a backup there and available but since you are 32 bit and it isnt you cant use it. If you were to reinstall vista 64 it probably be available

7 more replies
Answer Match 29.82%

downloaded IE9, but cant find it did search, found an empty folder but that all thats marked IE, toshiba laptop running mozilla firefox 3.6

A:ie downloaded but not there

When you say downloaded, if you've kept your Vista updates up to date you should have SP2 and IE9. Go to your Windows Updates and install and check in restore hidden updates for more installations.

3 more replies
Answer Match 29.82%

Is there any utility that will tell me after the fact who downloaded anything to me? In my case, it's probably an update of some kind. But it has already happened because I see in Networx > General > Today that sometime this morning about 600 mb was downloaded to my computer. Is there any record of the source of this download in Win7, Firefox or some utility I can use to discover today's download, and to maintain a log in the future?

A:who downloaded to me?

Hello -It may not be unusual for a program to update itself if you are subscribed to it, like many Adobe products that Auto Update -Thank You - Detals of what Networx Can ShowText edited to show link to programs base

4 more replies
Answer Match 29.82%

So far I like it. However, I do a lot of photos and cannot figure out how to set up a new folder and organize them. Any advice ? Thank you
 

A:Just downloaded W10.

10 more replies
Answer Match 29.82%

Hello. I downloaded the new sp3 update yesterday and followed all the instructions and i was ready to restart my computer. When i did, everything went fine until after the loading screen it gave me a blue error screen. Since i needed the computer in working order, I used a pc recovery tool (pressed F10 when it started up) and did a non-destructive recovery which took about 20 minutes. Then after that was done i had to restart and do the windows first start up thing. Then i finally finished and saw that all of my custom features and files were no where to be found! All my applications and games that i downloaded are still in shape, but all of the custom features (like background, WMP playlists, Updates) were all gone. so is there any whay which i can restore my old settings? I need to have all my original settings as soon as i can please .

Thanks

A:I really need help, downloaded SP3...

Hi cloud366, it sounds like you have done a repair install. When you pressed F10, did you choose Last Known Good Configuration from the boot menu?

Also, check in C:\Documents and Settings for a duplicate profile. It could be that your original profile has corrupted and Windows built you a new one.

All those type of "custom features" live in your local profile.

3 more replies
Answer Match 29.82%

i downloaded a thing i thought was safe but turns out my mcafee site advisor and mcafee software let a trojan get on my computer. it the TrojanDownloader:WIN32/zlob.ZWC. microsoft malicious software tool detects it but wont remove it. mcafee dont detect it at all.
 

A:HELP PLEASE i downloaded and cant get rid of it

* Click here to download HJTsetup.exe.
Save HJTsetup.exe to your desktop.

Double click on the HJTsetup.exe icon on your desktop.
By default it will install to C:\Program Files\Hijack This.
Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
Put a check by Create a desktop icon then click Next again.
Continue to follow the rest of the prompts from there.
At the final dialogue box click Finish and it will launch Hijack This.
Click on the Do a system scan and save a log file button. It will scan and then ask you to save the log.
Click Save to save the log file and then the log will open in notepad.
Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
Come back here to this thread and Paste the log in your next reply.
DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
 

1 more replies
Answer Match 29.82%

hello my coputer is windos vista and the problem is everery time that i try to downloading anything i cant because there is a box that say "you current security setting do not allow this file to be downloaded" plis i really need help michael

More replies
Answer Match 29.82%

I opened a file from AIM, and now all these programs are trying to modify my computer. All help would be appreciated.

Logfile of HijackThis v1.99.1
Scan saved at 8:10:06 PM, on 9/23/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rainlendar2\Rainlendar2.exe
C:\Program Files\Scansoft\PaperPort\SmartUI\SmartUI.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Agnitum\Outpost Firewall\outpost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\BRMFRSMG.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Java\jre1.5.0_09\bin\jucheck.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\WINDOWS\system\wcisvc.exe
C:\Program Files\AIM\aim.exe
C:\Documents and Settings\Yolkavich\Desktop\HijackThis.exe

R3 - URLSearchHook: AOLTBSearch ... Read more

More replies
Answer Match 29.82%

Hello

I have setup every application to "ask me before checking for updates",

Even when I am not using any brower, email or any opther application, I notice that my lights on my modem are blinking quite fast... that is something is being downloded. It has been going on for quite sometime.

How do I find out what is being downloded (or uploaded)?

I use
toshiba laptop
window 7 prof
IE9
MS office 2010
Internet secuirity (antivirus, etc ...) from Bell
Thank you very much
 

A:How do I know what is being downloaded?

And you have no browser open? And check for new email only infrequently?

You could try disconnecting from the modem and see if any program complains.

In Network Connections right click on your connection and select Status. Watch the Bytes sent and received to get an idea of the upload vs download and how much.
 

3 more replies
Answer Match 29.82%

Think i accidently downloaded something or not, Over the past week it has been getting slower and ie has now been hanging up. here is a dss log and thank you:Deckard's System Scanner v20071014.68Run by Gil on 2008-06-09 22:07:02Computer is in Normal Mode.---------------------------------------------------------------------------------- System Restore --------------------------------------------------------------Successfully created a Deckard's System Scanner Restore Point.-- Last 5 Restore Point(s) --28: 2008-06-10 02:07:21 UTC - RP513 - Deckard's System Scanner Restore Point27: 2008-06-10 00:51:33 UTC - RP512 - System Checkpoint26: 2008-06-04 03:16:24 UTC - RP511 - Software Distribution Service 3.025: 2008-06-03 21:13:28 UTC - RP510 - Software Distribution Service 3.024: 2008-06-03 02:32:27 UTC - RP509 - Software Distribution Service 3.0-- First Restore Point -- 1: 2008-03-13 20:18:23 UTC - RP486 - System CheckpointBacked up registry hives.Performed disk cleanup.Total Physical Memory: 448 MiB (512 MiB recommended).-- HijackThis (run as Gil.exe) -------------------------------------------------Logfile of Trend Micro HijackThis v2.0.2Scan saved at 10:10:47 PM, on 6/9/2008Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.16640)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC: ... Read more

A:Think I Downloaded Something, Help

Hello and welcome to BleepingComputer I don't see any malware there.Some points:Do you have a bought license for Norton? Or did you get it for free? The reason I'm asking is, it's a really heavy app for an antivirus. You can install a better antivirus that's waaaay lighter and easier for the computer, and takes less ram and actually is more efficient too.So, I recommend uninstalling Symantec's products and installing AntiVir (That's the promotion license for AntiVir Premium -- 6 months for free. You can get their free edition here) or Avast! instead.Another valid point: when did you install Service Pack 3? There has been several flaws with it.. Some people have really bad problems with SP3, I seem to be one of the lucky ones with no issues. Did you notice the problems after installing it?Also have a read through THIS TOPIC.Finally.....Click Start >> Run and paste in:"%userprofile%\desktop\dss.exe" /daftClick OK.Click OK to the prompt from Deckard's System Scanner.Click Scan.Checkmark every entry found.Click Fix.Let me know how you get on.

2 more replies
Answer Match 29.4%

I want to use windows 7 which is already dowloaded on a pc (with product key) to use for my Macbook Pro, but it says this when on the Microsoft website "ErrorThe product key you entered appears to be for software pre-installed by the device manufacturer. Please contact the device manufacturer for software recovery options." ? Can anyone help please?

A:Using already downloaded Windows 7(currently on a PC) to use...

Hi: What you want to do would violate the Microsoft Windows licensing terms, so no one here will be able to help you with that. The product key you entered is an OEM product key.  You need a full retail version of a windows product key in order to download the Windows 7 software. OEM versions of Windows cannot be transferred or used on another PC. Please see the Microsoft OEM licencing terms regarding use of Windows OEM software. http://www.microsoft.com/oem/en/licensing/sblicensing/Pages/licensing_faq.aspx#fbid=q7CEbN2yHpJ Q. Can my customers transfer or sell their OEM software licenses? A. After an OEM software license has been installed on a PC, the license may not be installed on or transferred to another PC. However, the entire PC may be transferred to another end user along with the software license rights. When transferring the PC to the new end user, the software media, manuals (if applicable), and Certificate of Authenticity label must be included. It is also advisable to include the original purchase invoice or receipt. The original end user cannot keep any copies of the software. PC manufacturers do not provide OEM Windows software for download. You would have to purchase a set of W7 recovery disks for the PC that has W7 on it, and they will only work on that PC.

1 more replies
Answer Match 29.4%

ok I went away for the weekend and my dad downloaded somethin. he deleted it (so he says) but now my spyware and malware scanners wont open, browser is very slow, and internet is only connecting at 36 Mbps usually connects at 54 Mbps I have included a HJT log, the dds.tx, the attach.txt (not posted but attactched) and a kapersky scan log.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 12:35:03 PM, on 4/14/2009Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v7.00 (7.00.6000.20978)Boot mode: NormalRunning processes:H:\WINDOWS\System32\smss.exeH:\WINDOWS\system32\winlogon.exeH:\WINDOWS\system32\services.exeH:\WINDOWS\system32\lsass.exeH:\WINDOWS\system32\svchost.exeH:\WINDOWS\System32\svchost.exeH:\WINDOWS\system32\spoolsv.exeH:\Program Files\Java\jre6\bin\jqs.exeH:\WINDOWS\system32\PnkBstrA.exeH:\WINDOWS\system32\PnkBstrB.exeH:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exeH:\WINDOWS\system32\svchost.exeH:\Program Files\Compact Wireless-G USB Adapter Wireless Network Monitor\WLService.exeH:\Program Files\Compact Wireless-G USB Adapter Wireless Network Monitor\WUSB54GC.exeH:\WINDOWS\Explorer.EXEH:\WINDOWS\system32\wscntfy.exeH:\Program Files\LClock\LClock.exeH:\WIN... Read more

A:Father downloaded something while I was gone.

checkin to see if anyone responded----------------------Hello shadnottus,While we understand your frustration at having to wait, please note that Bleeping Computer deals with several hundred requests for assistance such as yours on a daily basis. As a result, our backlog is quite large as are other comparable sites that help others with malware issues. Although our HJT Team members work on hundreds of requests each day, they are all volunteers who work logs when they can and are able to do so. No one is paid by Bleeping Computer for their assistance to our members.Further, our malware removal staff is comprised of team members with various levels of skill and expertise to deal with thousands of malware variants, some more complex than others. Although we try to take DDS/HJT logs in order (starting with the oldest), it is often the skill level of the particular helper and sometimes the operating system that dictates which logs get selected first. Some infections are more complicated than others and require a higher skill level to remove. Without that skill level attempted removal could result in disastrous results. In other instances, the helper may not be familiar with the operating system that you are using, since they use another. In either case, you wouldn't want someone to assist you who is not familiar with your issue and attempt to fix it, would you?We ask that once you have posted your log and are waiting, please DO NOT "bump" your thread or make further repl... Read more

16 more replies
Answer Match 29.4%

I made the stupid mistake of downloading "trial" version of PCMightyMax that I saw referenced in forums. At the end of the download it told me I had 309 problems but it wouldn't "fix" them without ordering it. Which is ok; however, now I'm getting a constant popup telling me about my numerous problems and the "PC ambulance" is parked on my start bar. I hunted an uninstall (Add/Remove programs) and in Windows Explorer Programs file and it didn't have one so I just "deleted" it out of window explorer programs file. But I still have the popup and the ambulance parked on my desktop. Anyone know how to get rid of this? Did the CWS thing and it says my computer is clean. Here is my HJT file:
Logfile of HijackThis v1.97.7
Scan saved at 2:20:28 PM, on 8/31/04
Platform: Windows 98 Gold (Win9x 4.10.1998)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\WINDOWS\SYSTEM\SXGDSENU.EXE
C:\MOUSE\SYSTEM\EM_EXEC.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\REGPROT\REGPROT.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\REALTIME.EXE
C:\PROGRAM FILES\SPYWAREGUARD\SGMAIN.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\PROGRAM FILES\SPYWAREGUARD\SGBHP.EXE
C:\WINDOWS\SYSTEM\PSTORES.EXE
C:\UNZIPPED\HIJACKTHIS[1]\HIJACKTHIS.EXE

R1 - HKCU\Software\Microsoft\Windows\CurrentVer... Read more

A:Downloaded PCMightMax

As far as the CD-Rom goes.. Try installing a new ASPI layer.. Forceaspi is probably the easiest way to do this.. http://radified.com/ASPI/forceaspi.htm

Check the run statement in you win.ini file in your windows directory for a call to the unwanted program.. I don't see it in your log..
 

1 more replies
Answer Match 29.4%

I have managed to get a-hold of something that is messing with my system. I'm hoping someone can help me. The first sign something was wrong was with McAfee. It notified me I wasn't protected. When I tried to turn it on it would turn off on it's own. I have downloaded several security packages since and scanned but none have found the problem. Now the computer is becoming more and more sluggish.

I have an Acer Tablet with Intel and Atom, CPU N450 @1.66 GHz, 0.99GHz Ram, running Windows XP Home Edition 2002 Service pack 3

I will post my logs from HijackThis and GMER. I downloaded DDS onto my desktop and ran it 3 times but no logs are popping up. I know directions said to disable any script blockers but I don't think I'm running any and if I am I don't know where to go to find and disable them.

Thank you in advance for whatever help you can give.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:15:59 PM, on 6/8/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Launch Manager\dsiwmis.exe
C:\Program... Read more

More replies
Answer Match 29.4%

I need hlep removing the following virus: 33742600.exe contained threat UltraDefraggerFraud. I used Norton Power Eraser to remove but it is still corrupting my computer.

Tech Support Guy System Info Utility version 1.0.0.1
OS Version: Microsoft Windows 7 Home Premium , 32 bit
Processor: Intel(R) Core(TM)2 Duo CPU T6670 @ 2.20GHz, x64 Family 6 Model 23 Stepping 10
Processor Count: 2
RAM: 3032 Mb
Graphics Card: Mobile Intel(R) 4 Series Express Chipset Family, 1292 Mb
Hard Drives: C: Total - 290204 MB, Free - 216034 MB; D: Total - 14999 MB, Free - 9870 MB;
Motherboard: Dell Inc., 0C145T, , .4S15RK1.CN129619AI01CC.
Antivirus: Norton Internet Security, Updated and Enabled
 

A:Virus downloaded

I sent this last weel and still haven't received a reply with assistance.
 

1 more replies
Answer Match 29.4%

Should I keep all these programs intalled??
 
 
FRST64
 
FSS
 
MINI TOLL BOX
 
SECURITY CHECK
 
SFCFIX
 
ASHAMPOO
 
AUSLOGICS
 
CCLEANER
 
Nir softshelle x View
 
Speccy
 
Revo uninstaller
 
 
TWEAKING.COM
 
 
 
WISH SOMEONE COULD HELP ME OUT!!!

A:About downloaded programs!!

Were you having help at the Malware Removal Forum. If you are finished you can remove
 
FRST64
 
FSS
 
MINI TOLL BOX
 
SECURITY CHECK
 
SFCFIX
 
TWEAKING.COM   (if this is the Repair all in one Program)
 
Nir softshelle x View
 
Speccy
 
 
You can remove some of the programs with Delfix but only check the box "Remove Disinfection Tools" What it does not remove, you can delete manually.
 
What is the Auslogics program called?
 
What is the Ashampoo program called?
 
Is Revo Uninstaller the Free version or a trial version of Pro?

11 more replies
Answer Match 29.4%

this is where i downloaded my virus and i still havent ridded my comp of it .. any help would be greatly appriciated ____________!!!!!"note this is a virus dont download if you dont know how to handle it"!!!!!!!!1_____ .. it will mess your computer up it says the process name is dw20.exe and there were about 200 of them the discription was rxRZP

[url removed]

and im sorry if this was out of area or against some regulations .. i just want my comp back :'(
 

A:!!!! This is a virus i downloaded !!!!!

To help the trained malware helpers to identify and resolve the problems on your computer, please follow the instructions in this sticky thread:
http://forums.techguy.org/virus-other-malware-removal/943214-everyone-must-read-before-posting.html

From that point please await help from an antimalware helper (identified by a gold shield beside their name. It could take a few days as trained helpers are in short supply, but I'm confident you'll be seen to.
 

2 more replies
Answer Match 29.4%

Got a Skype call telling me Skype had found a problem with my computer and I needed to go to a website for more info (supposedly from Skype) -stupidly, I went to the website and was immediately infected with what I think is probably malware.
Neither Malwarebytes nor Avast! can find anything, but this warning keeps cropping up that I can't get out of unless I get out of my web browser.
I am a total beginner when it comes to the internal workings of a computer, so if anyone can help, please use basic English, not techspeak or I'm lost
Thanks Lynne

Tech Support Guy System Info Utility version 1.0.0.1
OS Version: Microsoft Windows 7 Home Premium , Service Pack 1, 64 bit
Processor: Intel(R) Core(TM) i3 CPU 530 @ 2.93GHz, Intel64 Family 6 Model 37 Stepping 2
Processor Count: 4
RAM: 6071 Mb
Graphics Card: NVIDIA GeForce 8600 GT , 512 Mb
Hard Drives: C: Total - 941478 MB, Free - 848061 MB;
Motherboard: Gateway, H57M01, , U01K095201588
Antivirus: avast! Antivirus, Updated and Enabled
 

More replies
Answer Match 29.4%

Hello everyone! So, I don't know when this problem started, but probably a few days back. The EXEs I already had on my laptop run perfectly fine, but whenever I download an EXE from the internet, it doesn't do anything. I double-click them, open the task manager, look at the program I ran, and it gets stuck to a specific amount of memory usage (Depending on how heavy the program is), and some seconds later it closes. I can't see it on the task manager. Examples are: "WinRAR Installer", "FIFA 14 (After I installed but the game won't run)", "FiveM installer (A multiplayer client for GTA V)".
I tried one thing and transfered the FiveM installer to another laptop which was new, and it worked! It was installing perfectly on that laptop. So I transfered the installed files back to my laptop, and when I ran the EXE that was installed (Along with a lot of other DLLs and related files that were installed with the program), it had the same problem. It got stuck to a certain amount of memory usage, and closed. Now I'm totally confused, I tried the fix on Microsoft's website (First Automatically, didn't work, then manually, that also didn't work). Any help would be much appreciated.
Thanks.

Greetings, Pardeep.

A:Downloaded Executables Won't Run

Try a clean startup - Troubleshoot Application Conflicts by Performing a Clean Startup
Try installing in Safe Mode (with or without Networking), you will need to run SafeMSI.exe first when in Safe Mode. Please note that, successful installation depends on which services are needed by the installer. So one can fail and other work.

9 more replies
Answer Match 29.4%

Okay, somebody please correct me if I'm wrong. My main goal is I want to burn avi files onto blank DVDs files I have on my computer. If I'm not mistaken, based on all the information I've read from lots of people on this site, I assume the following is correct, but if not, somebody with experience in this subject please help!
1. i have a downloaded .avi movie from the internet around 700,000Kb or so
2. I'm thinking that I'm supposed to use VirtualDub to capture and make a file of JUST the audio from the file and make it a .WAV
3. Then I use TMPGEnc to convert ONLY the video of the original downloaded file to mpeg-2.
4. Now I'm confused. Somehow or another I guess I'm supposed to fuse the two separate files together and "shrink" the newly created mpeg-2 file. And since the complete file is going to be really big, do I have to "compress" it somehow so it will fit onto the standard DVD+R? And can I do all this with Ulead Movie Factory 2E? That's the program that came with my DVD burner.
5. If I'm leaving something out PLEASE tell me, folks! You all have helped me every time in the past, and I am really grateful for that.
 

A:downloaded avi-->mpeg-2-->DVD+R

Originally posted by NYCaztecDC:
Okay, somebody please correct me if I'm wrong. My main goal is I want to burn avi files onto blank DVDs files I have on my computer. If I'm not mistaken, based on all the information I've read from lots of people on this site, I assume the following is correct, but if not, somebody with experience in this subject please help!
1. i have a downloaded .avi movie from the internet around 700,000Kb or so
2. I'm thinking that I'm supposed to use VirtualDub to capture and make a file of JUST the audio from the file and make it a .WAV
3. Then I use TMPGEnc to convert ONLY the video of the original downloaded file to mpeg-2.
4. Now I'm confused. Somehow or another I guess I'm supposed to fuse the two separate files together and "shrink" the newly created mpeg-2 file. And since the complete file is going to be really big, do I have to "compress" it somehow so it will fit onto the standard DVD+R? And can I do all this with Ulead Movie Factory 2E? That's the program that came with my DVD burner.
5. If I'm leaving something out PLEASE tell me, folks! You all have helped me every time in the past, and I am really grateful for that. Click to expand...


"Minimum wage is just another way of saying, 'If I could pay you less, I would!' "Click to expand...
 

1 more replies
Answer Match 29.4%

i downloaded flashget but how do i use it plz help !!!
 

A:i downloaded flashget but how do i use it plz help !!!

Even though it appears you're having the same problem, please start a new thread when you have a new issue. It's very difficult to keep two problems straight and who's working on what in a single thread.

I've created a new thread for your issue here.

Thanks for your cooperation.
 

1 more replies
Answer Match 29.4%

Hi everyone,
 
I have AVG Free 2013, which needed to be updated (i've since done this) and when closing Google Chrome, I got the message that avgui.exe was being downloaded. I did a little research, and most places seem to say it has to do with registry errors, but AVG had never done anything like that. Does anyone have any possible reasons for this? Thanks in advance.

A:avgui.exe being downloaded?

Hi -The process known as AVG User Interface belongs to software AVG Internet Security by AVG Technologies CZ, s.r.o (www.freeavg.com).It is a Verisign signed file. The file is certified by a trustworthy company.File avgui.exe is not a Windows core file. The process can be uninstalled in the Control Panel.NOTE : avgui.exe is able to record inputs.Therefore the technical security rating is 10% dangerous.In the event of any problems with avgui.exe, you may want to do the following:Uninstall the associated program Go - Start > Control Panel > Add/Remove programs (Programs and Features in Vista and Windows7) > Delete > AVG 2013 or AVG 2011If this is bothering you, then you can replace AVG free with any of these Free Antivirus programs > >Microsoft Security Essentials (what I currently use)Avira AntiViravast! Thank You -

1 more replies
Answer Match 29.4%

Some programs that I download don't show up in my programs. I have to enter the program in search & it appears. It's in Computer © but it's all the contents of the program. This has happened several times and I reinstall the program but get the same results.

Happy Thanksgiving to all.

A:Downloaded Software

Programs that have no install routines...such as those in .zip files/folders...aren't reflected in listed programs installed.  They don't use an installer so they don't appear.
 
http://superuser.com/questions/532460/best-practice-for-installing-small-programs-without-installers-on-windows
 
Louis

1 more replies
Answer Match 29.4%

Hi ,I downloaded a movie and can't seem to get it to work on quick time player. Can anyone tell me the best utlity to watch a movie on.

Thanks
 

A:downloaded movies(what is the best...

7 more replies
Answer Match 29.4%

I went to yahoo images and downloaded a new wallpaper. i saved the image in the my pictures folder. i set the image as my wallpaper and everything was working fine. this was last week. a couple of days ago i boot up and there is no real wallpaper, just a green screen. all of my icons are there are and the computer still functions properly, there's just no wallpaper. i re boot and my wallpaper is back again. is there something wrong with my computer or is it the image. iv'e done this with a couple of wallpapers that i've gotten online.

any help will be much appreciated.

-thank you for your time.

More replies
Answer Match 29.4%

Hello-I have a windows xp (version 2002) Asus EeePC and I think I might have downloaded a virus accidentally whilst on a music radio website. I found that it messed up my internet browser and it would directly open to a website called "partner12.mydomainadvisor.com" Please advise what I should do to clean this up! I have changed the default from the wierd website to "google.com" but it still will default to this website "partner12..." if the domain name does not exist. i used to have norton antivirus but the subscription ran out and i did not renew...I know I should probably get something to protect my computer as well from now on. Thank you
 

More replies
Answer Match 29.4%

ComboFix 09-08-10.06 - nancy bernal 16/08/2009 22:07.1.1 - NTFSx86Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.502.228 [GMT -7:00]Running from: c:\documents and settings\nancy bernal\Desktop\combofix.exeAV: CA Anti-Virus *On-access scanning disabled* (Updated) {17CFD1EA-56CF-40B5-A06B-BD3A27397C93}FW: CA Personal Firewall *disabled* {14CB4B80-8E52-45EA-905E-67C1267B4160}.((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))).c:\docume~1\NANCYB~1\APPLIC~1\alotc:\docume~1\NANCYB~1\APPLIC~1\DriveCleaner 2006 Freec:\docume~1\NANCYB~1\APPLIC~1\DriveCleaner 2006 Free\Logs\update.logc:\docume~1\NANCYB~1\APPLIC~1\FunWebProductsc:\documents and settings\angel\Application Data\SpamBlockerc:\documents and settings\nancy bernal\err.logc:\documents and settings\nancy bernal\ResErrors.logc:\documents and settings\scareface\Application Data\SpamBlockerc:\documents and settings\scareface\Start Menu\Programs\InternetGameBoxc:\documents and settings\scareface\Start Menu\Programs\InternetGameBox\InternetGameBox.lnkc:\documents and settings\scareface\Start Menu\Programs\InternetGameBox\Uninstall.lnkc:\documents and settings\scareface\Start Men... Read more

A:Downloaded ComboFix

ComboFix logs should not be posted outside the HijackThis forums. It is an extremely powerful tool which should only be used when instructed to do so by someone who has been properly trained. ComboFix is intended by its creator to be "used under the guidance and supervision of an expert." It is NOT for private use. Please read Combofix's Disclaimer. Using this tool incorrectly could lead to disastrous problems with your operating system such as preventing it from ever starting again.Please create a new topic explaining the nature of your problem in the Am I infected? What do I do? forum. Describe pop-ups and system tray or desktop icons that have appeared. Explain what is "going wrong" with your computer. Note any tools you have used and their respective results.If needed, we will direct you to our HJT Preparation Guide.Thank you for using BleepingComputer as your malware removal source.This topic is now closed. The BC Staff

1 more replies
Answer Match 29.4%

has anyone downloaded the new ad-ware 07??? i downloaded the free version as it is freeware but i cant seem to get the installation to work, when i double click on the application is gives me this error: anyone know why??

A:Downloaded the new ad-ware 07???

anyone can help out?

6 more replies
Answer Match 29.4%

hi i downloaded a demo of family feud party online i tryed to play it for an hour and could not get into a game. then my free trial was up . i tryed downloading it again but it wont let me play, is there any way of deleting all the data so that i can try again thx
 

A:downloaded demo

11 more replies
Answer Match 29.4%

I downloaded children of the nile and it won't open - :

http://www.tiltedmill.com/forums/showthread.php?t=4476
 

A:Just downloaded - Won't open!

I don't think anyone is going to help you unless it was a legit download that you payed for....
 

2 more replies
Answer Match 29.4%

I am soon buying an External HDD to use with my desk top computer, running Windows XP
If I download an application can I install on to the new HDD , and run it from the new external HDD..?
Thanks ?.
Mypenry

A:Downloaded An Application...

Yes you can, but that does not mean you can go from computer to computer using the program. When a program is installed it make modification to Windows registry. This allows Windows to access the program when you start the program in the Program Files or click an icon on the desktop. If you were to move the external drive to another computer those registry entries would not be there, so windows would not know how to handle the program.
The simple answer is yes you can. Just do not expert to move it from computer to computer.
I hope this helps.

6 more replies
Answer Match 29.4%

Hi,

I downloaded Windows 7 RC 64 bit and I'd love to install in on a partition on my PC ... only ... how do I make a bootable image of it?

I've downloaded ISOBuster as suggested at the Microsoft site, I also have MagicISO free version and Nero 8 Ultra, none of these seems to want to work for me.

I did a Nero copy of the image which apparently has nothing to do with a bootable image ... duh.

The MagicISO seems like it will work if I purchase it ... first things first ... can I do it for free?

The ISOBuster seems absolutely impossible to decipher it's "Simplicity"?

Can Nero make a bootable image?

Can anyone pray tell me what I don't know. I'm really eager to hear it.

Thanks,

John

PS I hope my dumbness is only temporary!

A:OK, I got Windows 7 RC 64 bit downloaded.

Have you tried Imgburn?

10 more replies
Answer Match 29.4%

Some downloaded will not open getting message:

"Thie program is blocked by group policy. For more information, contact your system administrator"

I am the administrator on my own personal computer. No one else uses it.
 

A:Some downloaded will not open...

10 more replies
Answer Match 29.4%

I have some kind of software been downloaded on my computer I didn't do
the software is WinPcap 4.1.2 CACE Technologies does this need to be on my computer
 

A:downloaded software

6 more replies
Answer Match 29.4%

I have been unable to activate downloaded attachments which come down in zip format. At one time i had (?) a ZIP program Icon on my desk top as well as a 7-zip appearing in drop down menus, but neither of these programs would not connect to the downloaded attachments in zip format to unzip them. Can someone help me with this problem? Thank you !
 

A:downloaded Zip files

12 more replies
Answer Match 29.4%

A few days ago I accidently downloaded a virus. I clicked on the download button, instead of the download link. The download button was a virus, when I opened the file, it proceeded to download many unwanted programs to my computer. Some of the symptoms my computer is having are:
-File keeps popping up on my desktop named, "Continue Live Installation"
-That same file opens on its on several times while im on the computer. I Close It and do not continue with the installation
-Almost everything I click on makes ads pop up in new windows.
-Their are ads all over websites that would normally not have ads (ex. Youtube, facebook)
-Computer is generally slower
Those are my problems. Things I have done so far are:
-Immediately uninstalled unwanted programs via control panel
-Ran Malwarebytes Anti-Malware and got rid of anything it found
-Ran RKill and JRT
-Ran Hitman Pro and got rid of anything it found

After this I am still having all the problems listed above. I hope someone can help me out please!!! This is a work computer and I haven't been able to do any work all week .
 

A:Downloaded a virus

Welcome to TSG,

I've removed your offer since that is not allowed on these forums.

What kind of work computer is this?
 

2 more replies
Answer Match 29.4%

Hi!
 
I`ve downloaded and registered program but can`t find it anywhere on computer
need help

A:downloaded program

What's the program?

1 more replies
Answer Match 29.4%

Hi allvery frustrating as I've trawled the forums and also tried everything but nothing happenslong story short,I have windows 8.1 on my laptop,did all the critical/updates,restarted etc..no problemsthe windows 10 pop up appears fine as well..so i follow the prompts etc ,since i don't want to wait i downloaded the windows creation tool from the official page,that downloaded fine and also ran fine..but then nothing happens,even after restartingwhat am i missing here?appreciate any help because i have run out of ideas herecheers

A:windows 10 downloaded but nothing happens..

also i forgot to add.i receive NO error messages whatsoever...

9 more replies
Answer Match 29.4%

When I tried to download a file it told me that my Security settings did not allow the program to run. I shut off all security (norton 360 and Windows Internet options) but still nothing. This happens with all the programs now...Microsoft Security Essentials, Hijackthis...etc.

I think I a program called PC power speed is causing these problems...
 

More replies
Answer Match 29.4%

I ran an exe file and it took over my computer. I have no access to my drives, it locked down the administrator user, i got my regedit working and my command line back but i cant see my c or d drives

contrary to the thread rules i will post my HJT log:

*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/*/

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:55: VIRUS ALERT!, on 10/5/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
G:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\WINDOWS\system32\cisvc.exe
G:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
C:\WINDOWS\system32\PnkBstrA.exe
G:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
C:\HijackThis.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.co.uk/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = ... Read more

More replies
Answer Match 29.4%

Hi! I downloaded avg for free and saved it to my harddrive. In order to complete the installation, I need to run it from the saved area. When I do I get an error message that says this program won't support win32? Is there a way to change something to complete the installation? thanks,georgeemy
p.s. avg is an anti-virus download
 

A:downloaded AVG for free

I believe this may be what you're looking for:
http://www.grisoft.com/faq/us_faqtext.php?id=175&sid=26
 

2 more replies
Answer Match 29.4%

I have downloaded a pdf from a website. I am trying to find out when the website owner uploaded this document. All I can see from Sumatra - document properties is a creation date of October 1 2015. I first  saw this document on the website on October 13 2015. I am trying to find when exactly the document was uploaded to the web. How would I do that? Is it in fact technically possible?
 
Thanks
 
Paul

A:How can I tell when a pdf I have downloaded from the web was uploaded to the web

You might try asking the website owner if they have a log from the website server showing when the file was uploaded.

2 more replies
Answer Match 29.4%

I use AT&T YAHOO DSL service. recent downloads included a Yahoo version of IE 7. After the skanky version downloaded, I lost the ability to access Internet Options via the Tool link in the browser. Tried going through Control Panel, but when I click on Internet options there, you can see a window open then immediately close. I dont know any other ways to access these options. Could someone help? Thanks

Candi

FYI...using Win XP Pro sp 2, AVG Virus Protect, Adaware malware detection

A:Downloaded Ie 7 And Now I Am In Trouble

welcom to this forum
may I suggest to start with why not try a system restore to before IE7 was installed and see if IE6 still works?

4 more replies
Answer Match 29.4%

I downloaded a game called the curse of monkey island through a torrent.

i already own the game, but it was scratched.

Once i finished downloading it, It was of course in image file, so i ran it through daemon tools. Autorun worked and everything, but when i clicked on install the clock showed next to the mouse for a few seconds then it stopped and nothing happened.

Then i went into the main folder and clicked setup.exe and ran as administrator.. again nothing hapened.. Ive tried burning it to a disk too with no luck.

A:Cant Run A Game I Downloaded.

This game was released in '97. I doubt if it will even run on Vista. You can try compatibility mode

3 more replies