Author Topic: ***Nasty Spyware***  (Read 3099 times)

Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #20 on: November 02, 2006, 12:21:30 AM »
[quote name=\'guestolo\' post=\'230843\' date=\'Nov 1 2006, 07:50 PM\']You can still go ahead and delete this folder
C:\Program Files\MalwareBot <-folder

How's everything running on your end?

Can you do one more thing please
Download and unzip to a folder of it's own on desktop
http://metallica.geekstogo.com/findlop.zip

Inside the folder find findlop.bat

Doubleclick it and it will create the file C:\findlop.txt
Find that file and copy the contents into your next post.[/quote]

I deleted the rest of MalwareBot and the folder...

Things are running ok, a little slow when browsing and I wanted to ask you about potential viruses I might have on my pc. According to AVG and my virus scan it did detect viruses and it said some cannot be cleaned. How can I show you what AVG has found?

Finally, the only contents that findlop.txt created in notepad is this: [TRACE] Enumerating jobs and queues

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #21 on: November 02, 2006, 09:21:08 AM »
where are the files located? In the System Volume Information folder?

Can you let me know what version of AVG your running, have you updated since you posted here?
Right click the AVG icon by the clock
Left click "Lauch AVG control center"
Select "Information" in the top menu bar
Then "About AVG"

Let me know Program version no. please

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #22 on: November 02, 2006, 12:00:05 PM »
[quote name=\'guestolo\' post=\'230964\' date=\'Nov 2 2006, 08:21 AM\']where are the files located? In the System Volume Information folder?

Can you let me know what version of AVG your running, have you updated since you posted here?
Right click the AVG icon by the clock
Left click "Lauch AVG control center"
Select "Information" in the top menu bar
Then "About AVG"

Let me know Program version no. please[/quote]


I don't know what happened to the files if indeed there are files. I followed the instructions "Can you do one more thing please
Download and unzip to a folder of it's own on desktop
http://metallica.geekstogo.com/findlop.zip

Inside the folder find findlop.bat

Doubleclick it and it will create the file C:\findlop.txt
Find that file and copy the contents into your next post."

- And when I doubleclicked findlop.bat in the folder it created a notepad with the contents of '[TRACE] Enumerating jobs and queues' and that was the only thing in the notepad that was created. I don't know where to find any other files you refer to.

The AVG version I'm using is AVG 7.5 427 Soho Edition  and I know AVG detected some viruses which I've found and some deleted in safe mode etc...
« Last Edit: November 03, 2006, 12:39:40 AM by guestolo »

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #23 on: November 02, 2006, 10:05:07 PM »
Why do you keep quoting me??
Please supply the info I wanted
Here, let me quote myself
Quote
where are the files located? In the System Volume Information folder?

Can you let me know what version of AVG your running, have you updated since you posted here?
Right click the AVG icon by the clock
Left click "Lauch AVG control center"
Select "Information" in the top menu bar
Then "About AVG"

Let me know Program version no. please

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #24 on: November 03, 2006, 12:25:41 AM »
[quote name=\'guestolo\' post=\'231268\' date=\'Nov 2 2006, 09:05 PM\']Why do you keep quoting me??
Please supply the info I wanted
Here, let me quote myself[/quote]

What's your problem dude? Don't misconstrue things so easily, sheesh!

I was quoting you so you know where I stand as far as steps and instructions you asked me for, simple huh?

I gave you the information you asked for, ie, AVG info, what more do you want?

In case you missed it again, let me write down and no, let me quote myself exactly what you missed in my last response:

"The AVG version I'm using is AVG 7.5 427 Soho Edition and I know AVG detected some viruses which I've found and some deleted in safe mode etc..."

If you can't find a solution don't take it out on me now.

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #25 on: November 03, 2006, 12:31:46 AM »
Quote
According to AVG and my virus scan it did detect viruses and it said some cannot be cleaned. How can I show you what AVG has found?

Where are the files found? What folder?
You ran a scan, you didn't pay attention to what couldn't be cleaned?
Just let me know the above if it's not too much trouble  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/rolleyes.gif\' class=\'bbc_emoticon\' alt=\':rolleyes:\' />

Look at your reply a couple up, are you quoting me without the quotes???

Quote:
AVG detected some viruses which I've found and some deleted in safe mode etc...

So does that mean you deleted them all and everything is OK now??
Your very precise, aren't you??
« Last Edit: November 03, 2006, 12:35:17 AM by guestolo »

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #26 on: November 03, 2006, 01:07:49 AM »
[quote name=\'guestolo\' post=\'231316\' date=\'Nov 2 2006, 11:31 PM\']Where are the files found? What folder?
You ran a scan, you didn't pay attention to what couldn't be cleaned?
Just let me know the above if it's not too much trouble  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/rolleyes.gif\' class=\'bbc_emoticon\' alt=\':rolleyes:\' />

Look at your reply a couple up, are you quoting me without the quotes???

Quote:
AVG detected some viruses which I've found and some deleted in safe mode etc...

So does that mean you deleted them all and everything is OK now??
Your very precise, aren't you??[/quote]

What a surprise, the quickest response I've ever gotten from you!

Seriously, what's with all the sarcasm? I didn't come to you for help and in return try to get humiliated by your computer savvy.

And enough with the quotes, I was simply replying to what steps you wanted by quoting you, big deal. If you want to take that personally then you have issues.

Again, if you read correctly it said some files could NOT be deleted or as I stated cleaned. Have I tried other options? Of course, but I might as well do a complete reinstall if this keeps up and problem solved.

Better yet buy a Mac like I always intended.

I've followed all your steps, if it's come to a cross-road then I don't know what other info you need, I really don't.

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #27 on: November 03, 2006, 10:14:44 AM »
Why don't you run a fresh updated scan with AVG
Whatever can't be cleaned or removed
Let me know where they are found

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #28 on: November 03, 2006, 02:05:18 PM »
[quote name=\'guestolo\' post=\'231394\' date=\'Nov 3 2006, 09:14 AM\']Why don't you run a fresh updated scan with AVG
Whatever can't be cleaned or removed
Let me know where they are found[/quote]

Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #29 on: November 03, 2006, 11:53:08 PM »
So much for the AVG scan...  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/rolleyes.gif\' class=\'bbc_emoticon\' alt=\':rolleyes:\' /> http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/unsure.gif\' class=\'bbc_emoticon\' alt=\':unsure:\' />

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #30 on: November 04, 2006, 12:40:06 AM »
What do you want me to tell you

Code: [Select]
C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip:\WinRar 4.1 Pro (with CRACK).exe:\Filters.exe:\svchost1.exe Trojan horse BackDoor.Iroffer.F "Infected, Embedded object"
C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip Trojan horse BackDoor.Iroffer.F "Infected, Archive"
C:\Documents and Settings\Al\Desktop\New Folder\Sept20\Shared\BearShare PRO 5.2.4 FULL with CRACK (latest version) - WORKS 100% updated-fixed 06-2006.zip:\Setup.exe Virus identified Worm/Spybot.AAQ "Infected, Embedded object"
C:\Documents and Settings\Al\Desktop\New Folder\Sept20\Shared\BearShare PRO 5.2.4 FULL with CRACK (latest version) - WORKS 100% updated-fixed 06-2006.zip Virus identified Worm/Spybot.AAQ "Infected, Archive"
C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip:\WinRar 4.1 Pro (with CRACK).exe:\Filters.exe:\system.exe Potentially harmful program ServU.G "Potentially Unwanted Program, Embedded object"
C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip:\WinRar 4.1 Pro (with CRACK).exe:\Filters.exe:\FireDaemon.exe Adware Generic.JDR "Potentially Unwanted Program, Embedded object"
C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip:\WinRar 4.1 Pro (with CRACK).exe:\Filters.exe:\HIDDEN32.EXE Potentially harmful program HideExec.A "Potentially Unwanted Program, Embedded object"
C:\Program Files\GlobalSCAPE\CuteFTP\TSUninstaller.exe

Ok, looks like your trying to download paid legitmate software illegally
Allong with downloading the illegal software, your picking up trojans
Reboot into safe mode and delete the following folders and files

C:\Documents and Settings\Al\Desktop\August30th2006\June2006\May2006\Kazzz2005\WinRar 4.1 Pro (with CRACK).zip:
C:\Documents and Settings\Al\Desktop\New Folder\Sept20\Shared\BearShare PRO 5.2.4 FULL with CRACK (latest version) - WORKS 100% updated-fixed 06-2006.zip
C:\Program Files\GlobalSCAPE\CuteFTP\TSUninstaller.exe

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline Mr Bell

  • Sr. Member
  • ****
  • Posts: 300
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #31 on: November 04, 2006, 08:02:00 AM »
This Napster guy is a total disrepectful IDIOT. His name alone tells you he's a bootleg thief.

Offline The Napster

  • Newbie
  • *
  • Posts: 43
  • Karma: +0/-0
    • View Profile
***Nasty Spyware***
« Reply #32 on: November 04, 2006, 09:46:09 AM »
[quote name=\'Mr Bell\' post=\'231910\' date=\'Nov 4 2006, 07:02 AM\']This Napster guy is a total disrepectful IDIOT. His name alone tells you he's a bootleg thief.[/quote]

You're just a little punk hiding behind a computer with tough words, wha wha wha.... http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/rolleyes.gif\' class=\'bbc_emoticon\' alt=\':rolleyes:\' />

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
***Nasty Spyware***
« Reply #33 on: November 04, 2006, 09:48:49 AM »
I'm going to assume that you deleted your pirated software and your problems are resolved
This topic has gone far enough
Locking it

EDIT>>I'm not trying to be hardnose on you Napster
There are many, many users that try to downloading software from file sharing programs

Not all downloads can be trusted, your earlier infections were a result of the software you downloaded and installed
Everyone must be careful with what they are downloading, don't assume it's a clean file
This includes links from popup ads, filesharing programs, links on forums, etc...
« Last Edit: November 04, 2006, 10:06:55 AM by guestolo »

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here