We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

help please. possible keylogging infection?

13468912

Comments

  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    LGG wrote: »
    i did download something onto my site claiming to be from windows which is what i think may have cause this so maybe it was overwritten if thats what it means

    What did you download?
    :idea:
  • LGG_2
    LGG_2 Posts: 489 Forumite
    Your posts are giving a bit of a mixed message, I think, and pretty sure, suggests you are guessing, have a look at the log again to be 100% sure.
    the log on norton has been cleared as i unistalled it earlier in the evening. so i cant see what it was to tell u 100%
    What did you download?
    i was searching on a medical site and pages came up claiming to be of my control pannel saying it was infected and i got a pop up ballon bottom right claiming to be from windows to download to stop the attack. clicked on it then it said it still hadnt worked and needed to download something else. i didnt download that and deleated the other one straight away scanned the download and nothing came up and scanned the whole comp and it was fine. tbh i dont know if this is the reason but its a coincidence
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    LGG wrote: »


    i was searching on a medical site and pages came up claiming to be of my control pannel saying it was infected and i got a pop up ballon bottom right claiming to be from windows to download to stop the attack. clicked on it then it said it still hadnt worked and needed to download something else. i didnt download that and deleated the other one straight away scanned the download and nothing came up and scanned the whole comp and it was fine. tbh i dont know if this is the reason but its a coincidence

    That is most certainly the problem (Or one of them from whats already been cleared)
    Never EVER click on anything to 'download to fix problems' when browsing the net
    :idea:
  • LGG_2
    LGG_2 Posts: 489 Forumite
    yeah i guess i got scared and didnt think. 65% scanned and still the one infected and one threat name. hoping its just a tracking cookie or something seeing as they always seem to be there.
  • LGG_2
    LGG_2 Posts: 489 Forumite
    2 of each now.spoke to soon
  • LGG_2
    LGG_2 Posts: 489 Forumite
    oh boy 14 and 33 now. what exactly is the point of norton when it never showed up any of these on my account
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    LGG wrote: »
    oh boy 14 and 33 now. what exactly is the point of norton when it never showed up any of these on my account

    I keep telling everyone ~ Norton, Mcafee and AVG are cr*p :rolleyes:
    :idea:
  • LGG_2
    LGG_2 Posts: 489 Forumite
    what do u reccomend. hope u dont mind hanging around so i can get this sorted thanks
  • aliEnRIK
    aliEnRIK Posts: 17,741 Forumite
    Part of the Furniture Combo Breaker
    well post whatever the full log produces

    Even if im not around I can post what to do next

    As for Norton (DONT DO ANY OF THIS YET THOUGH UNTIL THE COMPUTER IS CLEAN)~
    Id use the NORTON REMOVAL TOOL (Simply uninstalling will NOT do)
    http://service1.symantec.com/Support/tsgeninfo.nsf/docid/2005033108162039

    Id install AVIRA in its place ~
    Download AVIRA ANTI VIRUS PERSONAL (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_antivir/

    and PCTOOLS FIREWALL (Especially as youve clearly downloaded something nasty to your computer. If it tries to CALL OUTWARDS, pctools will pop up)
    Download PC TOOLS FIREWALL (Make sure you click 'DOWNLOAD NOW')
    When installing you have the option of installing 'THREATFIRE' too (another antivirus program). Entirely upto you if you wish to or not.
    http://www.download.com/PC-Tools-Firewall-Plus-Free-Edition/3000-10435_4-10625321.html

    UPDATE and run regular FULL Malwarebytes scans too

    OR

    Buy Kaspersky in place of Norton
    :idea:
  • LGG_2
    LGG_2 Posts: 489 Forumite
    Tuesday, April 7, 2009
    Operating System: Microsoft Windows XP Home Edition Service Pack 3 (build 2600)
    Kaspersky Online Scanner 7 version: 7.0.25.0
    Program database last update: Monday, April 06, 2009 21:55:22
    Records in database: 2019074
    Scan settingsScan using the following databaseextendedScan archivesyesScan mail databasesyesScan areaMy ComputerC:\
    D:\ Scan statisticsFiles scanned67075Threat name14Infected objects34Suspicious objects0Duration of the scan02:12:55
    File nameThreat nameThreats countC:\Documents and Settings\Lucie\Desktop\FunBuddyIconsFWBInitialSetup1.0.0.8.exeInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.a1C:\Qoobox\Quarantine\C\Program Files\Internet Explorer\msimg32.dll.virInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093870.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.at1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093871.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.bc1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093872.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093873.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093874.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.aq1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093875.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.bc1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093876.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.bc1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093877.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093879.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.an1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093881.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.af1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093882.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093883.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.at1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093884.DLLInfected: not-a-virus:AdTool.Win32.MyWebSearch.by1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093885.EXEInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093886.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093887.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093888.EXEInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.a1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093889.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.ax1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093891.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.as1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093893.EXEInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093894.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.i1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093895.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.as1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093896.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093897.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093898.SCRInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093899.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093900.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093909.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.i1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093910.DLLInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.l1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093912.DLLInfected: not-a-virus:AdWare.Win32.MyWay.m1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP768\A0093913.scrInfected: not-a-virus:WebToolbar.Win32.MyWebSearch1C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP771\A0096591.dllInfected: not-a-virus:WebToolbar.Win32.MyWebSearch.au1The selected area was scanned.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.1K Banking & Borrowing
  • 253.6K Reduce Debt & Boost Income
  • 454.2K Spending & Discounts
  • 245.2K Work, Benefits & Business
  • 600.8K Mortgages, Homes & Bills
  • 177.5K Life & Family
  • 259K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.