📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Think my computer has been infected

123457»

Comments

  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    Has my Tosh Satellite L300 been infected ?--- It runs for 35 min's with Windows Defender then stop's at this--- D:\$RECYCLE.BIN\S-1-5-21-1204312611-343013293-1232531122-1000\$RHHK1PH\netfx_Core.mzz->msvcr_dll_x86

    Also a previous time it shut down with [ Problem event name-Bluescreen ]

    Thank you for any help, Brian
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    It stop's then freezes, no response, have to turn off, will try your info.
  • GunJack
    GunJack Posts: 11,863 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    green, might be a good idea to start your own thread, it's easier for peeps to help out if we can follow a single issue through in one thread :)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    Found 3 worms [ what are these ? ] and have fixed them , i'm now runing Hijack Hunter, will report back with results, so good so far, i have paid £50 x 2 to fix these problems, should have come here first lol, thank's.
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    GunJack wrote: »
    green, might be a good idea to start your own thread, it's easier for peeps to help out if we can follow a single issue through in one thread :)

    Sorry your right but i was in need of quick info and he was still logged on :o
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    RussJK wrote: »
    It shouldn't have taken an hour for a quick scan, did you run a full scan? Full scan does very little extra compared to quick scan.

    Please post the Malwarebytes log, otherwise I can't really tell you. Load Malwarebytes, and go to the Logs tab and copy/paste every entry that contained a detection.

    What do you mean you've paid £50 x 2? To whom?

    The problems i have is with my tosh netbook and i'm asking for info through my desktop computer, i have only done a quick scan,
    these are the results from malwarebytes: Memory Processes infected-C:\program files\IDM\desktop sms\desktopsms.exe[Worm.P2P]->2576->unloaded process sucessfuly

    Registry values infected-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WINDOWS\curentVersion\RUN\Desktop SMS[WormP2P]->Value:Desktop SMS-> Qarentined and deleted successfuly

    Files infected-
    C:\program files\IDM\desktop SMS\desktopsms.exe[Worm.2P2]-> Quarentined and deleted successfuly
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    £50 x 2 is to people in the local paper who said they had fixed my problem's. [ not ]
  • GunJack
    GunJack Posts: 11,863 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    greendot wrote: »
    £50 x 2 is to people in the local paper who said they had fixed my problem's. [ not ]

    sounds like you've been well and truly ripped off. Gits like that give good techies a bad name :mad:
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • greendot
    greendot Posts: 40 Forumite
    Part of the Furniture 10 Posts Combo Breaker
    greendot wrote: »
    The problems i have is with my tosh netbook and i'm asking for info through my desktop computer, i have only done a quick scan,
    these are the results from malwarebytes: Memory Processes infected-C:\program files\IDM\desktop sms\desktopsms.exe[Worm.P2P]->2576->unloaded process sucessfuly

    Registry values infected-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\WINDOWS\curentVersion\RUN\Desktop SMS[WormP2P]->Value:Desktop SMS-> Qarentined and deleted successfuly

    Files infected-
    C:\program files\IDM\desktop SMS\desktopsms.exe[Worm.2P2]-> Quarentined and deleted successfuly


    I have done a Windows Defender scan and this time it completed and found no problem's, will do a full Malwarebytes scan next, i don't know how to send the Hijack Hunter log file from my netbook to this computer and then for you to look at, but thank you for help and info.:T
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351.7K Banking & Borrowing
  • 253.4K Reduce Debt & Boost Income
  • 454K Spending & Discounts
  • 244.6K Work, Benefits & Business
  • 600K Mortgages, Homes & Bills
  • 177.3K Life & Family
  • 258.3K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.2K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.