RootsChat.Com

General => Technical Help => Topic started by: hepburn on Thursday 02 November 06 12:42 GMT (UK)

Title: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 12:42 GMT (UK)
Hello,
        Iv'e just read a post,where Joe ran Adware and his machine has picked up, and is zipping around (sorry Joe I can't find the post now),anyway I ran Adware,and I have 89 critical objects ??? also 29 negligble objects,Oh,  and big red exclamation mark flashing at me ???,can someone tell me what it all means.Thanks.Oonagh.
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 12:50 GMT (UK)
Hi oonagh

I assume you mean you ran an anti-sypware program called Ad-Aware and it found a number of malware objects after a scan?  Most of these objects will probably be tracking cookies that send companies information about the websites you have visited.  e.g. doubleclick.com.

All you need to to do is press the Fix all selected items (or whatever it says) and the program will remove them. 

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 12:53 GMT (UK)
Downside,
               Nothing to worry about then,that's a relief.
                                                         Thanks.Oonagh.
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 12:59 GMT (UK)

Nothing to worry about even if your are uber-parnoid.

But why the hell is everyone conspiring to make life difficult for me?  :)

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 13:04 GMT (UK)
Dear paranoid Downside,
                                         more explaing to do!
                            scan summary.
         win32,trojan download,malaware,has TAC rating of ten.
           "    "      "         
Title: Re: "Oh dear" what does this mean??
Post by: suttontrust on Thursday 02 November 06 13:04 GMT (UK)
Just because you're paranoid it doesn't mean they're not out to get you.  ;D  Oonagh, delete everything that Ad-aware has flagged up and you'll be okay.
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 13:13 GMT (UK)
Hi oonagh

If you have Trojan on your system then the problem may be more complex.

Tracking cookies are fairly simple to remove but Trojans are far more complex.  It could be that you have accidentally download a program onto your PC.

Bring up Windows Task Manager by pressing Ctrl + Alt + Delete and check for any spurious process that is running.  Usually the SYSTEM and NETWORK processes are OK.  You may have to do a Google search on the process name e.g. pmmon.exe to identify it.

Even if Ad-Aware has identified a Trojan it may not be able to remove it and all the files associated with it.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 13:35 GMT (UK)
Downside,
                 Ad Aware didn't have a "remove" button,so I quarantined everything,I'll have a look for pmmon.exe.
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 13:38 GMT (UK)
No pmmon.exe!!!
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 13:46 GMT (UK)
pmmom.exe was only an example.

You'll have to look for any dubious process.  Check them all (all the non SYSTEM and NETWORK processes) just in case.

What was the name of that Trojan?

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 13:48 GMT (UK)
what I read was,  win32, trojan download, malaware.
   does that make sense, Downside??
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 13:59 GMT (UK)
Hi Oonagh

No it doesn't actually provide the name of the Trojan.

See if you can view the quarantine list in Ad-Aware and find the one with the red triangle.  It should have a name.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 14:05 GMT (UK)
downside
             there isn't a red triangle, at the bottom of the list there is three red typed entries,two that I've told you about ,and another one "CometSy" category,data miner,oooh I don't know.
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 14:13 GMT (UK)
Downside
              do you mean trojan bckp
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 14:30 GMT (UK)
bkcp may = backup copy

Win32 only identifies the class of Trojan.  They have a variety of names and capabilities i.e. Win32.sillyID.

Do you have an antivirus program running on your system e.g. Norton or McAfee?  The problem with anti-spyware programs like Ad-Aware is that they do not remove Trojans and all the associated files they install and Registry entries.  Even antivirus programs do not remove all the files and registry entries.  At best they remove or try to remove an executable file e.g. badboy.exe that causes the Trojan program to run, but leave all the other files and registry entries in tact.

If you have checked all the processes that are running by using Task Manager and cannot find any spurious process then we will have to assume you may be OK.  Usually Trojans install a program that runs all the time and drains the resources of your computer.  So if you haven't noticed your PC running slowly or any other curious behaviour then you should be OK.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 14:47 GMT (UK)
nothing odd with task manager,I think my norton has run out,I used to be able to do a scan with it ,but I can't get it up now,I have tried  in between using the Ad Aware.
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 14:51 GMT (UK)
Downside,
              Ignore last post Iv'e found Norton AntiVirus,it dosn't run out till the end of the month,I'm running it now.
Title: Re: "Oh dear" what does this mean??
Post by: Chasing-fireflies on Thursday 02 November 06 14:54 GMT (UK)
If Norton does not pick up this misc. Trojan then try downloading a free version of AVG antivirus which picks up more than software you can buy on disc.
 ;)
Don't forget to check for norton updates either to make sure you scan for the latest threats.
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 15:05 GMT (UK)
Badgirl,
            thanks for that info, Norton is still running, but I will have a look at AVG antivirus.
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 15:05 GMT (UK)
Hi oonagh

You'll need to update Norton's antivirus definition list before it expires.  You should have it switched on to download automatic updates.

Unfortunately Ad-Aware gives you only limited coverage and if you have the freeware version then it is not going to be as good as the professional version.
Ad-Aware is only supposed to be an anti-spyware program, so it does not deal with:

Spam
Phising
Viruses
Trojans
Firewall
Blended threats ( a mixture of above).

If you have Windows Defender installed, it is supposed to offer you anti-spyware protection.  If you have Internet Explorer 7 installed it is supposed to offer you an anti-phising capability.  MS also offer a free Firewall that does not have rave reviews.  :)

downside

Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 15:12 GMT (UK)
Hi, Downside,
                 Firewall on, I don't have windows defender though,and I don't know which explorer I have,in fact I don't know much at all. :-[
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 15:16 GMT (UK)
Well ,Norton hasn't found anything wrong.
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 15:24 GMT (UK)
Hi oonagh

The most important thing is that you have an antivirus program installed and that it loads at startup time and resides in-memory to protect you at all times.  Ad-Aware is only run when you want to run it.  It offers you no real-time protection at all.  In that sense it it only offers you retrospective protection.

It you have Norton loaded it should place a little icon of a yellow monitor and a red + in your system tray located on the bottom right hand corner of the Taskbar.

If you get a Trojan then it will alert immediately, not a week later.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 15:38 GMT (UK)
Downside,
               yes I have the little icon in the corner,I was running ADG a minute a go,it seems to have dissapeared!!
Anyway Norton didn't find anything. Shall I ditch the Ad Aware??
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 15:53 GMT (UK)
Hi oonagh

No don't ditch Ad-Aware entirely.  Bear in mind that it is a program run on an ad hoc basis that deals with spyware.  Norton antivirus does not specifically deal with adware/spyware so the two compliment each other.

The important thing is to have an antivurus program running all of the time, which in theory should detect severe threats immediately.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 16:10 GMT (UK)
Downside,
               I have downloaded AVG antivirus,let it run,and this is what it came up with.      isinit trojan horse istbar LR
                                                   nsv1A "        "       istbar JT
        does this make any sense???
Title: Re: "Oh dear" what does this mean??
Post by: downside on Thursday 02 November 06 16:49 GMT (UK)
Hi oonagh

Are you or were getting adverts popping-up across your screen?

As far as I can work out this isinit thing redirects or tries to redirect you to certain dodgey sites.  I've just read that they recommend that you get AVG to try and fix it or quarantine it.

If you have a file called crack.exe on your system then it might be responsible for causing problems.

Go to Start->Search->For files and Folders and type in crack.exe as the search criteria.

downside
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 17:28 GMT (UK)
Downside,
                I went out before ADV had finished,I did see the trojan's when I got back ADV,had finished,ther wasn't any thing there to tell me what to do about thes trojans,no crack.exe,I can't understand why ADV didn' give me any options,I'll run it again.
  On top of that, I lit a cigarette sat down and dropped my "fag"could'nt find it,I could smell it,Iv'e had the desk out untangled the wires ripped apart my printer,then saw smoke drifting up from the keyboard.pages up pages down ,numbers locked and home are welded together forever ;D
Title: Re: "Oh dear" what does this mean??
Post by: hepburn on Thursday 02 November 06 18:26 GMT (UK)
Downside,
                just letting you know,ran ADV again,no viruses no trojans,"phew" thanks downside for bearing with me.