also @ TechSpot: Congress pressures Google on Glass privacy concerns

System Check removal

Discussion in 'Virus and Malware Removal' started by Andrew1234, Jan 27, 2012.

Post New Reply
  1. Broni Malware Annihilator Posts: 39,215   +175

    No. Just click on "Upload" big green button.
  2. Andrew1234 TechSpot Enthusiast Posts: 113

    It isn't working. I tried it a couple times on IE then a couple times on Firefox just in case and nothing is working. After I chose the log to upload the status bar says 0% and that's it. I've left it alone for hours just in case the it takes that long but nothing ever finished.
  3. Broni Malware Annihilator Posts: 39,215   +175

    How big is that file?
  4. Andrew1234 TechSpot Enthusiast Posts: 113

    It is 856 MB
  5. Broni Malware Annihilator Posts: 39,215   +175

    Wow.
    Try to zip it and let me know about the size.
  6. Andrew1234 TechSpot Enthusiast Posts: 113

    497 bytes zipped
     
  7. Andrew1234 TechSpot Enthusiast Posts: 113

    Here it is

    Attached Files:

  8. Broni Malware Annihilator Posts: 39,215   +175

    You zipped some link.
    There is no file inside.
  9. Andrew1234 TechSpot Enthusiast Posts: 113

    Is it a shortcut?
  10. Andrew1234 TechSpot Enthusiast Posts: 113

    Ok I did it right this time, it's got a notepad file in the zip but is 32.6 MB
  11. Andrew1234 TechSpot Enthusiast Posts: 113

  12. Broni Malware Annihilator Posts: 39,215   +175

    It's so huge I can't even open damn thing on my computer.
    Is there any part of that log which shows some actual infection?
  13. Andrew1234 TechSpot Enthusiast Posts: 113

    What should I look for? A lot of them are temporary internet files. Should I try to split the file into parts?
  14. Broni Malware Annihilator Posts: 39,215   +175

    Show me 10-15 lines of temporary files findings.
    Then list anything what is NOT in temporary files.
  15. Andrew1234 TechSpot Enthusiast Posts: 113

    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI4WIAG.js - archive JS-HTML
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI4WIAG.js/JSFile_1[0][70e] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI4WIAG.js/JSWrite_2[190] - OK
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI4WIAG.js/IFrame_3[a9] - OK
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI4WIAG.js - archive contains infected objects - moved
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js - probably infected with SCRIPT.Virus
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js - archive JS-HTML
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js/JSFile_1[0][dcf] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js/JSWrite_2[2be] - OK
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js/IFrame_3[e4] - OK
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js/IFrame_4[1d8] - OK
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI56RFI.js - archive contains infected objects - moved
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js - probably infected with SCRIPT.Virus
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js - archive JS-HTML
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js/JSFile_1[0][712] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js/JSWrite_2[19c] - OK
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js/IFrame_3[b4] - OK
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI5XHBP.js - archive contains infected objects - moved
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI6KWZW.js - probably infected with SCRIPT.Virus
    C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI6KWZW.js - archive JS-HTML
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI6KWZW.js/JSFile_1[0][7d3] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\AppData\Local\Application Data\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\7LO5FSUO\GetAdCAI6KWZW.js/JSWrite_2[54] - OK
  16. Andrew1234 TechSpot Enthusiast Posts: 113

    C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKK3O.js - archive JS-HTML
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKK3O.js/JSFile_1[0][7d6] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKK3O.js/JSWrite_2[1a9] - OK
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKK3O.js/IFrame_3[c3] - OK
    C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKK3O.js - archive contains infected objects - moved
    C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKP0R.js - probably infected with SCRIPT.Virus
    C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKP0R.js - archive JS-HTML
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKP0R.js/JSFile_1[0][72c] - probably infected with SCRIPT.Virus
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKP0R.js/JSWrite_2[1a4] - OK
    >C:\Documents and Settings\Mary\DoctorWeb\Quarantine\GetAdCA7WKP0R.js/IFrame_3[bc] - OK
  17. Broni Malware Annihilator Posts: 39,215   +175

    Is that about it?
  18. Andrew1234 TechSpot Enthusiast Posts: 113

    Yeah the only other things that don't say "ok" are things like archive ZLIB, archive JS-HTML, archive BASE64, packed by FLY-CODE, packed by BINARYRES and a couple others but they're all say "archive" something or "packed by" something
  19. Broni Malware Annihilator Posts: 39,215   +175

    I assume all those issues had been fixed?

    Any change regarding those marked icons?
  20. Andrew1234 TechSpot Enthusiast Posts: 113

    What issues?

    Icons are still there.