Quick Question

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by dell1705user, Jun 14, 2007.

  1. dell1705user

    dell1705user Corporal

    I didn't post logs from the READ & RUN ME due to the fact I have already done that about 6 months ago and then again about 2 weeks ago. In addition, this may or may not be malware related...

    About a week and 1/2 ago, I noticed something randomly appear in the task bar labeled as "monitor." It was obviously minimized because it hadn't popped up on the desktop for me to see. So, I clicked on it and in the top right corner of the desktop appeared a small blank window with "monitor" in the title bar and "about:blank" in the address bar. It quickly disappered from the desktop, but ot from the taskbar. It continues to do this for as many times as I try to maximize it to the desktop. If I right click on it in the taskbar and click close, it goes away. The occurrence seems to be intermittent with no apparent trigger. Sometimes I'm surfing the web, but not on any sites that I haven't been to before without trouble, sometimes the computer is just sitting with nothing, but AIM on. It's appeared maybe 5 or 6 times if I had to count.

    Any ideas as to what this nuisance is and possible ways to get rid of it altogether?
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    In reality that means nothing! A PC can get badly infected in a half an hour (and that is including the time it takes your PC to boot up from powered down).

    No not without seeing all new logs that show your true current state. It could be just from something you are running especially since it goes away when you right click on it. Or it could be malware. Have you installed anything new in the last few weeks? Are you 100% sure of your answer?
     
  3. dell1705user

    dell1705user Corporal

    The only thing installed on this computer is the Adobe Reader 8.1 upgrade just yesterday. Other than that, not a thing has been installed or removed. I say that with 100% assuredness(word?)

    At any rate, I will go through the Read and Run Me again and post logs in a few hours.

    Thanks for the reply.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    So that means that you have not installed any software updates for any programs including Windows, antivirus, antispyware, AIM, AOL, ......etc? Which means you are probably out of date with your protection updates. And you don't have any programs set to do autoupdates which would mean that you would not even know about the update?
     
  5. dell1705user

    dell1705user Corporal

    Good point. I didn't consider updates. In that case my Anti-virus updates its definitions every day and if there was a last windows update, that would've been automatically updated as well. Anti-Spyware hasn't had new definitions yet.

    I will just post logs... ;)
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Are you still seeing this appear in the task bar? If so, while it is there, look at your process list in Task Manager. Do you see anything strange or does a process named monitor show up?

    Try to get two HJT logs. One from when the item appears in the task bar and one from after you kill the task.
     
  7. dell1705user

    dell1705user Corporal

    Logs...

    I received an error:

    An error occurred while processing your request.
    Reference #97.ff18fa8.1181954221.dbb5dab


    in the pop-up window for Panda Scan. I tried three times.
     

    Attached Files:

  8. dell1705user

    dell1705user Corporal

    Logs...

    The HJT log is WITHOUT the Monitor window showing up. I'm not sure what to tell you about trying to run a HJT log when it appears because the thing is completely random. It might be a day or 15 minutes before it shows up.

    If/When it does though, I will be sure to check out Task Manager and run HJT to create a log.
     

    Attached Files:

  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Then it is not malware. It is due to something you have installed on your. It probably just runs periodically. Possibly something updating.

    You logs are clean other that the fact that you allow AOL or AIM to install the below junk again which should have been uninstall in step 0 of the READ ME:

    Viewpoint Media Player
     
    Last edited: Jun 15, 2007
  10. dell1705user

    dell1705user Corporal

    That's weird, I don't use AOL and I haven't updated AIM or installed anything even related to it. Is Viewpoint only related to AOL software?

    I was finally able to get Panda Scan to work if that matters at all, but it appears I'm getting an error when I try to upload saying that I already uploaded that attachment from a completely separate thread. Although it looks like the only thing it picked up was the cookie that you you pick up from the majorgeeks website, Tribalfusion.

    At any rate, I have deleted Viewpoint via Add/Remove.
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes! If AIM was started up at all, it could have done an autoupdate which will typically reinstall this junk.

    Cookies are not problems.
     
  12. dell1705user

    dell1705user Corporal

    Interesting. I faithfully shutdown my laptop everynight before going to sleep, so AIM is restarted every single day and it's never re-installed Viewpoint until this time around for whatever reason.

    Well, thanks for the help as always.
     
  13. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    It would probably only reinstall when an update is available. You should periodically check for it being reinstalled (there could be 2 or 3 different items installed) and uninstall them if found. Also you could run the below but it does not always seem to get everything

    ViewpointKiller


    Another item you have running (not malware just unnecessary) is qttask.exe at startup. It will also re-load itself either due to updates or due to some application you install or run. You can just periodically remove it from startup (when you see it in your tray) by having HJT fix the below line:

    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    By the way, since we are finished with the CounterSpy trial, you should uninstall it to avoid wasting the system resources.
     
  14. dell1705user

    dell1705user Corporal

    Alright, I performed both suggestions and removed CounterSpy
     
  15. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Great! Surf safely.
     
  16. dell1705user

    dell1705user Corporal

    Just an update to this previous problem... The monitor window popped up again jsut a few minutes ago. I was going to run HKT while it was open. I shut down all IE windows and I exited AIM and when I exited AIM, the monitor window disappeared. This leads me to believe that it must be something related to AIM software.
     
  17. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Interesting! Another reason to add to my list of reasons not to use any AOL software.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds