Spyware Suspicions

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by parrotmania, Feb 18, 2016.

  1. parrotmania

    parrotmania Private E-2

    A couple of reasons why I think I have Spyware on my laptop, a Lenovo Y510P, Windows 8.1.

    Firstly, in Device Manager it always reverts to the Webcam and Microphone tabs being open, every time after I close them and I have closed the tabs numerous times, only to see them open again, and they are the only tabs ever open. I do not use my Webcam.

    Also, I noticed under the Glasswire software "Usage" title that under "Traffic Type" there is a program named "HP Virtual Room Service", which sounds very suspicious. I certainly did not download such a program.

    Thank you for your help.
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  3. parrotmania

    parrotmania Private E-2

    I do not recall Device Manager having those issues before, where Webcam and Mic are always open.
    It is not in Control Panel. Using the software Search Everything, nothing comes up under HP Virtual anything.
    I am thinking to go into Regedit and removing as many files as I can related to HP Virtual Room.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Did you check under Programs and Features to see if anything like HP Virtual Rooms Client Launcher Plugin is installed?

    Do you actually have an HP PC?

    Maybe you should run the below so that I can take a look at what is showing as installed.

    Please download the latest version of FRST the below link.

    Farbar Recovery Scan Tool and save it to your Desktop.

    Note: Make sure you download the proper version ( 32 bit or 64 bit ) for your PC. Only one will run, the correct one. So it you make a mistake and download the wrong one, go back and get the other.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  5. parrotmania

    parrotmania Private E-2

    Yes, I did look under Programs and Features.

    No HP products. I have a Lenovo Y510P, Windows 8.1 laptop.

    No search, including software "Search Everything" finds HP Virtual or HP Virtual Room.

    Junkware Removal Tool scan attached.
     

    Attached Files:

    • JRT.txt
      File size:
      1.4 KB
      Views:
      1
  6. parrotmania

    parrotmania Private E-2

    Attached Files:

  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I need the Addition.txt file that as requested.

    Is Glasswire a program you installed yourself? Is this a firewall?
     
  8. parrotmania

    parrotmania Private E-2

    I did install GlassWire. GlassWire's firewall reveals all your network activity, visualizes your current and past network activity by traffic type, application, geographic location. GlassWire reveals hosts that are known threats, unexpected network system file changes, unusual application changes, ARP spoofing, DNS changes, and alerts you to the problem.
     

    Attached Files:

  9. parrotmania

    parrotmania Private E-2

    Below is a screenshot of Glasswire info. On the left side, under Apps, I see "System". There is no info under System, as you can see. Is that a concern? On the right side, under "Traffic Type" you can see the "HP Virtual Room".

    upload_2016-2-25_17-54-3.png
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I do not see any signs of malware in the FRST logs. One issue I do see which is not a topic for the Malware Removal Forum is the below fault information. Perhaps this is related to your problem:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds