Do you think I downloaded a bad file on utorrent?

Discussion in 'Malware Help (A Specialist Will Reply)' started by surfmonkee, Mar 1, 2007.

  1. surfmonkee

    surfmonkee Private E-2

    Last night I completed a download using utorrent, the torrent came from a site that insists on private torrents so that only users of that particular website can share with each other. (DHT disabled)

    The file had a strange name> title.collection.avi

    file size = 1.34Gb and in VLC the playtime comes up as 7 hours 10 minutes 48 seconds (which it is not)

    maybe the playtime should be seven minutes 10 seconds and 48 frames but either way a 1.34Gb avi file would play for about an hour and a half shouldnt it?

    the video codec used for the avi file is, according to VLC info pane DX50, I have never heard of this codec.

    in VLC it plays fine but here is the issue:

    it wont let me rename it, it says some other application or user is using this file at the moment. (nothing running, tried to rename after a re boot)

    Since i played the file the computer became very sluggish, like taking 2 minutes to display the files 'properties' and also after playing the file any attempt to play it again resulted in nothing happening, either by double clicking the file name to start it, or by starting VLC to then open said file. VLC would not open till after a reboot.

    Do you think I have downloaded something with an attached payload inside it or could it just be a coincidence?

    I ran spybot with updates and it found two entries which i cleaned off
    (damn I am sorry I didnt make a note of what the entries were and I am writing this from the office at work so cant give anyother info till I get home)

    any advice on where to start with checking my pc for infection would be cool, I am happy to go through the checklists of everything, but initially before I do that, do you think this particular file may be suspect?

    what stops a file from being renamed?

    system = win xp sp2, (avg, zonealarm, firefox, spybot)
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Majorgeeks!

    P2P downloading and Torrent downloading are probably the largest single reason for people having malware problems!!!!


    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, renaming, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.
    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds