mystery thingy

Discussion in 'Malware Help (A Specialist Will Reply)' started by jarcher, Jun 13, 2005.

  1. jarcher

    jarcher I can't handle a title

    there are these distorted box's behind my start bar
    in the bottom right of my screen
    and it will not go away
    what the he!! could it be?
    I don't think its supposed to be there
    I can't find anything
    I have scaned with all I have an then some
    and can not find anything in my hjt logs either
    any idea's?
     

    Attached Files:

  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    When did they occur?

    What has been added,installed, or changed on your PC lately? Any software updates?

    What do you mean "behind your start bar"? Do you mean behind the Start button on the Taskbar?

    Looks like a slider bar to control something.
     
  3. jarcher

    jarcher I can't handle a title

    I dont know when it got there
    my wife has been downloading some game over and over for the free trials
    but thats omly been lately
    there was a guy that stayed with us that had questionable software
    and no access to his computer(long story)
    he dl alot of patches,cracks,and encryption software and the like

    well it's behind my tray when the bar is up but (in the same location) in front of everything else

    every now and the the past week or so
    I will open a explorer windoe or a folder and it will be just an outline of the window, or the icons will not be in the window but all the names of whats in the folder are, and bunched up in a corner(tl,tr,bl,br, it varies)

    last time I saw something like that I read it was like a worm or something trying to mask itself as something else(not on my pc)
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Very bad idea to allow someone else free control over your PC!
    Even worse to allow them to download anything at all, especially cracks etc.

    Post your HJT log and let's see if we can see anything.
    Also post a StartupListLog from HJT.

    How many user accounts on this PC? Does it happen on all accounts? Does it happen in safe mode?

    Is it right clickable? If so, what does it show for Properties?
     
  5. jarcher

    jarcher I can't handle a title

    no only one
    I didn't "let" him
    but, it happened
    he was a guest(kinda) of my wife(one of her friend's boyfriends or something)
    anyhoo. . . .

    its not there in safe mode, nor is it clickable

    here is a log and a complet startup list
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Password protected PC's prevent other's from using them without your permission. If you do not have logins with passwords, you should add them. This is a major security whole that many people ignore and hackers take advantage of.

    I do not see any obvious problems in those logs. Get and installed programs list using HijackThis and post that. Let's see if anything is in there. Look at it yourself and indicate anything that you do not recognize.
     
  7. jarcher

    jarcher I can't handle a title

    well there ya are
    what don't you like
     

    Attached Files:

  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No! The first question is "what don't you recognize" if anything?

    Also note:
    Spybot - Search & Destroy 1.3 <--- out of date!!!!

    I do not immediately recognize the below (that does not mean they are bad):
    CDisplay 1.7
    Gold Miner
    GRLevel3 version 1.0
    GTK+ 2.6.4 runtime environment
    Instant Support
    Iside
    Motherboard Monitor 5
    Private Desktop
    Private Encryptor (tm)
    XCrypt
    Zip Key Demo

    Did you install them?
     
    Last edited: Jun 13, 2005
  9. jarcher

    jarcher I can't handle a title

    I recognize everything

    CDisplay 1.7> > is a comic book viewer
    Gold Miner > >is that game of my wifes(trymedia adaware 60% of setups are infected with)
    GRLevel3 version 1.0 > > weather program
    GTK+ 2.6.4 runtime environment> > DL with gimp(from here)
    Instant Support> > dunno, thought it was an HP thing . .
    Iside> > littlelite software varifier(trial endend)
    Motherboard Monitor 5> > dont remember off hand(DL from here)
    Private Desktop> > that was his , topicsoft runs of off vm, a desktop within a desktop. .or something. .
    Private Encryptor (tm)> > ditto, but an encryption tool
    XCrypt> another encryption tool
    Zip Key Demo > his, something to do with zip encryption

    I check for updates every time I run it
    I just hadn't checked for program updates. . thanks. . .
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay since this guy installed the above and you now have problems, are you sure they are not part of the problem? Do you need these to be installed?
     
  11. jarcher

    jarcher I can't handle a title

    the thing was gone after I removed the trymedia
    odd
    I removed all of his stuff, it was all worthless anyway

    thanks chas,
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds