Guest User

HackForumsPost

a guest
Jul 7th, 2015
228
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.12 KB | None | 0 0
  1. Lately I have noticed a lot of problems when attempting to interact with a laptop that used to belong to me (now belongs to my 13 year old brother). The problems include but are not limited to.
  2.  
  3. 1. Very slow when surfing the interweb.
  4.  
  5. 2. Task manager takes a very long time to load and crashes some times.
  6.  
  7. 3. The anti-virus software (McAfee anti-virus +) is very very slow, the scans will not complete most of the time and when they do it will be 9% complete then stop for 10-15 min and then say that no problems were detected.
  8.  
  9. 4. Suspicious files found when I was looking through the windows explorer
  10. C:\Utils (never created this folder) and inside I found the following.
  11. C:\Utils\dialafix (File Folder)
  12. C:\Utils\spytools (File Folder)
  13. C:\Utils\ActiveX Fix.bat (batch File)
  14. C:\Utils\ADSSpy.exe (app)
  15. C:\Utils\Advanced File Remover.exe (app)
  16. C:\Utils\AppRemover.exe (app)
  17. C:\Utils\ATF-Cleaner.exe (app)
  18. C:\Utils\BlackLight Rootkit Remover.exe (app)
  19. C:\Utils\BOOTEX.Log (.txt)
  20. C:\Utils\bootkit_remover_debug_log.txt (.txt)
  21. C:\Utils\Crap Cleaner.exe (app)
  22. C:\Utils\CW Shredder.exe (app)
  23. C:\Utils\Defraggler.exe (app)
  24. C:\Utils\eSage Boot Code Scanner.exe (app)
  25. C:\Utils\exefix_vista.reg (registration intries)
  26. C:\Utils\freefixersetup.exe (app)
  27. C:\Utils\GenuineCheck.exe (app)
  28. C:\Utils\HijackThis.exe (app)
  29. C:\Utils\HitmanPro.exe (app)
  30. C:\Utils\HitmanPro_x64.exe (app)
  31. C:\Utils\HitmanPro-32.exe (app)
  32. C:\Utils\InfiltrationRecoveryTool.exe (app)
  33. C:\Utils\JRT.exe (app)
  34. C:\Utils\Killbox.exe (app)
  35. C:\Utils\LSP fix.exe (app)
  36. C:\Utils\MalwareBytes Remover.exe (app)
  37. C:\Utils\martins reg fix.reg (registration entries)
  38. C:\Utils\mbam-setup.exe (app)
  39. C:\Utils\MiniToolBox.exe (app)
  40. C:\Utils\MSCOMCTL Repair.exe (app)
  41. C:\Utils\Netscan.exe(app)
  42. C:\Utils\Process Explore 64-bit.exe (app)
  43. C:\Utils\Putty.exe (app)
  44. C:\Utils\Reformat.txt (.txt)
  45. C:\Utils\Reset Shell Open Cmd.inf (Setup Info.)
  46. C:\Utils\reset_vista_folder.reg (registration entries)
  47. C:\Utils\RogueKiller.exe (app)
  48. C:\Utils\RootkitBuster_v5_1061.exe (app)
  49. C:\Utils\RootkitRevealer.exe (app)
  50. C:\Utils\Secunia PSI Setup.exe (app)
  51. C:\Utils\SecurityCenterReset.exe (app)
  52. C:\Utils\Slook.txt (.txt)
  53. C:\Utils\SUPERAntiSpyware.exe (app)
  54. C:\Utils\SystemLook.exe (app)
  55. C:\Utils\Template.txt (.txt)
  56. C:\Utils\TFC.exe (app)
  57. C:\Utils\Ticket Templates.txt (.txt)
  58. C:\Utils\Toolbarcop.exe (app)
  59. C:\Utils\UnHack me.exe (app)
  60. C:\Utils\Utils.bat (Batch file)
  61. C:\Utils\Windows XP AutoLogin Settings.bat (batch file)
  62. C:\Utils\winpatroltogo.exe (app)
  63. C:\Utils\Winsock Fix All OSs.exe (app)
  64. C:\Utils\Wireless.txt
  65. C:\Utils\Zap.EXE
  66.  
  67. Keep in mind this folder was not created by me nor family.
  68. -----------------------------------------------------------------------------------------
  69. Pertaining to the two file folders found in Utils
  70.  
  71. C:\Utils\dialafix\Dial-a-fix.exe (app)
  72. C:\Utils\dialafix\secedit.exe (app)
  73. C:\Utils\dialafix\tweaking.com_windows_repair_setup(1).exe(app)
  74.  
  75. C:\Utils\spytools\Aurora and ABI Remover.exe
  76. C:\Utils\spytools\Aurora Registry Fix.reg
  77. C:\Utils\spytools\E2TakeOut.exe
  78. C:\Utils\spytools\FindAWF.exe
  79. C:\Utils\spytools\HomeSearch Remover.exe
  80. C:\Utils\spytools\ProQuota Fix.txt
  81. C:\Utils\spytools\SDfix.exe
  82. C:\Utils\spytools\Silent Runners.vbs <------ RED FLAG
  83. C:\Utils\spytools\Spy Falcon Registry Fix.reg
  84. C:\Utils\spytools\Surf Sidekick Registry Fix.reg
  85. C:\Utils\spytools\VundoFix.exe
  86. C:\Utils\spytools\VX2Finder.exe
  87. END, this is all in a file I found in the first 5 minutes of looking at the computer.
  88. -----------------------------------------------------------------------------------------
  89. 5. and finally a weird configuration settings document I found on my desktop called desktop.ini (never remember putting it there).
  90.  
  91. PasteBin logs
  92.  
  93. Desktop.ini - http://pastebin.com/NHHSQP0F
  94.  
  95. Farbar Recovery Tool - FRST http://pastebin.com/QrptU0YA
  96. Addition.txt http://pastebin.com/bYmwhhna
  97. Things checked = Registry, Services, Drivers, Processes, Internet, Addition.txt
  98.  
  99. Silent Runners.vbs - http://pastebin.com/wka8Gjz5
  100.  
  101. Thanks For checking this out whoever you are!
Add Comment
Please, Sign In to add comment