Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Lately I have noticed a lot of problems when attempting to interact with a laptop that used to belong to me (now belongs to my 13 year old brother). The problems include but are not limited to.
- 1. Very slow when surfing the interweb.
- 2. Task manager takes a very long time to load and crashes some times.
- 3. The anti-virus software (McAfee anti-virus +) is very very slow, the scans will not complete most of the time and when they do it will be 9% complete then stop for 10-15 min and then say that no problems were detected.
- 4. Suspicious files found when I was looking through the windows explorer
- C:\Utils (never created this folder) and inside I found the following.
- C:\Utils\dialafix (File Folder)
- C:\Utils\spytools (File Folder)
- C:\Utils\ActiveX Fix.bat (batch File)
- C:\Utils\ADSSpy.exe (app)
- C:\Utils\Advanced File Remover.exe (app)
- C:\Utils\AppRemover.exe (app)
- C:\Utils\ATF-Cleaner.exe (app)
- C:\Utils\BlackLight Rootkit Remover.exe (app)
- C:\Utils\BOOTEX.Log (.txt)
- C:\Utils\bootkit_remover_debug_log.txt (.txt)
- C:\Utils\Crap Cleaner.exe (app)
- C:\Utils\CW Shredder.exe (app)
- C:\Utils\Defraggler.exe (app)
- C:\Utils\eSage Boot Code Scanner.exe (app)
- C:\Utils\exefix_vista.reg (registration intries)
- C:\Utils\freefixersetup.exe (app)
- C:\Utils\GenuineCheck.exe (app)
- C:\Utils\HijackThis.exe (app)
- C:\Utils\HitmanPro.exe (app)
- C:\Utils\HitmanPro_x64.exe (app)
- C:\Utils\HitmanPro-32.exe (app)
- C:\Utils\InfiltrationRecoveryTool.exe (app)
- C:\Utils\JRT.exe (app)
- C:\Utils\Killbox.exe (app)
- C:\Utils\LSP fix.exe (app)
- C:\Utils\MalwareBytes Remover.exe (app)
- C:\Utils\martins reg fix.reg (registration entries)
- C:\Utils\mbam-setup.exe (app)
- C:\Utils\MiniToolBox.exe (app)
- C:\Utils\MSCOMCTL Repair.exe (app)
- C:\Utils\Netscan.exe(app)
- C:\Utils\Process Explore 64-bit.exe (app)
- C:\Utils\Putty.exe (app)
- C:\Utils\Reformat.txt (.txt)
- C:\Utils\Reset Shell Open Cmd.inf (Setup Info.)
- C:\Utils\reset_vista_folder.reg (registration entries)
- C:\Utils\RogueKiller.exe (app)
- C:\Utils\RootkitBuster_v5_1061.exe (app)
- C:\Utils\RootkitRevealer.exe (app)
- C:\Utils\Secunia PSI Setup.exe (app)
- C:\Utils\SecurityCenterReset.exe (app)
- C:\Utils\Slook.txt (.txt)
- C:\Utils\SUPERAntiSpyware.exe (app)
- C:\Utils\SystemLook.exe (app)
- C:\Utils\Template.txt (.txt)
- C:\Utils\TFC.exe (app)
- C:\Utils\Ticket Templates.txt (.txt)
- C:\Utils\Toolbarcop.exe (app)
- C:\Utils\UnHack me.exe (app)
- C:\Utils\Utils.bat (Batch file)
- C:\Utils\Windows XP AutoLogin Settings.bat (batch file)
- C:\Utils\winpatroltogo.exe (app)
- C:\Utils\Winsock Fix All OSs.exe (app)
- C:\Utils\Wireless.txt
- C:\Utils\Zap.EXE
- Keep in mind this folder was not created by me nor family.
- -----------------------------------------------------------------------------------------
- Pertaining to the two file folders found in Utils
- C:\Utils\dialafix\Dial-a-fix.exe (app)
- C:\Utils\dialafix\secedit.exe (app)
- C:\Utils\dialafix\tweaking.com_windows_repair_setup(1).exe(app)
- C:\Utils\spytools\Aurora and ABI Remover.exe
- C:\Utils\spytools\Aurora Registry Fix.reg
- C:\Utils\spytools\E2TakeOut.exe
- C:\Utils\spytools\FindAWF.exe
- C:\Utils\spytools\HomeSearch Remover.exe
- C:\Utils\spytools\ProQuota Fix.txt
- C:\Utils\spytools\SDfix.exe
- C:\Utils\spytools\Silent Runners.vbs <------ RED FLAG
- C:\Utils\spytools\Spy Falcon Registry Fix.reg
- C:\Utils\spytools\Surf Sidekick Registry Fix.reg
- C:\Utils\spytools\VundoFix.exe
- C:\Utils\spytools\VX2Finder.exe
- END, this is all in a file I found in the first 5 minutes of looking at the computer.
- -----------------------------------------------------------------------------------------
- 5. and finally a weird configuration settings document I found on my desktop called desktop.ini (never remember putting it there).
- PasteBin logs
- Desktop.ini - http://pastebin.com/NHHSQP0F
- Farbar Recovery Tool - FRST http://pastebin.com/QrptU0YA
- Addition.txt http://pastebin.com/bYmwhhna
- Things checked = Registry, Services, Drivers, Processes, Internet, Addition.txt
- Silent Runners.vbs - http://pastebin.com/wka8Gjz5
- Thanks For checking this out whoever you are!
Add Comment
Please, Sign In to add comment