09-29-2010, 04:23 PM
|
#1
|
Franchise Player
Join Date: Mar 2006
Location: Victoria
|
I think I have a virus
So pretty much just as the title says. I'm positive I have a virus but for some reason avast and other anti-virus programs aren't detecting it. My PC is running at about 80% physical memory and the only program I have open is firefox. I did a HiJackThis log and nothing fishy shows up. Any suggestions?
|
|
|
09-29-2010, 04:30 PM
|
#2
|
Franchise Player
|
Nuke and pave.
|
|
|
09-29-2010, 04:32 PM
|
#3
|
Don't click that link!
Join Date: Apr 2006
Location: Rural Alberta
|
I have no suggestions or solutions to your problem but the Canucks logo is a nice touch.
|
|
|
The Following 8 Users Say Thank You to alan21 For This Useful Post:
|
|
09-29-2010, 04:52 PM
|
#4
|
Franchise Player
Join Date: Nov 2006
Location: Supporting Urban Sprawl
|
Try Hitman pro 3.5 and Malware Bytes.
If they don't catch it, then the easiest thing to do is backup your data and format.
__________________
"Wake up, Luigi! The only time plumbers sleep on the job is when we're working by the hour."
|
|
|
The Following User Says Thank You to Rathji For This Useful Post:
|
|
09-29-2010, 05:48 PM
|
#5
|
Franchise Player
|
As Rathji suggested, run your computer in safe mode and use Malware Bytes (Full search).
I've found it gets rid of stuff 80% of the time.
__________________
|
|
|
The Following User Says Thank You to kirant For This Useful Post:
|
|
09-29-2010, 06:37 PM
|
#7
|
Franchise Player
Join Date: Nov 2006
Location: Supporting Urban Sprawl
|
Quote:
Originally Posted by Hack&Lube
|
Malware Bytes and Hitman Pro together is the key.
Dr Web's CureIt is really good as a standalone scanner though.
.
__________________
"Wake up, Luigi! The only time plumbers sleep on the job is when we're working by the hour."
|
|
|
The Following User Says Thank You to Rathji For This Useful Post:
|
|
09-29-2010, 11:16 PM
|
#8
|
#1 Goaltender
|
Quote:
Originally Posted by Hack&Lube
|
Just out of curiosity, does downloading free AV software from Russia give you pause at all?
I guess Kaspersky is from Russia too, but free anti-malware software from Russia?
What kind of stuff has it found that MalwareBytes didn't?
__________________
-Scott
|
|
|
09-29-2010, 11:31 PM
|
#9
|
Franchise Player
Join Date: Mar 2006
Location: Victoria
|
Weird, I'm down to 60% tonight with the same programs open. Although that does seem high for only running firefox and avast.
|
|
|
09-29-2010, 11:36 PM
|
#10
|
Powerplay Quarterback
Join Date: Jan 2008
Location: Calgary
|
If you have a lot of add-ons installed for Firefox that could be part of the problem.
|
|
|
09-29-2010, 11:43 PM
|
#11
|
#1 Goaltender
|
Memory utilization is not a very reliable method of evaluating a potential malware infection. Maybe the AV utils you used found nothing for a reason?
__________________
-Scott
|
|
|
09-29-2010, 11:48 PM
|
#12
|
Franchise Player
Join Date: Apr 2003
Location: Not sure
|
Quote:
Originally Posted by sclitheroe
Just out of curiosity, does downloading free AV software from Russia give you pause at all?
|
|
|
|
09-29-2010, 11:55 PM
|
#13
|
Franchise Player
Join Date: Aug 2008
Location: Calgary, AB
|
Spybot.
|
|
|
09-30-2010, 01:47 AM
|
#14
|
God of Hating Twitter
|
Could try security task manager, been a while since its properly updated but it can look at your tasks and give you an indication of malicious in memory programs.
http://download.cnet.com/Security-Ta...-10246545.html
If nothing is being found in safe mode with malwarebytes I'd be thinking its not a virus issue. Is it just firefox that is hogging resources for you and what is your operating system and ram total?
__________________
Allskonar fyrir Aumingja!!
|
|
|
09-30-2010, 06:19 AM
|
#15
|
Lifetime Suspension
|
Quote:
Originally Posted by Rathji
Malware Bytes and Hitman Pro together is the key.
|
If these two can't find it, then odds are, it's not there. The other suggestions are OK programs, but these two are the ones I would go with.
|
|
|
09-30-2010, 06:40 AM
|
#16
|
Scoring Winger
Join Date: May 2008
Location: Syracuse, NY
|
It might be a tumor.
__________________
...Rob
The American Dream isn't an SUV and a house in the suburbs;
it's Don't Tread On Me.
|
|
|
The Following User Says Thank You to rbochan For This Useful Post:
|
|
09-30-2010, 09:42 AM
|
#17
|
Atomic Nerd
Join Date: Jul 2004
Location: Calgary
|
Quote:
Originally Posted by sclitheroe
Just out of curiosity, does downloading free AV software from Russia give you pause at all?
I guess Kaspersky is from Russia too, but free anti-malware software from Russia?
What kind of stuff has it found that MalwareBytes didn't?
|
I don't recall off hand, but there were several occasions about 1-2 years ago. Sometimes it takes a Russian to beat the Russians. DrWeb is also good to have in case you get something nasty which is very good at blocking most antivirus' from running as DrWeb always downloads as a random filename and has a very good emergency mode in case your desktop has been locked out. I usually just run them from another OS on my dual boot anyway.
One day I will learn the hard way for my laziness and then just run virtualizations.
|
|
|
09-30-2010, 04:29 PM
|
#18
|
Franchise Player
Join Date: Oct 2007
Location: still in edmonton
|
Quote:
Originally Posted by rbochan
It might be a tumor.
|
It's not a tumaaah.
|
|
|
09-30-2010, 04:37 PM
|
#19
|
Franchise Player
Join Date: Aug 2004
Location: Moscow, ID
|
Quote:
Originally Posted by rubecube
Weird, I'm down to 60% tonight with the same programs open. Although that does seem high for only running firefox and avast.
|
Back up your files and run Combofix:
http://www.bleepingcomputer.com/comb...o-use-combofix
I've done with my computer with no problems. It works the best.
__________________
As you can see, I'm completely ridiculous.
|
|
|
09-30-2010, 06:30 PM
|
#20
|
#1 Goaltender
|
Quote:
Originally Posted by Weiser Wonder
|
I’d use combofix to remove an identified, but otherwise unremovable infection. It’s not something you want to be routinely using.
Generally, if I had a client that had a piece of malware that could only be handled with combofix, I’d recommend a full reinstall after using combofix to stabilize the box long enough to do a proper inventory and backup
__________________
-Scott
|
|
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
All times are GMT -6. The time now is 08:44 AM.
|
|