Think your PC is infected or needs a general check-up?

Viewing forum thread.
Back to Technology chat.
Back to Forum List.

Pages: 1
2
Deleted User
(IP Logged)
08:43 Sat 23 Mar 13 (GMT)  [Link]  
Step 2 seems a bit intrusive ..shows all AV and other security modules you have operating & sys info !!!
Deleted User
(IP Logged)
08:50 Sat 23 Mar 13 (GMT)  [Link]  
Step 3 was fine and no problems

step 4 stopped as it was trying to access my host files and began not responding !!
Deleted User
(IP Logged)
08:56 Sat 23 Mar 13 (GMT)  [Link]  
Never thought for a minute i needed to use this and its proven that i do not as my system runs tickety boo for 2 years now with no generic's or trojans.

Just thought i would test anothers way of thinking and cant find any issues on my sys.

Why would a program want to access my host files as these are ip address controlled connections ?

Seems a bit odd that.
Deleted User
(IP Logged)
09:03 Sat 23 Mar 13 (GMT)  [Link]  
Nothing should be in the host files apart from this...

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handle within DNS itself.
# 127.0.0.1 localhost
# ::1 localhost
flapjack
flapjack
Admin
Posts: 5,223
12:09 Sat 23 Mar 13 (GMT)  [Link]  
You host file doesn't technically have anything in it as all of that is commented out. Please read this page: http://www.accs-net.com/hosts/what_is_hosts.html
The reason it wants to check your host file is to make sure that another malicious program hasn't changed the contents of the host file and directing your DNS a their will.

Step 1 is flung out by all browsers i have so what is the score here ?

What do you mean? It's a temporary file cleaner? It cleans all of the files that are not needed/unused. Your browser shouldn't affect this at all.

Malwarebytes does not like this program !!! (step 1) maybe a false positive but hmmm.

I can assure you this is a false positive. The reason for this is that it is accessing and deleting files in the system folder.
Here is a virus scan of it:
https://www.virustotal.com/en/file/c6592c2061c39ea8ed94d1f6854e16a722dc461f4d5b907b0230452d07d4cce3/analysis/
Notice none of the good AV's detect it? Even the ones that do detect it presume it is malicious as it accesses system files. Check out anubis so you can see exactly what it changes:
http://anubis.iseclab.org/?action=result&task_id=1b71029e3f17a1bc40de67662897e7468&format=html
As you can see the process is dead by the end of the analysis.


Step 2 seems a bit intrusive ..shows all AV and other security modules you have operating & sys info !!!

There is nothing wrong that can be done with this information. All it is doing is giving information about your computer. This will help diagnose your problem, it tells everything that is needed to be known.
Here is my log: http://pastebin.com/kCFFP94m



step 4 stopped as it was trying to access my host files and began not responding !!

Try running this as Administrator.


Next time read into what the programs do if you're not sure and use one post. It is classed as spamming on the forum.
Thanks
Deleted User
(IP Logged)
13:45 Sat 23 Mar 13 (GMT)  [Link]  
Spamming well i wont bother if thats the case, sounded cool and was going to respond but the last sentence made it futile.

Maybe check the clan threads for spamming and deal with them first as i thought this was a help desk type thing and have seen tons done by both users and moderators without a warning u gave me.

After all i was talking on about the steps and segregated them.

I feel that being complained at and accused of spamming is way of the mark.

Sorry i have not got the edit/ copy forum policy on here yet but was no need to say i was spamming.

Thanks.
Deleted User
(IP Logged)
13:54 Sat 23 Mar 13 (GMT)  [Link]  
Also why run a program to access the host file ?

It is easily accessed by any user with admin priv (which most if not all owners have) without that program running.

Sorry this conversation is over.

I doubt your integrity at this time sorry.
flapjack
flapjack
Admin
Posts: 5,223
14:04 Sat 23 Mar 13 (GMT)  [Link]  
You can segregate your comments like you did in a previous post.
Step 3 was fine and no problems

step 4 stopped as it was trying to access my host files and began not responding !!


Also why run a program to access the host file ?

It is easily accessed by any user with admin priv (which most if not all owners have) without that program running.


You're not running a program to access the host files, you're running a program to check for malicious lines in the host file.
Deleted User
(IP Logged)
05:06 Sun 24 Mar 13 (GMT)  [Link]  
I am just dubious when it comes to sharing system information over to anyone over the net as i have known people who have and they went on to be backdoored.

I've heard since u do good for the community so i will leave it there.

Happy computing.
Pages: 1
2
Unable to post
Reason:You must log in before you can post

Think your PC is infected or needs a general check-up?

Back to Top of this Page
Back to Technology chat.
Back to Forum List.