Pelican Parts
Parts Catalog Accessories Catalog How To Articles Tech Forums
Call Pelican Parts at 888-280-7799
Shopping Cart Cart | Project List | Order Status | Help



Go Back   Pelican Parts Forums > Miscellaneous and Off Topic Forums > Off Topic Discussions


Reply
 
LinkBack Thread Tools Rate Thread
Author
Thread Post New Thread    Reply
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
File driving me nuts in XP....virus?

So out of nowhere this file starts trying to access the internet on my laptop (which I deny), so I run full virus scans and all that and get a couple small issues that I fix but that file remains. Now here's the kicker...Googling the file name gets zero hits!!!!

jjfwaaaa.exe

Anyway, I have found two instances on my machine-

JJFWAAAA.EXE-2AF94DA7.pf (found in my "C:\WINDOWS\Prefetch" folder)

&

jjfwaaaa (found in my "C:\WINDOWS\system32" folder)

What the heck is this thing? And how is it possible that Google and Yahoo can find nothing of it?

__________________
Cornpoppin' Pony Soldier

Last edited by lendaddy; 02-19-2007 at 04:41 PM..
Old 02-19-2007, 04:39 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #1 (permalink)
Cars & Coffee Killer
 
legion's Avatar
 
Join Date: Sep 2004
Location: State of Failure
Posts: 32,246
Don't know what it is. I don't have it. It could be part of some program you have installed.
__________________
Some Porsches long ago...then a wankle...
5 liters of VVT fury now
-Chris

"There is freedom in risk, just as there is oppression in security."
Old 02-19-2007, 05:00 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #2 (permalink)
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
Is there a way to search my computer for other files created at the same time?
__________________
Cornpoppin' Pony Soldier
Old 02-19-2007, 05:02 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #3 (permalink)
Registered
 
Zeke's Avatar
 
Join Date: Jan 2002
Location: Long Beach CA, the sewer by the sea.
Posts: 37,702
just for the heck of it, I copied that and ran a search. negative. this machine runs XP Media Edition.
Old 02-19-2007, 05:04 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #4 (permalink)
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
OK, a search for files modified at the same time turns up a bunch from my "Spyboy search and destroy" program update.
__________________
Cornpoppin' Pony Soldier
Old 02-19-2007, 05:06 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #5 (permalink)
Registered
 
Basquiat's Avatar
 
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
okay. been there done that. first turn of your windows restore feature. Otherwise, even once you think it's gone, it will be back. second, go here
http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html

Follow the instructions exactly as the are written. They have REAL malware removal tools there.
All the software that they use is freeware as well. Let us know how it's going after you get done.
Goodluck. Man did I go through this once.
Old 02-19-2007, 05:18 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #6 (permalink)
 
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
Quote:
Originally posted by Basquiat
okay. been there done that. first turn of your windows restore feature. Otherwise, even once you think it's gone, it will be back. second, go here
http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html

Follow the instructions exactly as the are written. They have REAL malware removal tools there.
All the software that they use is freeware as well. Let us know how it's going after you get done.
Goodluck. Man did I go through this once.
Thanks, but are you saying I have a problem for certain?
__________________
Cornpoppin' Pony Soldier
Old 02-19-2007, 05:22 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #7 (permalink)
Registered
 
Basquiat's Avatar
 
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
about 95% sure you have a browser hijacking virus. That .exe file is an executable file. It's probably part of the problem. To get rid of it you'll need to reboot in safe mode, however it won't go away because these files populate in numerous areas. When you try to delete it from one spot, it sort of moves to another. Actually what happens (and i'm not a pro on this stuff by any means) is that root files are added all over the place, so when one gets zapped the other is still alive to do the same thing.
the Geekstogo folks will help you for free. The software DL's that they have, are actually really effective. They also tell you which "anti-virus" programs to avoid. There are tons of them! They are actually viruses themselves.
Anyway, this is a super resource and it's totally free.
Old 02-19-2007, 05:54 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #8 (permalink)
Registered
 
Basquiat's Avatar
 
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
ps your spybot programs are fine. They just have a similar code thingy to real viruses. Standard anti-virus software seems to ALWAYS be behind the virus curve. By the time they have it figured out, it's too late.
Old 02-19-2007, 05:58 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #9 (permalink)
Registered
 
angelny911's Avatar
 
Join Date: Feb 2005
Location: New York.NY
Posts: 345
http://www.symantec.com/index.htm

go to this site and cut and paste it to there search and it will help you get rid of it ,they also have a program that will check your system for spyware , trojans and anti-virus

Angel
__________________
pca 30 year member,1977 porsche turbo body targa
56 vw ragtop oval
01 harley sportster
18 Chevy Colorado diesel
BIG RED Firetruck and assorted v-dub ,porsche parts hoarder..LoL
Old 02-19-2007, 07:25 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #10 (permalink)
Registered
 
slodave's Avatar
 
Join Date: Sep 2005
Location: Encino Man
Posts: 22,394
Garage
Send a message via Skype™ to slodave
Often, these little pests have random names. Because of this Google and Yahoo won't have info. If you right-click on the file and select properties, sometimes it shows a version tab. If it does, you may get lucky and see who made the file. If it does not show the version tab, then it more than likely does not belong.

Dave
__________________
Make sure to check out my balls in the Pelican Parts Catalog! 917 inspired shift knobs.

'84 Targa - Arena Red - AX #104
'07 Toyota Camry Hybrid - Yes, I'm that guy...
'01 Toyota Corolla - Urban Camouflage - SOLD
Old 02-19-2007, 07:41 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #11 (permalink)
Senior Member
 
Join Date: Jun 2000
Location: N. Phoenix AZ USA
Posts: 28,943
Did a google search and came up with nothing. That is not good as if it was a valid Windows file something would have popped up.

Proceed as if its a virus or spyware.
__________________
2013 Jag XF, 2002 Dodge Ram 2500 Cummins (the workhorse), 1992 Jaguar XJ S-3 V-12 VDP (one of only 100 examples made), 1969 Jaguar XJ (been in the family since new), 1985 911 Targa backdated to 1973 RS specs with a 3.6 shoehorned in the back, 1959 Austin Healey Sprite (former SCCA H-Prod), 1995 BMW R1100RSL, 1971 & '72 BMW R75/5 "Toaster," Ural Tourist w/sidecar, 1949 Aeronca Sedan / QB
Old 02-19-2007, 11:40 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #12 (permalink)
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
Thanks guys, I, on the path Basquiat gave me (thanks again). I'll let you know more when I finish.
__________________
Cornpoppin' Pony Soldier
Old 02-20-2007, 04:12 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #13 (permalink)
Registered
 
angelny911's Avatar
 
Join Date: Feb 2005
Location: New York.NY
Posts: 345
lendaddy try the symtec site i sent you it will lead you in the right direction
__________________
pca 30 year member,1977 porsche turbo body targa
56 vw ragtop oval
01 harley sportster
18 Chevy Colorado diesel
BIG RED Firetruck and assorted v-dub ,porsche parts hoarder..LoL
Old 02-20-2007, 07:25 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #14 (permalink)
Dept store Quartermaster
 
lendaddy's Avatar
 
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
Thanks angel, but I've got 8 hours into the other path and my files are being reviewed by advisors now (free too which is neat). I'm getting there

__________________
Cornpoppin' Pony Soldier
Old 02-20-2007, 07:34 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #15 (permalink)
Reply


 


All times are GMT -8. The time now is 11:22 AM.


 
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0
Copyright 2025 Pelican Parts, LLC - Posts may be archived for display on the Pelican Parts Website -    DMCA Registered Agent Contact Page
 

DTO Garage Plus vBulletin Plugins by Drive Thru Online, Inc.