![]() |
|
|
|
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
File driving me nuts in XP....virus?
So out of nowhere this file starts trying to access the internet on my laptop (which I deny), so I run full virus scans and all that and get a couple small issues that I fix but that file remains. Now here's the kicker...Googling the file name gets zero hits!!!!
jjfwaaaa.exe Anyway, I have found two instances on my machine- JJFWAAAA.EXE-2AF94DA7.pf (found in my "C:\WINDOWS\Prefetch" folder) & jjfwaaaa (found in my "C:\WINDOWS\system32" folder) What the heck is this thing? And how is it possible that Google and Yahoo can find nothing of it?
__________________
Cornpoppin' Pony Soldier Last edited by lendaddy; 02-19-2007 at 04:41 PM.. |
||
![]() |
|
Cars & Coffee Killer
Join Date: Sep 2004
Location: State of Failure
Posts: 32,246
|
Don't know what it is. I don't have it. It could be part of some program you have installed.
__________________
Some Porsches long ago...then a wankle... 5 liters of VVT fury now -Chris "There is freedom in risk, just as there is oppression in security." |
||
![]() |
|
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
Is there a way to search my computer for other files created at the same time?
__________________
Cornpoppin' Pony Soldier |
||
![]() |
|
Registered
Join Date: Jan 2002
Location: Long Beach CA, the sewer by the sea.
Posts: 37,702
|
just for the heck of it, I copied that and ran a search. negative. this machine runs XP Media Edition.
|
||
![]() |
|
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
OK, a search for files modified at the same time turns up a bunch from my "Spyboy search and destroy" program update.
__________________
Cornpoppin' Pony Soldier |
||
![]() |
|
Registered
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
|
okay. been there done that. first turn of your windows restore feature. Otherwise, even once you think it's gone, it will be back. second, go here
http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html Follow the instructions exactly as the are written. They have REAL malware removal tools there. All the software that they use is freeware as well. Let us know how it's going after you get done. Goodluck. Man did I go through this once. |
||
![]() |
|
![]() |
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
Quote:
__________________
Cornpoppin' Pony Soldier |
||
![]() |
|
Registered
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
|
about 95% sure you have a browser hijacking virus. That .exe file is an executable file. It's probably part of the problem. To get rid of it you'll need to reboot in safe mode, however it won't go away because these files populate in numerous areas. When you try to delete it from one spot, it sort of moves to another. Actually what happens (and i'm not a pro on this stuff by any means) is that root files are added all over the place, so when one gets zapped the other is still alive to do the same thing.
the Geekstogo folks will help you for free. The software DL's that they have, are actually really effective. They also tell you which "anti-virus" programs to avoid. There are tons of them! They are actually viruses themselves. Anyway, this is a super resource and it's totally free. |
||
![]() |
|
Registered
Join Date: Jan 2007
Location: "Al's Backyard"
Posts: 82
|
ps your spybot programs are fine. They just have a similar code thingy to real viruses. Standard anti-virus software seems to ALWAYS be behind the virus curve. By the time they have it figured out, it's too late.
|
||
![]() |
|
Registered
Join Date: Feb 2005
Location: New York.NY
Posts: 345
|
http://www.symantec.com/index.htm
go to this site and cut and paste it to there search and it will help you get rid of it ,they also have a program that will check your system for spyware , trojans and anti-virus Angel
__________________
pca 30 year member,1977 porsche turbo body targa 56 vw ragtop oval 01 harley sportster 18 Chevy Colorado diesel BIG RED Firetruck and assorted v-dub ,porsche parts hoarder..LoL |
||
![]() |
|
Registered
|
Often, these little pests have random names. Because of this Google and Yahoo won't have info. If you right-click on the file and select properties, sometimes it shows a version tab. If it does, you may get lucky and see who made the file. If it does not show the version tab, then it more than likely does not belong.
Dave
__________________
Make sure to check out my balls in the Pelican Parts Catalog! 917 inspired shift knobs. '84 Targa - Arena Red - AX #104 '07 Toyota Camry Hybrid - Yes, I'm that guy... '01 Toyota Corolla - Urban Camouflage - SOLD |
||
![]() |
|
Senior Member
Join Date: Jun 2000
Location: N. Phoenix AZ USA
Posts: 28,943
|
Did a google search and came up with nothing. That is not good as if it was a valid Windows file something would have popped up.
Proceed as if its a virus or spyware.
__________________
2013 Jag XF, 2002 Dodge Ram 2500 Cummins (the workhorse), 1992 Jaguar XJ S-3 V-12 VDP (one of only 100 examples made), 1969 Jaguar XJ (been in the family since new), 1985 911 Targa backdated to 1973 RS specs with a 3.6 shoehorned in the back, 1959 Austin Healey Sprite (former SCCA H-Prod), 1995 BMW R1100RSL, 1971 & '72 BMW R75/5 "Toaster," Ural Tourist w/sidecar, 1949 Aeronca Sedan / QB |
||
![]() |
|
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
Thanks guys, I, on the path Basquiat gave me (thanks again). I'll let you know more when I finish.
__________________
Cornpoppin' Pony Soldier |
||
![]() |
|
Registered
Join Date: Feb 2005
Location: New York.NY
Posts: 345
|
lendaddy try the symtec site i sent you it will lead you in the right direction
__________________
pca 30 year member,1977 porsche turbo body targa 56 vw ragtop oval 01 harley sportster 18 Chevy Colorado diesel BIG RED Firetruck and assorted v-dub ,porsche parts hoarder..LoL |
||
![]() |
|
Dept store Quartermaster
Join Date: Jul 2001
Location: I'm right here Tati
Posts: 19,858
|
Thanks angel, but I've got 8 hours into the other path and my files are being reviewed by advisors now (free too which is neat). I'm getting there
![]()
__________________
Cornpoppin' Pony Soldier |
||
![]() |
|