I think I have a serious virus

DoeZ

New member
Local time
4:27 PM
Messages
308
I recently did a clean install and I think everything went well. I added all my programs back by going to their site and downloading it. I'm using Panda as my AV and I'm actually in a trial period for one of their AV's. I've been faithful with trying to keep my "new" windows clean but I was completely shocked when I saw one of the results the scan came up with. It's put a file in quarantine already and blocked 4 threats. Now with my MB it hasn't come up with anything nor has my my SSP...Now yesterday my Panda gave me a warning of a site that was trying to get thru I guess and I wasn't familiar with it so I blocked it. Since then about every 5 min or so I get the lil window on the bottom right from Panda telling me that this same site is being blocked...I'm thinking that it's really trying to get in. I know something is wrong because where the clock is at the bottom right corner...the date has a line before each of the numbers...but it's not quite a line there's like a lil flag or something at the top of the line...I really need help please I just have a that feeling I have a virus somehow...and I just got another pop-up and it said i0.exe tried to run but was blocked...
 

Attachments

  • Untitled.jpg
    Untitled.jpg
    1.7 KB · Views: 37

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
I recently did a clean install and I think everything went well. I added all my programs back by going to their site and downloading it. I'm using Panda as my AV and I'm actually in a trial period for one of their AV's. I've been faithful with trying to keep my "new" windows clean but I was completely shocked when I saw one of the results the scan came up with. It's put a file in quarantine already and blocked 4 threats. Now with my MB it hasn't come up with anything nor has my my SSP...Now yesterday my Panda gave me a warning of a site that was trying to get thru I guess and I wasn't familiar with it so I blocked it. Since then about every 5 min or so I get the lil window on the bottom right from Panda telling me that this same site is being blocked...I'm thinking that it's really trying to get in. I know something is wrong because where the clock is at the bottom right corner...the date has a line before each of the numbers...but it's not quite a line there's like a lil flag or something at the top of the line...I really need help please I just have a that feeling I have a virus somehow...and I just got another pop-up and it said i0.exe tried to run but was blocked...

Try this out and see what it says :)
Microsoft Safety Scanner - Free Virus Scan with the Microsoft Safety Scanner
 

My Computer My Computer

At a glance

Windows 7 pro 64bitIntel Core i5-3470 Ivy Bridge Quad-Core 3.2GHzG.SKILL Ripjaws Series 8GB SDRAM 1600 PC312800Nivida Geforce 600
Computer type
PC/Desktop
Computer Manufacturer/Model Number
custom build
OS
Windows 7 pro 64bit
CPU
Intel Core i5-3470 Ivy Bridge Quad-Core 3.2GHz
Motherboard
ASRock Z75 Pro3 LGA 1155 Intel Z75 HDMI SATA 6Gb/s USB 3.0 A
Memory
G.SKILL Ripjaws Series 8GB SDRAM 1600 PC312800
Graphics Card(s)
Nivida Geforce 600
Monitor(s) Displays
Two dell 27" displays
Screen Resolution
1280x768
Hard Drives
256 GB 3.5" seagate
500 GB 2.5" WD
Internet Speed
25/5
Antivirus
Microsoft securtiy essentials, advanced system care 8
Browser
Chrome
Welcome to the forum, DoeZ !

Let's take a look at what is contained in your system, before running any automatic scanners...

Please use the Farbar Recovery Scan Tool.
Download: Farbar Recovery Scan Tool Download
Select the version that applies to your system: 32-bit
Save it to your Desktop.
Double-click the downloaded file to run it.

When the tool opens, click Yes to the disclaimer.

Next, press the Scan button.

When done, the tool makes a log, FRST.txt, in the same directory from which the tool is run (Desktop).
:ar: Please provide the FRST.txt in your reply.

The first time the tool is run, it also creates another log: Addition.txt
:ar: Also post the Addition.txt in your reply.
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Welcome to the forum, DoeZ !

Let's take a look at what is contained in your system, before running any automatic scanners...

Please use the Farbar Recovery Scan Tool.
Download: Farbar Recovery Scan Tool Download
Select the version that applies to your system: 32-bit
Save it to your Desktop.
Double-click the downloaded file to run it.

When the tool opens, click Yes to the disclaimer.

Next, press the Scan button.

When done, the tool makes a log, FRST.txt, in the same directory from which the tool is run (Desktop).
:ar: Please provide the FRST.txt in your reply.

The first time the tool is run, it also creates another log: Addition.txt
:ar: Also post the Addition.txt in your reply.


Ok bare with me...
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Welcome to the forum, DoeZ !

Let's take a look at what is contained in your system, before running any automatic scanners...

Please use the Farbar Recovery Scan Tool.
Download: Farbar Recovery Scan Tool Download
Select the version that applies to your system: 32-bit
Save it to your Desktop.
Double-click the downloaded file to run it.

When the tool opens, click Yes to the disclaimer.

Next, press the Scan button.

When done, the tool makes a log, FRST.txt, in the same directory from which the tool is run (Desktop).
:ar: Please provide the FRST.txt in your reply.

The first time the tool is run, it also creates another log: Addition.txt
:ar: Also post the Addition.txt in your reply.


I didn't get very far...

I forgot to mention that my Panda also popped up as this was a virus...
 

Attachments

  • desktop.jpg
    desktop.jpg
    13.4 KB · Views: 35

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Ok bare with me...

I don't think so!! :huh:


However, I will gladly have lots of patience!!!! :D
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
No problem with Panda, just disable it until you run the FRST tool.

Open Panda, and click the three small lines on the right. It takes you to Settings.

In Settings, go to Antivirus (on the left)

To the right of Enable permanent protection, turn it off by clicking on the blank square next to On.
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
No problem with Panda, just disable it until you run the FRST tool.

Open Panda, and click the three small lines on the right. It takes you to Settings.

In Settings, go to Antivirus (on the left)

To the right of Enable permanent protection, turn it off by clicking on the blank square next to On.

Ok...and I'll try to run that again...hopefully it'll work...
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Take your time. :)
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Phew...I got worried there because it was running and then it said it said it wasn't responding and I moved my mouse and it started again...So here ya go...
 

Attachments

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
DoeZ,

At first review, it looks like the program Unchecky is being recognized by Panda as a possible threat.
i0.exe belongs to Unchecky, which also updates automatically, so Panda is probably picking it up also.

If you wish, go back to Panda and open Settings > Antivirus > Exclusions

In Exclusions, use the areas provided to prevent Unchecky from being targeted by Panda.

See if that will stop the problem.

Will analyze the reports you provided, and will get back with you tomorrow with any pertinent action.

Thank you, for bearing with me. :)
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
DoeZ,

At first review, it looks like the program Unchecky is being recognized by Panda as a possible threat.
i0.exe belongs to Unchecky, which also updates automatically, so Panda is probably picking it up also.

If you wish, go back to Panda and open Settings > Antivirus > Exclusions

In Exclusions, use the areas provided to prevent Unchecky from being targeted by Panda.

See if that will stop the problem.

Will analyze the reports you provided, and will get back with you tomorrow with any pertinent action.

Thank you, for bearing with me. :)

Ok...but should I keep my Panda off then and wait for you tomorrow?

Also is that Unchecky supposed to be seen...because there isn't anything in any of the boxes...
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Turn Panda on, and then establish Unchecky as an Exclusion in Panda!

Also is that Unchecky supposed to be seen...because there isn't anything in any of the boxes...

Don't understand the question...in what boxes?
If you mean the Exclusion boxes of Panda, you need to enter the info in them.
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
[/QUOTE]Don't understand the question...in what boxes?
If you mean the Exclusion boxes of Panda, you need to enter the info in them.[/QUOTE]

There's 3 boxes...which one am I adding it in? And how do I add it? Sorry for a stupid question:confused:
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Questions are never stupid. Forums are predicated upon questions. Ask away!!

Under Files and Folders, type in:
Unchecky
i0.exe


Under Files restored from quarantine and excluded from scanning, you will need to look at the Panda Quarantine to see what files are there. The Quarantine is shown on the main program console of Panda.
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Questions are never stupid. Forums are predicated upon questions. Ask away!!

Under Files and Folders, type in:
Unchecky
i0.exe


Under Files restored from quarantine and excluded from scanning, you will need to look at the Panda Quarantine to see what files are there. The Quarantine is shown on the main program console of Panda.


Ok Thanks...I was just looking thru those 2 items I uploaded for you...I have no clue what either mean but the 2nd one...the Addition one...just looking thru that one and I'm like...OMG I'm so screwed...lol...I have no clue what the majority stuff is in that Hosts content...like what is that candy thing...or betterinstaller or bulldog...ppdownload or shyapotato it all sounds like fake sites or something...and then at the bottom so many errors its unreal...my windows is corrupted...this is why I feel there's a virus somewhere or I've been hacked or something...UGH :cry:
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Will explain the entries in Hosts and some other stuff tomorrow.

So far I do not see a virus on the computer, so, please do not be concerned.

Relax, get some sleep, and, tomorrow is another day.

BTW, are you a retired Postal employee?



Later...
 

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Will explain the entries in Hosts and some other stuff tomorrow.

So far I do not see a virus on the computer, so, please do not be concerned.

Relax, get some sleep, and, tomorrow is another day.

BTW, are you a retired Postal employee?



Later...


Let's hope you keep it that way...but I think it's messed up somehow...

Not quite retired yet...I'm completely disabled now from a accident on the job...how'd you know that?

NVM...I forgot I had that in there...are you P.O. worker?
 

My Computer My Computer

At a glance

Windows7 Home Premium 32-bit SP-1Intel(R) Celeron(R) CPU 900 @ 2.20GHz2.00 GB USABLE 1.87 GB(1) Mobile Intel(R) 4 Series Express Chipset ...
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Toshiba HP
OS
Windows7 Home Premium 32-bit SP-1
CPU
Intel(R) Celeron(R) CPU 900 @ 2.20GHz
Motherboard
TOSHIBA NBWAA
Memory
2.00 GB USABLE 1.87 GB
Graphics Card(s)
(1) Mobile Intel(R) 4 Series Express Chipset Family (2) Mo
Sound Card
Realtek High Definition Audio
Hard Drives
TOSHIBA MK2555GSX
Antivirus
Panda Free Antivirus
Browser
I'm a new FireFox Browser user~
Other Info
Do Not Mess With Your Computer~
Unless You Know What You're Doing~
Unlike Me~I Had No Clue At All~I Thought I Did~
Do Not Mess With Your Computer~
Hi Doreen ... Got your Message you where very unclear about the issues you are having except that you might have a Virus ... You will get great support in that area from CottonBall ... What other issues you are having could you Please start a New Thread that way you would receive the best Help ....
 

My Computer My Computer

At a glance

windows 7 home 64bitINTEL-CORE I716GB
Computer Manufacturer/Model Number
W530-3630QM1
OS
windows 7 home 64bit
CPU
INTEL-CORE I7
Memory
16GB
Hard Drives
750GB
Browser
Chrome
Back
Top