Solved Emisoft Emergency Kit found maleware?

Article 86

Banned
Local time
9:05 PM
Messages
4
I just ran EEK (freeware) and it reports 4 items. Should I quarantine them, remove them, or just tag them as "allowed".

1) Application.AdTool (A) says "No Risk"
2) Application.Win32.WSearch (A) says "No Risk"
3) Setting.DisableTaskMgr (A) suggests nothing
4) Setting.DisableRegistryTools (A) suggests nothing

I searched the Emisoft site for these and there is nothing about them ... figures. I have no other virus programs running when I scan. Norton 360 is the only tool that I normally leave active and it finds nothing. I also ran Windows Defender and it reports nothing. With EEK, I have seen #1 and #2 before and I just left them alone as it claims "No Risk". Why would they flag something in a scan if it wasn't a problem? #3 and #4 are new and have me worried. One other thing, I run CCleaner Free regularly and clean purportedly problem registry items. It shows no registry issues. Could this be related? Is EEK worthwhile? Are these false positives? EEK did find a MBR rootkit years ago that others did not, so I kept it. Any help/suggestions are greatly appreciated.
- Art
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP-Pavillion NY638AA-ABA p6203w (bundled apps. removed)
OS
Windows 7 Professional 64-bit v6.1.7601 SP1 Build 7601 (upgrade from Home Premium)
CPU
AMD Athlon II X2 215 Processor, 2700 Mhz 2 Cores
Motherboard
PEGATRON CORP. NARRA5, Phoenix - AwardBIOS v6.00PG
Memory
4 GB system memory
Graphics Card(s)
ATI All-in-Wonder HD Series 3000 (512 MB), 1920 x 1080
Sound Card
On-board (unknown)
Monitor(s) Displays
VISIO 35" Smart HD
Screen Resolution
1080p
Hard Drives
WDC WD50 00AAKS-65A7B SCSI Disk Device (500 GB)
TSSTcorp CDDVDW TS-H653R SCSI CD ROM Device
Generic- Compact Flash USB 2 Device (64 GB Stick)
Generic- MS/MS-Pro USB Device
Generic- SD/MMC USB Device
Generic- SM/xD-Picture USB Device
PSU
260W - upgraded
Case
Midi
Cooling
not much, fans are caked with dust! lol DOH!
Keyboard
HP
Mouse
Logitech laser
Internet Speed
10 Mbs down 1Mbs up (on a sunny day)
Antivirus
Norton 360 (default), Windows Defender, MalwareBytes
Browser
IE 11
Other Info
After an MBR bug. I ordered a Windows 7 Home Premium disk from MS for $60. Later I downloaded the Professional upgrade and noticed no difference. WTF?
Any reference to AdTool is suspicious at the least. A Google search reveals 1 & 2 to be adware. Also, it appears your registry tools & task manager have been disabled, a trick employed by adware/malware.

D/L & run AdwCleaner. Next, to rule out the possibility of rootkits, D/L & run TDSSkiller & RKill.

NOTE: When running TDSSKiller, launch the program, click on the blue text "Change Parameters" & check the box marked "Detect TDLFS File system." Click OK & then run the scan.

Also recommended, after you run those tools, D/L & run Malwarebytes. The free version will work fine. Be sure to uncheck the "Start free trial of pro version" at the end of the installation & let it scan your system. Quarantine anything it finds.
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
I followed your directions, but found that the RKill program is a DOS program, the first run of RKill did find some files that it did delete. Not knowing if I had run the program properly, I ran it again and unfortunately it had overwritten the original log file so I can't show you the original text file. The second text file shows that no files were found, so I again assume that all is well. I also ran AdwCleaner and TDSSKiller which reported nothing, and I then ran MalewareBytes (Free) and also found nothing.

I should add, I forgot to mention that I previously ran MalewareBytes before all of this and it reported nothing then too. At his point I assume that all is well. I have to say that this forum seems far better than the Windows Knowledge Base. The people here are very responsive and knowledgeable, and it makes me wonder what, if any, connection to Microsoft you have. If not, Microsoft should be paying you for your excellent support of their products. You guys and gals are great! Thank you so much.

- Art
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP-Pavillion NY638AA-ABA p6203w (bundled apps. removed)
OS
Windows 7 Professional 64-bit v6.1.7601 SP1 Build 7601 (upgrade from Home Premium)
CPU
AMD Athlon II X2 215 Processor, 2700 Mhz 2 Cores
Motherboard
PEGATRON CORP. NARRA5, Phoenix - AwardBIOS v6.00PG
Memory
4 GB system memory
Graphics Card(s)
ATI All-in-Wonder HD Series 3000 (512 MB), 1920 x 1080
Sound Card
On-board (unknown)
Monitor(s) Displays
VISIO 35" Smart HD
Screen Resolution
1080p
Hard Drives
WDC WD50 00AAKS-65A7B SCSI Disk Device (500 GB)
TSSTcorp CDDVDW TS-H653R SCSI CD ROM Device
Generic- Compact Flash USB 2 Device (64 GB Stick)
Generic- MS/MS-Pro USB Device
Generic- SD/MMC USB Device
Generic- SM/xD-Picture USB Device
PSU
260W - upgraded
Case
Midi
Cooling
not much, fans are caked with dust! lol DOH!
Keyboard
HP
Mouse
Logitech laser
Internet Speed
10 Mbs down 1Mbs up (on a sunny day)
Antivirus
Norton 360 (default), Windows Defender, MalwareBytes
Browser
IE 11
Other Info
After an MBR bug. I ordered a Windows 7 Home Premium disk from MS for $60. Later I downloaded the Professional upgrade and noticed no difference. WTF?
I forgot to add the following info, which is mentioned on the page about RKill. It should be run & then the system should be scanned with malware scanners without rebooting. That fact that it found something means there may be some kind of rouge process was running.

As RKill only terminates a program's running process, and does not delete any files, after running it you should not reboot your computer as any malware processes that are configured to start automatically will just be started again. Instead, after running RKill you should immediately scan your computer using some sort of anti-malware or anti-virus program so that the infections can be properly removed.
Just to be sure, run RKill, do not reboot, & then scan with Malwarebytes, TDSSKiller & AdwCleaner again.
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
At the bottom of every page.

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Home made Desktop
OS
Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
CPU
Intel i7-6800K @ 4.3
Motherboard
ASUS X-99 Deluxe II
Memory
Corsair Platinum 16 gig @2400
Graphics Card(s)
EVGA GTX 1070 OC
Monitor(s) Displays
Asus 27" LED LCD/VE278Q
Screen Resolution
1920-1080 or 1280-720 HDMI
Hard Drives
INTEL SSD 730-240 Gb Sata 3.0/
PSU
EVGA Platium 1200W
Case
Phanteks Luxe Tempered Glass 8 fans/ one radiator
Cooling
XSPC/ Water Cooled CPU
Keyboard
Das 4 Professional
Mouse
Logitech M705/MX Anywhere 2-S
Internet Speed
100 mbits
Antivirus
Microsoft Security Essentials/ Malwarebytes Premium 3.0/ SAS
Browser
I.E. 11 default/Firefox/ ISP Time Warner Cable/Spectrum
Other Info
LG BluRay Burner/
Sound system-KLipsch-THX/
Icy Dock ssd Hot Swap bays.
The people here are very responsive and knowledgeable, and it makes me wonder what, if any, connection to Microsoft you have. If not, Microsoft should be paying you for your excellent support of their products. You guys and gals are great! Thank you so much.

- Art

Yes, there are great people in here always willing to help someone & also excellent tutorials that you can look at.

http://www.sevenforums.com/tutorials/
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Back
Top