PDA

View Full Version : How to Proceed?


sciencewis1
04-02-2009, 02:12 AM
For the last couple of weeks my Windows Applications, whenever opened, would switch between the Vista Theme and the Windows Default Theme and I could not figure out why. Late Tuesday, SD did its automatic updates and I found I had a Trojan and a Keylogger that were not there in the scans I did prior. I have typed in confidential information during those weeks when I was infected and did not know it, how can i tell if any information was sent? I am using SD (6.0.1.440) and PC Tools Firewall (5.0.0.38). I think they were just dormant on my system because behavioral Guard did not catch any malicious behavior, but I am not sure. Spybot did not even catch this one. Can anyone help?

katie
04-02-2009, 02:21 AM
So did they appeared in the scans after? how did you know they have been on your system for that amount of time? Is it possible to post the name of the infections that were detected? maybe someone can provide more info if we know what they are :) and one other thing is this on 32 or 64 bit?

sciencewis1
04-02-2009, 02:42 AM
After I updated the SD database on Tuesday those threats popped up. They were removed Tuesday night and I am looking in the SD log and I am missing the logs for the entire month. I think this is an SD error and I cannot give you the names of the threat, but it was a Keylogger and a Trojan for sure. I know that is a little ambiguous, but any suggestions would be appreciated. The firewall did not catch anything suspicious and neither did SD. Just when i detected and removed the threats the switch between Windows Default and the Vista Theme stopped. They could have been Registry errors, but SD classified them as threats so I am not sure what to do. Anyone got any advice with the information I provided?

Bianca150
04-02-2009, 09:27 PM
Have you e-mailed PC tools support regarding this issue? They would need your to run a malware report, if you did you would have a ticket number in order for you to know that you did send it to them. Well you have to have a support ticket number first before you could send them the malware report, so I suggest to contact them.

You can log into your PC Tools account to create a ticket and monitor it.

You can also try running a scan in safe mode at least 3 times and make sure that you remove all the threats in your quarantine before you perform a scan again.