new and worried

Hello, my name is amy. I just recently started using avast! Virus cleaner tool (actually I started using it today). Im not very good with computers, only recently have I been able to have a personal computer at home (well sort of, I share it with my siblings)…my parents finally agreed to let me (er well us) have one, me specifically because I have projects and such to type for school. (My much older brother who seems to know about computers, but is moved out, was the one who actually got the comp, but my parents payed for itX-D). I don’t know everything there is to know about computers, I probably know half the basics ,Yes I’m very dumb (but I have been trying the best I can to protect my pc and to learn):frowning: (I’ve only had my pc for about…a year, which is longer than I thought). I’ve been worried lately about my computer and would appreciate some advice on my situation (or any good tutorials, guides, reccomendations etc on computer stuff) from all you people (who know a lot more than I do).

I’ll explain my situation a little more (although it may be un-needed, but I’m not sure).
The virus/cleaner programs on my comp are now as follows:
Ad-Aware Se Personal, CCleaner, and avast! Virus cleaner tool.
I use to have AVG up until recently, because it was slowing my computer down horribly, and because everytime I ran it, it seemed a trojan (I can’t recall the exact name but I think it had the words: Backdoor, Gen or generic and the number 6 in it’s name?), would appear everytime I let it fully scan (although this has only been happening recently with that program on my comp.) I forgot to mention that the last time I let the program run, all these pop-ups appeard as it was running (I don’t recall If I had the internet open, but I think I maybe didn’t)! this had never happened before…Ad-aware said not a thing was wrong (well a few little non-threats but not a trojan, then again maybe adaware wouldn’t catch it?)
I don’t really think it was AVG but I decided that I’d find an anti- trojan program, and that’s when I came upon this site. Me, being paranoid (although my one sister insists it was AVG, which I think it wasn’t) still thinks my computer could have problems.

I ran avast but since I’m not wonderful at computer termonology I’m not so sure whether or not the results I recieved are good or not.
The results say:
No virus body was found in memory, and further down in the results, it says- no virus body found (in what I’m guessing is the c drive?).
No virus was found but the results say something that worries me (hope it’s okay I type this)

C:\WINDOWS\system32\drivers\sptd.sys… file could not be scanned!
C:\WINDOWS\system\32\drivers\sptd3197.sys… file could not be scanned!

Is this bad ?(I think it may be). I’m sorry if I sound like the biggest newb in the world :_(
??? :-\ :-[ :cry:

hi amy
dont worry(everyone was once a newbie)

and first lets take ur popup problem…AVG DOES NOT give any popups
1>>(update avast) and run boot time scan…(this can be done but right clicking on the avast simple user interface(the media player like thingy that opens after clicking on the avast ickon on the desktop) and selecting the boot time scan option…(make sure u installed 4.7 or higher)
2>>if this does not solve the problem get anti-spyware software like
spybot S&D http://www.download.com/3000-2144-10122137.html or
AVG anti-spyware http://www.filehippo.com/download_ewido/
(scan ur system)
3>>if this does not help post HIJACKTHIS log(download the software run it save the log file and post it in parts on the forum) i am sure some on the techies will look into it
http://www.softpedia.com/progDownload/HijackThis-Download-5034.html

and coming to ur thirst for computer knowledge ther is only one way expermient expermient (expermient)
u’ll end up screwin up ur OS a couple a hundred time so (keep ur XP cd handy)(ask ur bro where he kept)(ur parents paid for it so it belongs to u also)
and u can read a lot of e books and comp mags which have a more practical approach than techical mannuals at a starter level.(so suscribe to a couple of good ones)
and join some technical online forums.u’ll learn …
dont call ur self dumb…this is a virus support forum.we dont do counseling yet ; )
take this post in good humore
welcome to avast forums.

expermient

i got a link for u …

is blacklight for trackdown rootkit…it quite useful…

http://www.f-secure.com/blacklight/

Amy - there is a difference between the avast! antivirus program and the Virus Cleaner tool. The antivirus! program runs in real time and continuously protects your computer, while the Virus Cleaner tool is a specialized removal tool that does not offer real time protection.

Make sure you’ve installed the full program. Here’s a link to the free home version

http://www.avast.com/eng/download-avast-home.html

Thank you all very much X-D this will really help me

:slight_smile: Hi Amy :

 When I first started learning about protecting my computer, I found the 
 info at http://rcip.com/mitch/NewbieOldieUpdated.html  very helpful .

 The Best info about antiSPYWARE/antiTROJAN programs is antiSPYWARE
 Expert Eric Howes site at www.spywarewarrior.com/rogue_anti-spyware.htm.

 Nowadays, Ad-Aware is NOT one of the top antiSPYWARE programs; 
 better are AVG Antispyware from www.ewido.net and/or the FREE
 version of SUPERAntiSpyware from www.superantispyware.com .

Thank you guys, once again, very much for helping me! :slight_smile:
okay, I let avast antivirus do a boot scan. It found something which I think is worse than I
initially thought. I moved it to the virus chest (I didn’t want to mess around with whatever this thing is yet). I’ll put the results here first (the properties of the virus in the virus chest): hope it’s okay I type all this.

Origional file name A0066354.dll
Origional folder C:\System Volume Information_restore{81FCB1DA-A0AA04B79-8665-
F7FAA96D5353}\RP…

Size of file 42711
(I’ll omit the dates unless needed)
Category Infected files
Virus description Win32:Locksky-DE[Wrm]
can be restored no
File ID 1

I don’t know if I should try deleting it, I’m afraid I might really mess my computer up if I don’t ask.
does the [Wrm] stand for worm?
sorry to bother you again :-[

wow…u are fast learner…

This is a restore point in the C:\System Volume Information folder, system restore creates a restore point for files that are deleted from the system folders, so it is possible in this case you deleted an infected dll file from one of the system folders and this restore point was created and avast can detect files there.

If you have moved it to the avast chest and it is no longer in the C:\System Volume Information folder then you have nothing further to do. There is no rush to delete anything from the chest, a protected area where it can do no harm. Anything that you send to the chest you should leave there for a few weeks. If after that time you have suffered no adverse effects from moving these to the chest, scan them again (inside the chest) and if they are still detected as viruses, delete them.

Yes [Wrm] stands for worm.

phew thank you times a million! I’ll leave it in the chest for now, and just be very observant of it and scan it as you said. In few weeks time if anything odd
is going on (or if anything odd does occur)I’ll make sure to comment back

Good. There is no need to be in a hush to remove things from Chest. They’re safe locked there.

I suggest you to disable System Restore on Windows XP and schedule a boot time scanning with avast. Start avast! > Right click the skin > Schedule a boot-time scanning. Select for scanning archives. Boot. After that, you can enable System Restore again.