Hi all
found this “Secretive Life.exe” process running (a service, local system acct) with no ownership information, and the exe was in “~user\appdata\roaming\Secretive Life”.
No idea what this is, shredded the exe and deleted the service using CS command. Have kept the exe (compressed it into a rar) incase it can be uploaded for investigation - AVAST, do you accept uploads for this purpose?
Can’t find anything in the registry on a simple search, but not sure how to check thoroughly.
Looked suspicious, anyone have any ideas what it is?
Thanks for the advice. Link to results provided above. Not sure how bad the results are though. I guess it shouldn’t show up in the results in this way but hard to say if there’s really something wrong with it. Remains highly suspicious though with that name.