![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| General Computer Security Get Help With System Security - This forum is not for malware removal assistance. For malware removal assistance, read the sticky topic at the top of the Virus/Trojan/Spyware Help forum, or the "First Steps" link at the top right of each page. |
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
|
Well, I just recently bought something online, and then 1 - 2 minutes later it said Malware found ( adware.drivercleaner06.exe something like that ). And I'm really concerned if this is adware can track my Credit Card.
So any help, My info I know so far is It's Adware. So I'm wondering if this adware is like a keylogger or etc. Thanks :) |
|
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#3 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 19
OS: Win XP
|
The filename you mention immediately points toward an infection known as "Drive Cleaner". This is yet another one of these "fake" security programs that state they are able to clean a supposedly infected PC, when in fact they will instead fill your machine with malware. Here's some info on this infection which states it is capable of the following:
"Creates multiple copies of the Malicious infection on your PC. Creates registry run keys to ensure it is restarted every time you boot your PC. Installs other malicious programs. Examines which processes are running on your PC allowing it to explore vulnerabilities in Windows and your antivirus and anti-spyware products. Modifies the HostsFile which could stop your antivirus or anti-spyware protection or put your personal information at risk. Connects with 3rd party computer systems and forwards data via the internet. Modifies The Windows System Restore Area. Hijacks other processes." From here: http://virusinfo.prevx.com/viruscent...GRP=4871600019 No keylogging capabilities by the sound of it, but I guess it's still best practise to change any passwords, etc? |
|
|
|
|
|
#4 (permalink) |
|
Registered User
|
Thanks Cricket I got it removed.
Is there anyone who knows more information about these adwares? Adware.Drivecleaner Adware.Trymedia Adware.WinFixer I scanned for malware traces ( AVG Anti-Spyware 7.5 ) 2 times before i typed the credit card in, and it said nothing found. And I'm running Zone Alarm PRO so wouldn't it ask to record/etc? I really want to know this info if this adware can record keystrokes etc. |
|
|
|
|
|
#5 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 19
OS: Win XP
|
The DriverCleaner and TryMedia infections don't have keylogging capabilities (as far as I'm aware), BUT WinFixer supposedly does:
"Opens and scans your email address book . Has a keylogger that can spy on and log keystrokes without your knowldege or permission. Modifies Internet Browser Settings:(HomePage,Search,Toolbar). Changes file type execution and program maps. Creates multiple copies of the Adware infection on your PC. Creates registry run keys to ensure it is restarted every time you boot your PC. Installs other malicious programs. Examines which processes are running on your PC allowing it to explore vulnerabilities in Windows and your antivirus and anti-spyware products. Connects with 3rd party computer systems and forwards data via the internet. Modifies The Windows System Restore Area. Hijacks other processes." From here: http://virusinfo.prevx.com/viruscent...GRP=4745300015 Now the infections have been removed you should immediately change any online passwords (especially any online banking sites, etc). |
|
|
|
|
|
#6 (permalink) |
|
Registered User
|
But it creates registry to log or boot.
So I scanned a couple times before I entered something and it said nothing found though.. :/.. Should I call up the Credit card company and ask for a new credit card *sigh*.. Thanks for his help cricket. Last edited by DylanO; 02-06-2007 at 03:49 PM. |
|
|
|
![]() |
| Thread Tools | |
|
|