Jump to content

Is someone able to monitor my computer


Recommended Posts

Hi,

I used ooVoo chat the other day and video chatted with my GF. Now I am afraid (just suspecting) that the chat can have been recorded somehow, maybe I am just paranoid.

Straight after I scanned using Microsoft Security Essentials (installed since Windows was installed). Nothing found.

I ran malwarebyte after that and then superantispyware. Is there any of the found threats that can have allowed someone to see my screen or in any other way recorded the chat?

After these two I ran the ESET online scan and nothing was found.

I also have windows firewall on and running Windows Security Essentials. (Always have been using these)

From Malwarebyte:

Malwarebytes Anti-Malware (Trial) 1.75.0.1300

www.malwarebytes.org

Database Version: v2013.04.21.01

Windows 7 Service Pack 1 x86 NTFS

Internet Explorer 9.0.8112.16421

Protection: Enabled

2013-04-21 07:00:09

mbam-log-2013-04-21 (07-00-09). txt

Scan type: Full Scan (C: \ |)

Activated scan options: Memory | Home | Register | File System | Heuristics / Extra | Heuristics / Shuriken | PUP | PUM

Inactivated scan options: P2P

Objects scanned: 326833

Elapsed time: 1 hour (s), 30 minutes (s), 32 second (s)

Detected memory processes: 0

(No malicious items detected)

Memory Modules Detected: 0

(No malicious items detected)

Detected registry keys: 0

(No malicious items detected)

Detected registry values: 0

(No malicious items detected)

Registry Data Items Detected: 0

(No malicious items detected)

Detected folders: 0

(No malicious items detected)

Detected files: 1

C: \ Users \ Mohsin \ AppData \ Local \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ NSSB1O2I \ WORLD_21_target_5830. [1] exe (PUP.Adware.Agent) -> No action.

I deleted the above file and clean the cache and temp files using ccleaner.

From Superantispyware

Just realized that CCleaner removed the logs, but I know it found the following:

Adware.somoto (file was a vlc install file) (from a year ago)

trojan.agent\genclickdownload (file was an .exe fiile (jim_collins_good_to_great.exe) (file was created, changed 21 April 2012 acc. to windows)

These were also deleted.

I have after that scanned the computer will Security Essential, malwarebyte, Superantispyware, Eset Online, Kasperskys Online and no threats whatsoever. The thing I am worried about is before I did the clean.

Thank you in advance.

Link to post
Share on other sites

Hi

Thank you very much for your quick response. Just some follow-up questions and I won't bother you more.

1) so from what you say the above mentioned scenario is not anything to worry about. That someone except the two of us might have recorded the chat?

2) no threat even if was a trojan found? Tried to find some info about it but couldnt find much.

3) Do I need to check anything else to make sure system is clean or is what I've done enough? Also scanned with adaware and no threats.

Link to post
Share on other sites

1) so from what you say the above mentioned scenario is not anything to worry about. That someone except the two of us might have recorded the chat?

Not based on what I see

2) no threat even if was a trojan found? Tried to find some info about it but couldnt find much.

Not based on what you posted

3) Do I need to check anything else to make sure system is clean or is what I've done enough? Also scanned with adaware and no threats.

Sounds like you ran all the scans and they came up clean....just run this one:

Please download and run RogueKiller 32 Bit to your desktop.

RogueKiller 64 Bit <---use this one for 64 bit systems

Quit all running programs.

For Windows XP, double-click to start.

For Vista or Windows 7-8, do a right-click on the program, select Run as Administrator to start, & when prompted Allow to run.

Click Scan to scan the system.

When the scan completes > Close out the program > Don't Fix anything!

Don't run any other options, they're not all bad!!!!!!!

Post back the report which should be located on your desktop.

(please don't put logs in code or quotes)

MrC

Link to post
Share on other sites

HI,

Thank you!

Ok I will run the scans, currently at work but as soon as I get home.

1) Just another Question. As you are the expert....what are the chances that the Video chat "leaked" and someone else got hands on it. It wasn't recorded by any of us and as I said we used ooVoo with just made account and not our ordinary emails.

She is worried and now she is getting me worried....:(

Link to post
Share on other sites

Alright so here is the log from Roguekiller:

RogueKiller V8.5.4 [Mar 18 2013] by Tigzy

mail : tigzyRK<at>gmail<dot>com

Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/

Website : http://tigzy.geekstogo.com/roguekiller.php

Blog : http://tigzyrk.blogspot.com/

Operating System : Windows 7 (6.1.7601 Service Pack 1) 32 bits version

Started in : Normal mode

User : ** [Admin rights]

Mode : Scan -- Date : 04/23/2013 18:54:03

| ARK || FAK || MBR |

¤¤¤ Bad processes : 0 ¤¤¤

¤¤¤ Registry Entries : 2 ¤¤¤

[HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND

[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤

¤¤¤ HOSTS File: ¤¤¤

--> C:\Windows\system32\drivers\etc\hosts

¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: ST9250827AS ATA Device +++++

--- User ---

[MBR] d1a77fa16ad6974ed81e97c82e44697f

[bSP] eb77f4c54d8f7f3b333068469c63daa9 : Windows 7/8 MBR Code

Partition table:

0 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 63 | Size: 12291 Mo

1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 25174016 | Size: 100 Mo

2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 25378816 | Size: 226082 Mo

User = LL1 ... OK!

User = LL2 ... OK!

Finished : << RKreport[1]_S_04232013_02d1854.txt >>

RKreport[1]_S_04232013_02d1854.txt

Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.