Recent Topics
Decode manufacture dates on Castrol and Mobil 1
by SpeedyG75VW
12/20/14 01:47 PM
$1/qt at autozone
by UnclePeco
12/20/14 01:46 PM
01 Mercury Sable LS 24V DOHC Duratec what PS Fluid
by spk2000
12/20/14 01:18 PM
2004 PT Cruiser needs 2 transmission pans?!?
by SwedishRider
12/20/14 01:00 PM
Glue gods Help!
by SumpChump
12/20/14 12:27 PM
10W40 in diesel engine.
by krismoriah72
12/20/14 11:53 AM
Please help me find the best T-Case fluid
by dx92beater
12/20/14 11:49 AM
Oil choice for a supercharged coyote?
by kbmag1
12/20/14 10:31 AM
Whining noise from Crown Vic
by synthetic_crazy
12/20/14 10:28 AM
redmax oil smell
by kalmar
12/20/14 10:12 AM
Gripping on Ice Patches, Hwy Speeds, TyreGrip?
by niero
12/20/14 10:01 AM
High fuel usage?
by Throt
12/20/14 09:44 AM
Newest Members
StevenOs, caferacer, Blearyeye, AggiePreacher, novcz
52232 Registered Users
Who's Online
115 registered (01_celica_gt, 4wheeldog, 1foxracing, AandPDan, 1989outlaw, 12 invisible), 1721 Guests and 224 Spiders online.
Key: Admin, Global Mod, Mod
Forum Stats
52232 Members
66 Forums
223700 Topics
3547267 Posts

Max Online: 2862 @ 07/07/14 03:10 PM
Donate to BITOG
Topic Options
#3046590 - 06/26/13 11:28 PM Win32/DownloadAdmin.G---what is it?
Jimmy9190 Offline


Registered: 02/17/07
Posts: 3075
Loc: Clermont, Florida
OK so I was curious and temporarily disabled my MSE and MBAM programs, installed the trial version of ESET Smart Security 6, just to see what it looked like and how it might run on my computer. I recently read good reviews on ESS 6. I did a scan with it and it found this malicious file:

Win32/DownloadAdmin.G

Does anyone here know what this file is and is it harmful? I Googled it and it is said to be some sort of browser re-direct that gets in the back door...I have not been redirected and have not had any sign of any virus activity on my computer. MSE and MBAM Pro have never found any malicious programs here. Back when I had Norton and Avast they never found anything either. So I would be grateful if anyone has any insight on it.

Thanks.
_________________________
Jimmy9190
2001 Dodge Dakota, 3.9 V6, 5-speed manual, 174K
Peak 10W30, Fram PH16


Top
#3046596 - 06/26/13 11:41 PM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
Jimmy9190 Offline


Registered: 02/17/07
Posts: 3075
Loc: Clermont, Florida
I quarantined the file and am about 90% done with a second scan, so far nothing else has been found. That file name does not show up when I look for it in the Windows search box either..
_________________________
Jimmy9190
2001 Dodge Dakota, 3.9 V6, 5-speed manual, 174K
Peak 10W30, Fram PH16


Top
#3046599 - 06/26/13 11:45 PM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
zloveraz Offline


Registered: 04/07/10
Posts: 856
Loc: Plano, TX
_________________________
11 G37S, QSUD, microGreen MG101-7
14 BMW F800GS Adventure

Top
#3046602 - 06/26/13 11:52 PM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
Jimmy9190 Offline


Registered: 02/17/07
Posts: 3075
Loc: Clermont, Florida
Thanks for the reply. It is not showing up in the processes section of task manager either. Does that mean ESET really did get rid of it? I wonder if it comes back on reboot. Looks like no matter what happens I may be buying myself a license for ESET real soon if it is this good at finding bad files..
_________________________
Jimmy9190
2001 Dodge Dakota, 3.9 V6, 5-speed manual, 174K
Peak 10W30, Fram PH16


Top
#3046613 - 06/27/13 12:11 AM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
zloveraz Offline


Registered: 04/07/10
Posts: 856
Loc: Plano, TX
Originally Posted By: Jimmy9190
Thanks for the reply. It is not showing up in the processes section of task manager either. Does that mean ESET really did get rid of it? I wonder if it comes back on reboot. Looks like no matter what happens I may be buying myself a license for ESET real soon if it is this good at finding bad files..


I'm sure ESET killed the process but I would make sure it's out of your registry by following g the instructions on the link I sent you or it might reload the next time your reboot.

I would also make sure your not operating your PC with an admin account, you should use a regular account for day to day operations and when you need to install software, etc you use your "admin" account. Also make sure that User Account Settings are enabled.
_________________________
11 G37S, QSUD, microGreen MG101-7
14 BMW F800GS Adventure

Top
#3046616 - 06/27/13 12:17 AM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
Jimmy9190 Offline


Registered: 02/17/07
Posts: 3075
Loc: Clermont, Florida
I will have to check and see if it needs removing tomorrow. I will check it with CCleaner too. The subsequent ESET scan did not find any malicious files but that does not mean it won't come back on reboot. I always use my regular non-admin account for normal daily use of my computer. I learned about that here and wish I had learned it sooner because I have had some malware problems about 18 months ago. Thanks again for your help.
_________________________
Jimmy9190
2001 Dodge Dakota, 3.9 V6, 5-speed manual, 174K
Peak 10W30, Fram PH16


Top
#3046878 - 06/27/13 08:55 AM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
OVERKILL Offline


Registered: 04/28/08
Posts: 26830
Loc: Ontario, Canada
Originally Posted By: Jimmy9190
Thanks for the reply. It is not showing up in the processes section of task manager either. Does that mean ESET really did get rid of it? I wonder if it comes back on reboot. Looks like no matter what happens I may be buying myself a license for ESET real soon if it is this good at finding bad files..


And this (as well as the fact that ESET's NOD32 program also blocks many malicious sites) is why we have a site license for their product thumbsup
_________________________
Network Engineer
02 Expedition
01 BMW ///M5
06 Charger R/T

Top
#3047574 - 06/27/13 07:09 PM Re: Win32/DownloadAdmin.G---what is it? [Re: Jimmy9190]
Jimmy9190 Offline


Registered: 02/17/07
Posts: 3075
Loc: Clermont, Florida
Well the file did not come back when I rebooted today. I did another scan with ESET this afternoon and it did not find that file or any other problems either. I tried to follow the steps in the removal link but ESET must have killed the file because it is not listed anywhere in my task manager.

Thanks for the help here. I may just keep ESET if the free trial continues to go this well.
_________________________
Jimmy9190
2001 Dodge Dakota, 3.9 V6, 5-speed manual, 174K
Peak 10W30, Fram PH16


Top