Hidden process


Go Back   Computer Help Articles > Windows XP Security Admin
User Name
Password
FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 01-05-2006, 05:07 AM
Keith
 
Posts: n/a
Default Hidden process

Hi All

I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.
I've found the .exe somewhere on my system drive but it won't allow me to delete it and therefore I believe it is actively running.
Any suggestion on what tools can allow me to view those hidden processes as Task Manager won't do the job.

Thanks




Reply With Quote
  #2  
Old 01-05-2006, 05:07 AM
Panda_man
 
Posts: n/a
Default RE: Hidden process

Well ...I think you can't just suppose because it can be legit process and if
you are not an expert you'd better do another thing first.

Scan with these reputable software and online scanners:
Be sure you have updated the softwares:


@ Ad-Aware SE Personal
http://www.lavasoftusa.com/software/adaware


@ Microsoft Antispyware (only for people with genuie-legal Windows )
http://www.microsoft.com/athome/secu...e/default.mspx


http://www.pandasoftware.com/product..._principal.htm
Panda Software free Active Scan,where you can check your
PC for ALL TYPES of security threats and clean viruses and worms


At the end do not first delete the EXE but submit it to Virus Total and then
post the report here:
http://www.virustotal.com/flash/index_en.html

Send a suspicious file for analyze to VirusTotal
They will scan it for malware with almost all antivirus softwares with the
latest definitions
and then will send you the report.The service is FREE .
If something is suspicious they will send the file to all antivirus
companies so that
they will establish signatures for disinfecting the malware.



Panda_man
--
Prevention is always better than cure !
Panda TruPrevent - the most intelligent technology to combat unknown malware
http://www.pandasoftware.com
http://www.microsoft.com/protect



"Keith" wrote:

> Hi All
>
> I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.
> I've found the .exe somewhere on my system drive but it won't allow me to delete it and therefore I believe it is actively running.
> Any suggestion on what tools can allow me to view those hidden processes as Task Manager won't do the job.
>
> Thanks
>
>
>
>
>

Reply With Quote
  #3  
Old 01-05-2006, 05:07 AM
Victor Huang
 
Posts: n/a
Default Re: Hidden process

Hi, Panda_man
You can try to delete the .exe in save mode, but you'd better backup first.
Victor

"Panda_man" <Pandaman@discussions.microsoft.com> 写入消息新闻:15F37AC6-9E04-4E16-9F23-64524F2E25EB@microsoft.com...
> Well ...I think you can't just suppose because it can be legit process and
> if
> you are not an expert you'd better do another thing first.
>
> Scan with these reputable software and online scanners:
> Be sure you have updated the softwares:
>
>
> @ Ad-Aware SE Personal
> http://www.lavasoftusa.com/software/adaware
>
>
> @ Microsoft Antispyware (only for people with genuie-legal Windows )
> http://www.microsoft.com/athome/secu...e/default.mspx
>
>
> http://www.pandasoftware.com/product..._principal.htm
> Panda Software free Active Scan,where you can check your
> PC for ALL TYPES of security threats and clean viruses and worms
>
>
> At the end do not first delete the EXE but submit it to Virus Total and
> then
> post the report here:
> http://www.virustotal.com/flash/index_en.html
>
> Send a suspicious file for analyze to VirusTotal
> They will scan it for malware with almost all antivirus softwares with the
> latest definitions
> and then will send you the report.The service is FREE .
> If something is suspicious they will send the file to all antivirus
> companies so that
> they will establish signatures for disinfecting the malware.
>
>
>
> Panda_man
> --
> Prevention is always better than cure !
> Panda TruPrevent - the most intelligent technology to combat unknown
> malware
> http://www.pandasoftware.com
> http://www.microsoft.com/protect
>
>
>
> "Keith" wrote:
>
>> Hi All
>>
>> I believed there are some ad-ware hidden processes running on my PC with
>> I was not able to remove it with some adware programs.
>> I've found the .exe somewhere on my system drive but it won't allow me to
>> delete it and therefore I believe it is actively running.
>> Any suggestion on what tools can allow me to view those hidden processes
>> as Task Manager won't do the job.
>>
>> Thanks
>>
>>
>>
>>
>>



Reply With Quote
  #4  
Old 01-05-2006, 05:07 AM
Keith
 
Posts: n/a
Default Re: Hidden process

Well... let me put it this way, I am quite sure it's a illegal process instead of a legal windows process
I remember there is a task manager like application which can let you view all processes including hidden process not visible by
Task Manager. does anyone know the tool name ?

Thanks


"Panda_man" <Pandaman@discussions.microsoft.com> wrote in message news:15F37AC6-9E04-4E16-9F23-64524F2E25EB@microsoft.com...
> Well ...I think you can't just suppose because it can be legit process and if
> you are not an expert you'd better do another thing first.
>
> Scan with these reputable software and online scanners:
> Be sure you have updated the softwares:
>
>
> @ Ad-Aware SE Personal
> http://www.lavasoftusa.com/software/adaware
>
>
> @ Microsoft Antispyware (only for people with genuie-legal Windows )
> http://www.microsoft.com/athome/secu...e/default.mspx
>
>
> http://www.pandasoftware.com/product..._principal.htm
> Panda Software free Active Scan,where you can check your
> PC for ALL TYPES of security threats and clean viruses and worms
>
>
> At the end do not first delete the EXE but submit it to Virus Total and then
> post the report here:
> http://www.virustotal.com/flash/index_en.html
>
> Send a suspicious file for analyze to VirusTotal
> They will scan it for malware with almost all antivirus softwares with the
> latest definitions
> and then will send you the report.The service is FREE .
> If something is suspicious they will send the file to all antivirus
> companies so that
> they will establish signatures for disinfecting the malware.
>
>
>
> Panda_man
> --
> Prevention is always better than cure !
> Panda TruPrevent - the most intelligent technology to combat unknown malware
> http://www.pandasoftware.com
> http://www.microsoft.com/protect
>
>
>
> "Keith" wrote:
>
>> Hi All
>>
>> I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.
>> I've found the .exe somewhere on my system drive but it won't allow me to delete it and therefore I believe it is actively
>> running.
>> Any suggestion on what tools can allow me to view those hidden processes as Task Manager won't do the job.
>>
>> Thanks
>>
>>
>>
>>
>>



Reply With Quote
  #5  
Old 01-05-2006, 05:07 AM
Panda_man
 
Posts: n/a
Default Re: Hidden process

Could you please read carefully my first post !!!
< Special look on the last sentece before my nickname>

Thank you !


Panda_man
--
Prevention is always better than cure !
Panda TruPrevent - the most intelligent technology to combat unknown malware
http://www.pandasoftware.com
http://www.microsoft.com/protect


"Keith" wrote:

> Well... let me put it this way, I am quite sure it's a illegal process instead of a legal windows process
> I remember there is a task manager like application which can let you view all processes including hidden process not visible by
> Task Manager. does anyone know the tool name ?
>
> Thanks
>
>
> "Panda_man" <Pandaman@discussions.microsoft.com> wrote in message news:15F37AC6-9E04-4E16-9F23-64524F2E25EB@microsoft.com...
> > Well ...I think you can't just suppose because it can be legit process and if
> > you are not an expert you'd better do another thing first.
> >
> > Scan with these reputable software and online scanners:
> > Be sure you have updated the softwares:
> >
> >
> > @ Ad-Aware SE Personal
> > http://www.lavasoftusa.com/software/adaware
> >
> >
> > @ Microsoft Antispyware (only for people with genuie-legal Windows )
> > http://www.microsoft.com/athome/secu...e/default.mspx
> >
> >
> > http://www.pandasoftware.com/product..._principal.htm
> > Panda Software free Active Scan,where you can check your
> > PC for ALL TYPES of security threats and clean viruses and worms
> >
> >
> > At the end do not first delete the EXE but submit it to Virus Total and then
> > post the report here:
> > http://www.virustotal.com/flash/index_en.html
> >
> > Send a suspicious file for analyze to VirusTotal
> > They will scan it for malware with almost all antivirus softwares with the
> > latest definitions
> > and then will send you the report.The service is FREE .
> > If something is suspicious they will send the file to all antivirus
> > companies so that
> > they will establish signatures for disinfecting the malware.
> >
> >
> >
> > Panda_man
> > --
> > Prevention is always better than cure !
> > Panda TruPrevent - the most intelligent technology to combat unknown malware
> > http://www.pandasoftware.com
> > http://www.microsoft.com/protect
> >
> >
> >
> > "Keith" wrote:
> >
> >> Hi All
> >>
> >> I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.
> >> I've found the .exe somewhere on my system drive but it won't allow me to delete it and therefore I believe it is actively
> >> running.
> >> Any suggestion on what tools can allow me to view those hidden processes as Task Manager won't do the job.
> >>
> >> Thanks
> >>
> >>
> >>
> >>
> >>

>
>
>

Reply With Quote
  #6  
Old 01-05-2006, 05:07 AM
Panda_man
 
Posts: n/a
Default Re: Hidden process

And in your first post you also mention that :

> I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.



Panda_man >> What exactly have you done?What did you scan with?
What did you found???

If nothing was found I think you need to relax.Otherwise ,install free
30-day trial of Panda TruPrevent personal 2006

What is TruPrevent

http://www.pandasoftware.com/virus_info/truprevent.htm
http://www.pandasecurity.com/ICSARep...Evaluation.PDF



Panda_man
--
Prevention is always better than cure !
Panda TruPrevent - the most intelligent technology to combat unknown malware
http://www.pandasoftware.com
http://www.microsoft.com/protect




Reply With Quote
  #7  
Old 01-05-2006, 05:07 AM
Panda_man
 
Posts: n/a
Default Re: Hidden process

http://www.pandasoftware.com/product...rsonal2006.htm
--
Prevention is always better than cure !
Panda TruPrevent - the most intelligent technology to combat unknown malware
http://www.pandasoftware.com
http://www.microsoft.com/protect


"Panda_man" wrote:

> And in your first post you also mention that :
>
> > I believed there are some ad-ware hidden processes running on my PC with I was not able to remove it with some adware programs.

>
>
> Panda_man >> What exactly have you done?What did you scan with?
> What did you found???
>
> If nothing was found I think you need to relax.Otherwise ,install free
> 30-day trial of Panda TruPrevent personal 2006
>
> What is TruPrevent
>
> http://www.pandasoftware.com/virus_info/truprevent.htm
> http://www.pandasecurity.com/ICSARep...Evaluation.PDF
>
>
>
> Panda_man
> --
> Prevention is always better than cure !
> Panda TruPrevent - the most intelligent technology to combat unknown malware
> http://www.pandasoftware.com
> http://www.microsoft.com/protect
>
>
>
>

Reply With Quote
  #8  
Old 01-05-2006, 05:07 AM
Robert Moir
 
Posts: n/a
Default Re: Hidden process

Keith wrote:
> Well... let me put it this way, I am quite sure it's a illegal
> process instead of a legal windows process I remember there is a task
> manager like application which can let you view all processes
> including hidden process not visible by Task Manager. does anyone
> know the tool name ?


view
http://www.sysinternals.com/Utilitie...sExplorer.html

kill ones you don't like
http://www.sysinternals.com/Utilities/PsKill.html

Just out of interest, why are you so sure its an "illegal" process when you
don't appear to know very much about the file in question?


--
--
Rob Moir
Website - http://www.robertmoir.co.uk
Virtual PC 2004 FAQ - http://www.robertmoir.co.uk/win/VirtualPC2004FAQ.html
Kazaa - Software update services for your Viruses and Spyware.


Reply With Quote
  #9  
Old 01-05-2006, 05:07 AM
Mike Hall \(MS-MVP\)
 
Posts: n/a
Default Re: Hidden process

Keith

Try the 15 day full trial of Ewido Suite, or do their online scan.. the
online scan warns that beta stuff can screw up a system, but I have found
that it works quite well..

The Ewido Suite is well worth the money if you decide to purchase it..

http://www.ewido.net/en/

--
Mike Hall
MVP - Windows Shell/User


"Keith" <keith@home.com> wrote in message
news:OMF2HweCGHA.1288@TK2MSFTNGP09.phx.gbl...
> Hi All
>
> I believed there are some ad-ware hidden processes running on my PC with I
> was not able to remove it with some adware programs. I've found the .exe
> somewhere on my system drive but it won't allow me to delete it and
> therefore I believe it is actively running. Any suggestion on what tools
> can allow me to view those hidden processes as Task Manager won't do the
> job.
>
> Thanks
>
>
>
>



Reply With Quote
  #10  
Old 01-05-2006, 05:07 AM
Steven L Umbach
 
Posts: n/a
Default Re: Hidden process

Just because you can not delete it does not mean that it is a running
process as you may not have delete permissions to the file. There are more
advanced tools such as Process Explorer form SysInternals to view running
processes or in the case of a root kit you should view the processes
remotely from another computer on the network which msinfo32 can do by
selecting view remote computer assuming you are an administrator on the
remote computer. If it indeed is running as a process booting intop Safe
Mode may allow deletion though for most users you are better off using
malware or spyware detection and removal tool to do the job and also using
them in Safe Mode being sure they are current with the latest definition
files. -- Steve


"Keith" <keith@home.com> wrote in message
news:OMF2HweCGHA.1288@TK2MSFTNGP09.phx.gbl...
> Hi All
>
> I believed there are some ad-ware hidden processes running on my PC with I
> was not able to remove it with some adware programs. I've found the .exe
> somewhere on my system drive but it won't allow me to delete it and
> therefore I believe it is actively running. Any suggestion on what tools
> can allow me to view those hidden processes as Task Manager won't do the
> job.
>
> Thanks
>
>
>
>



Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Hijack problem Tom B. Windows XP Security Admin 7 01-05-2006 05:44 AM
Do I have a worm OR virus...computer going very slow and ... writer Windows XP Security Admin 17 01-05-2006 05:39 AM
winfixer infection Robert Windows XP Security Admin 7 01-05-2006 05:07 AM
EGroup.IEAccess.C (dialer) dtcar Windows XP Help and Support 22 01-05-2006 02:41 AM
Have results from Hijackthis. Don't understand them!!! 1st half StanStan Windows XP General 15 01-05-2006 02:36 AM


All times are GMT. The time now is 08:59 AM.


Powered by vBulletin Version 3.5.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd. SEO by vBSEO 2.3.2 © 2005, Crawlability, Inc.

Hidden process