Subscribe to groovyPost.com

main.exe spyware????

Security Questions, Tips, etc...

main.exe spyware????

Postby Carl » Thu Apr 02, 2009 1:00 am

http://www.spywareremove.com/removemainexe.html
I was checking processes in my task master and googled it. The above link was found when I googled main.exe. They claim that this is a malicious spy-ware and that I should remove it.
I use McAfee and Super Antispyware. So far been lucky and no viruses ect. I am just interested to speed up my machine and to get rid of processes and applications that is not needed. A bit worried now about this main.exe. Any advice please will be appreciated. :roll: :?:
Carl
Mildly Groovy
 
Posts: 46
Joined: Mon Nov 24, 2008 9:45 pm

Re: main.exe spyware????

Postby shockersh » Thu Apr 02, 2009 7:25 am

Dude that just STINKS of spyware/trojan.

Where is it located? Did you see it in process manager? How did you know it was there?

Here's a few links:

http://www.file.net/process/main.exe.html
http://www.threatexpert.com/files/main.exe.html

My advice, just rename the file and see what/if anything breaks. This is windows remember so worst case you can always nuke it and reinstall anything that breaks. no harm no foul.
User avatar
shockersh
Groove Master
 
Posts: 230
Joined: Mon Sep 01, 2008 7:57 am
Location: San Francisco, CA

Re: main.exe spyware????

Postby Joseph » Wed Apr 08, 2009 4:29 pm

You can also use SYS internals and use process explorer to track down the process and that .exe that is driving it. That being said, just move or rename the file and see what breaks.
Joseph
Groovy Contributor
 
Posts: 61
Joined: Sun Jan 04, 2009 8:09 am
Location: USA

Re: main.exe spyware????

Postby grooveDexter » Thu Apr 16, 2009 10:59 am

That is very very likely spyware. I pulled up info and it shows Adware.2search and spycop software. And no positive results for harmless applications, doesn't look good. You'll need to try erasing it along with the startup registry entries and any harmful dlls it might have thrown into windows\system32.
Call me paranoid but it would also be a good idea to figure out what date the file was created and then do a search (include system and hidden files) do a search for files that were created or modified also on that date. Check if there were any other peculiar/suspicious items on your system that day. If there were it'd be good to invesigate those as well.
User avatar
grooveDexter
Groovy Contributor
 
Posts: 87
Joined: Sat Sep 29, 2007 4:10 pm
Location: groovyPost


Return to Security



Who is online

Users browsing this forum: No registered users and 1 guest