Ok, today my Norton anti-virus told me I needed to restart to remove a threat, so I did. It says it was a "Backdoor Tidserv". I've tried Googling it, but found nothing, so please refrain from telling me to Google it/telling me Norton sucks. The file name was b3b7.tmp, and the treat name was "Backdoor.Tideserv". The infected files that were removed were: c:\programdata\microsoft\windows\drm\b3b7.tmp and c:\programdata\microsoft\windows\drm\b3b8.tmp . Any ideas on what these are/ where they came from is greatly appreciated so I can avoid them in the future. Thanks!
-
Edited by FatherlyNick: 1/21/2013 2:27:58 AMI would recommend getting the necessary tools for scanning/removing stuff like that. Go offline and start cleaning up your system. Make sure your PC has no access to ANY network, Local intranet, internet, any sort of NAT - nothing. This is to minimise the spread, a sort of quaranteen if you will. now when your machine is on quaranteen, perform the necesarry scans for threats and remove them and any traits for them, try and recall the source of where the infection was gotten and block that site using your browser. In future if you notive something fishy going on with your PC, quakly (and i mean quickly) disconnect it from all networks, pull the damn ethernet cable, do whatever you can to get your PC isolated.