up today, sunday, 4.8.07. I HAVE HAD A COUPLE OF "CHANGED" SYSTEM 32 FILES show up when i
run avg, so it may be related or not.
i simply cannot find information on any of this zonealarm security alert, what it pertains to, what it
does, etc. i am the wireless home administrator of two computers and a printer, with file and printer
sharing. i run windows xp pro SP2 on the desktop, and the laptop runs windows xp home SP2. both have
zone alarm and avg (free) antivirus loaded.
i use mozilla firefox as a browser. i have a few toolbars installed onto my own admin account, but not all
on the limited user account. the ones that i use are:
firefox
microsoft custom links
yahoo
stumbleupon
the google search and a search here does not reveal what this means:
(a red zonealarm alert upon reboot):
SUSPICIOUS BEHAVIOR
selfextr MFC Application is trying to launch
C:\WINDOWS\system32\extrac32.exe, or use another program to gain access to privileged
resources.
Application: RELEASE_01_3062.EXE
Properties: version 1.0.1.11
description: selfextr MFC application
copyright: 2006 Gteko Ltd.
is this a part of the google desktop application? is it part of google? google search did not return
anything.
i am going to DENY it access as of now, but i need to know what it is in trying to fix a problem
with RAM memory that shows up on my limited user (patti, my assistant) account, yet, it has a
green dot within the zonealarm program list!
this is what i see on patti's limited logon, even if i shut down my own google desktop:
Google desktop problem. could not update database. there may not be enough free space on
the drive or another program may be locking up the database. free up disk space or try uninstalling
and reinstalling google desktop. D 800700 20 5.1.10634 (showing on the desktop only).
after i had installed firefox and the google desktop bar that i use, i noticed, upon running an
antivirus scan using AVG free antivirus (the best), that two files are now CHANGED:
FILE: user32.dll and
FILE: ntoskrnl.exe
they just are CHANGED, and AVG does not show them as infected, so i don't understand
what "changed" refers to.
they are both inside of this path:
C:\WINDOWS\system32\filename above
i didn't find anything to help me figure out why these system32 files are showing up as changed
when i performed google search. it just doesn't make any sense to me.
i have to do an introduction, sorry.
please, please, please help me! Because i DARE NOT reconfigure the wireless laptop until i
know what this means and how it affects the WINDOWS registry.
i do not use any registry cleaner and don't trust them at all. i do not know how to fix my own
registry and am scared to do anything with it.
PLEASE HELP ME!!!
sincerely, kikki
i am just rebooting today on the desktop
