I apologize for making another new topic so shortly after my last one, but this issue pertains to a different system and problem altogether. I hope that is okay.
I was looking for something in the registry of my dad's computer at work, and I found a file that looked suspicious to me.
000 = "backdoor.hupigon.GEN"
In the registry key:
In case it is important, the other items in that key are:
(Default) = (value not set)
001 = "download file"
002 = "beatles wallpaper" (He downloaded a Beatles picture as his desktop, but I haven't a clue where he got it from.)
It is a Dell Dimension 3100 desktop computer, with Windows XP Home Edition and Service Pack 2.
It currently has Norton Antivirus 2006 and Spybot Search & Destroy, both of which have been used regularly for a couple years now.
I also recently downloaded Superantispyware and Malwarebytes on here since they worked so well with my laptop problem at home. I have learned via this site that one shouldn't have too many protection programs running, though, so if you think I should uninstall those two, I will.
I run Spybot nearly every time I come in to work (about 3 times a week) and it generally only finds the odd tracking cookie.
Norton runs on a scheduled scan, at a time when I am not here. Taking a look at the Quarantine list, there are currently 18 items, which I can provide for you if necessary.
I ran Malwarebytes on May 6 and it found 3 instances of Adware.Popcap (which it was able to remove), and then again on May 15, and it found nothing.
I also ran Superantispyware on May 6 and it found "My Way Search Assistant Computers" which had infected 13 items in the registry. They are all currently in quarantine. My next scan on the 15th just found one tracking cookie.
The common link here seems to be the "Search Assistant" as that is the Microsoft folder in which the backdoor.hupigon.GEN file was found.
My dad often uses this computer for eBay so I want to make sure it is safe for him to do so. Any help would be most greatly appreciated!
I should also note, however, that I will not be back into work until Tuesday afternoon so anything that needs to be done on this computer cannot be done until then (I am only here for 15 more minutes).
Edited by KarenCele4511, 16 May 2008 - 06:46 PM.