This HP Community is for Customer to Customer Product Support. First Time Here? Check Out Videos on How to Search, Register, Post and More.

Firewall breached and spyware injected onto laptop (126 Views)
Reply
Student
Sawyer123
Posts: 1
Registered: ‎04-04-2012
Message 1 of 1 (126 Views)

Firewall breached and spyware injected onto laptop

Hey new member, just posting on here to ask how do I not only get rid of the spyware/malware that has been put onto my system32 files, but also to stop whoever it is accessing my laptop remotely.

 

I'll start with the infection. Recently my Norton antivirus ran out, and I replaced it with AVG because I needed a bit more money for something else. Then ever since, upon logging in on startup random programs open and I get messages saying other programs need to be updated. Then whenever I use sites that require passwords, I will log in like normal and click 'Keep me signed in', but upon leaving the site and returning to it I have to re-enter the password, and this happens to all sites that require passwords even though I previously chose to stay signed in when I came back to it. I assume this is a keylogger? Today as well I was given a notification that Windows Live Messenger was trying to access my webcam, even though I wasn't signed into it. I have used different anti-virus, anti-malware and anti-spyware programs to try and get rid of this, but all have failed. One program did tell me it was unable to scan the system32, and I couldn't even quarantine that file or anything.

 

Secondly, on network connections earlier, it said I was connected to 'NETGEAR' as well as my own home network at the same time, this means someone is accessing this from some place wherever right? I later went on network settings and tried to disable the Netgear router, and it didn't let me, then I saw that it was using something called 'Toledo' on about eight different counts. I then went on firewall settings and there's a massive list of things going inbound and outbound, including stuff that says the remote address is a 'Local subnet' on ICMPv6 including stuff about sharing my activity?

 

So I'm wondering how the hell do I get rid of all this? Thanks!

Please use plain text.