Windows Help
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me

The Shed is going Social! Join us on FaceBook and Twitter and chime in on the conversation.

Go Back   Dev Shed ForumsOperating SystemsWindows Help

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old April 24th, 2011, 07:41 PM
crward crward is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Oct 2004
Posts: 50 crward User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 8 h 4 m 26 sec
Reputation Power: 9
Can you tell me what file this is?

When doing a search of the hard disk, I noticed some old (apparently browsing/file access data) in what appears to be a rather large file that I can't delete by any other method I have tried thus far. I'm wondering if anyone recognizes the pattern in this file so I can track it down. I'm thinking it may be an operating system file because attempts to modify it as an administrator were blocked from a low level modification.

In any event, here is an image of the repeating pattern:

The main repeating pattern is a URL or file on the computer followed by the $ and what appears to be a class id (32 hexadecimal characters) and the strange 'O's seem to be dividers between items. As I said, the file seems rather large as well. Does anyone have any idea what this file is?

Reply With Quote
  #2  
Old April 25th, 2011, 09:55 AM
Lokesh1996 Lokesh1996 is offline
Contributing User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Feb 2011
Posts: 98 Lokesh1996 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 23 h 18 m 15 sec
Reputation Power: 0
Well.. it think you should leave the file alone if its not doing any significant damage....however it could be some sort of malware. I am not sure what sort of a file this can be

btw have you tried running antivirus scans on it???

Reply With Quote
  #3  
Old April 25th, 2011, 09:31 PM
Doug G Doug G is offline
Grumpier Old Moderator
Dev Shed God 19th Plane (14000 - 14499 posts)
 
Join Date: Jun 2003
Posts: 14,239 Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level)Doug G User rank is General 52nd Grade (Above 100000 Reputation Level) 
Time spent in forums: 1 Month 4 Weeks 15 h 17 m
Reputation Power: 4445
You didn't mention the file name and directory location.
__________________
======
Doug G
======
It is a truism of American politics that no man who can win an election deserves to. --Trevanian, from the novel Shibumi

Reply With Quote
  #4  
Old April 26th, 2011, 10:43 AM
AdamPI's Avatar
AdamPI AdamPI is offline
Automagically Delicious
Dev Shed Regular (2000 - 2499 posts)
 
Join Date: May 2004
Location: 127.0.0.2 - I live next door.
Posts: 2,198 AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level)AdamPI User rank is General 26th Grade (Above 100000 Reputation Level) 
Time spent in forums: 3 Weeks 6 Days 22 h 13 m 56 sec
Reputation Power: 2735
It looks like it's somehow tied with the Kakpersky program. I'd still want to see the full file name including the directory location.
__________________
Adam TT

Reply With Quote
  #5  
Old May 10th, 2011, 01:25 AM
FarNorth FarNorth is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: May 2011
Location: Brisbane Australia
Posts: 14 FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level)FarNorth User rank is Second Lieutenant (5000 - 10000 Reputation Level) 
Time spent in forums: 1 h 55 m 56 sec
Reputation Power: 0
It is a CIA file, you can never delete it, don't bother trying, we see your every mover mother ****er.

Reply With Quote
  #6  
Old May 18th, 2011, 03:19 PM
Jekori Jekori is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Apr 2011
Posts: 4 Jekori User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 16 m 58 sec
Reputation Power: 0
I think it is a virus delete it.

Reply With Quote
Reply

Viewing: Dev Shed ForumsOperating SystemsWindows Help > Can you tell me what file this is?

Developer Shed Advertisers and Affiliates



Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 


Powered by: vBulletin Version 3.0.5
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.

© 2003-2013 by Developer Shed. All rights reserved. DS Cluster - Follow our Sitemap