Hi everyone,
I'm running Vista 64 bit, all available updates, UAC enabled. I regularly scan my system with Spybot/Malwarebytes/AVG Free. I just plugged my month-old thumb drive into my computer and got an error that read: "win32.exe has stopped working." Perplexed, I googled it and found it's some sort of Trojan. Here's the best site I found:
WIN32.EXE, Prevx
At any rate, I was quite surprised when I couldn't find win32.exe on my task manager, even when I opted to show SYSTEM processes. I ran a search for it, including hidden and system files, and didn't find anything. Ran all my malware detection programs and didn't get any matches.
Feeling defeated, I restarted my system hoping to catch a glimpse of win32.exe in my task manager but it was also a no-go. Out of curiosity, I plugged in my thumb drive and got the same error message: win32.exe has stopped working, yadda yadda. I opened my task manager and finally saw it. When I right-clicked and asked task manager to "Open File Location," nothing happened. I selected "Properties" instead and found that win32.exe was actually "running" from my thumb drive!
E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013
I tried to find the folder in question, with hidden files visible, but it just didn't exist. I'm beyond confused at the moment and am hoping one of you can help me out with some questions:
1. How the heck did a virus get onto my thumb drive?
2. How is this .exe attempting to run without my clicking on it?
3. How can it be attempting to run when it doesn't seem to exist?
4. Is my thumb drive still "infected" / is my computer now infected?
I got the thumb drive for free when I took a LexisNexis (legal database) orientation course at my law school -- it was a gift from the company itself, came in a fancy case, etc. I use it when I'm at school to transfer files between my Mac laptop and the school PCs/friends' PCs. I doubt the virus came from my Mac, as it can't even run executables...
Any help would be GREATLY appreciated!
I'm running Vista 64 bit, all available updates, UAC enabled. I regularly scan my system with Spybot/Malwarebytes/AVG Free. I just plugged my month-old thumb drive into my computer and got an error that read: "win32.exe has stopped working." Perplexed, I googled it and found it's some sort of Trojan. Here's the best site I found:
WIN32.EXE, Prevx
At any rate, I was quite surprised when I couldn't find win32.exe on my task manager, even when I opted to show SYSTEM processes. I ran a search for it, including hidden and system files, and didn't find anything. Ran all my malware detection programs and didn't get any matches.
Feeling defeated, I restarted my system hoping to catch a glimpse of win32.exe in my task manager but it was also a no-go. Out of curiosity, I plugged in my thumb drive and got the same error message: win32.exe has stopped working, yadda yadda. I opened my task manager and finally saw it. When I right-clicked and asked task manager to "Open File Location," nothing happened. I selected "Properties" instead and found that win32.exe was actually "running" from my thumb drive!
E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013
I tried to find the folder in question, with hidden files visible, but it just didn't exist. I'm beyond confused at the moment and am hoping one of you can help me out with some questions:
1. How the heck did a virus get onto my thumb drive?
2. How is this .exe attempting to run without my clicking on it?
3. How can it be attempting to run when it doesn't seem to exist?
4. Is my thumb drive still "infected" / is my computer now infected?
I got the thumb drive for free when I took a LexisNexis (legal database) orientation course at my law school -- it was a gift from the company itself, came in a fancy case, etc. I use it when I'm at school to transfer files between my Mac laptop and the school PCs/friends' PCs. I doubt the virus came from my Mac, as it can't even run executables...
Any help would be GREATLY appreciated!