Computer Security & Viruses/a few questions
Expert: Doug Woodall - 8/28/2008
QuestionQUESTION: Hi Doug,
First, I want you to know that I really appreciate your time and efforts responding to my questions. I hope you do not mind me combining a few questions within the same email (if you don't have the time then a response to question #1 would be greatly appreciated).
(1) I just installed ThreatFire (from PC Tools) and when I ran the first scan it alerted me to the fact that I had a trojan (specifically Adware.Agent.DUCT). I had the option to put it in quarantine so that's what I did...so ThreatFire quarantined a file and a Registry Key. The specific file was located in "Downloaded Program Files" within Windows. The .exe file that was quarantined is "imloader.exe". I tried doing some research on "imloader" and from what I understand it's part of the Incredimail application....however, I gather, that some say it may not be and therefore should be deleted. All seems to work fine on my PC with this in quarantine (including Incredimail) ---EXCEPT--- since putting this in quarantine, I have tried to download the Avant Browser and also Registry Mechanic from PC Tools (for a trial period). I had problems with both downloads and therefore installation failed. Not the same error message for both. MY QUESTION is: given my details above, is "imloader" required for downloading products like Avant Browser or PC Tools products (like Registry Mechanic) or can I safely delete these two items from my quarantine?
(2) I currently use Hauri ViRobot Desktop 5.5 in combination with ThreatFire (free version) for my antivirus protection. I also have the free version of ZoneAlarm installed and I frequently also scan for spyware/adware with Ad-Aware from Lavasoft. I also have a D-Linx Router because I have 2 computers. I feel all this adds up to very good protection. Do you agree?
(3) For other general PC health I frequently use CCleaner and System Mechanic 6. What do you think of these two products?
(4) Is there anythin you would recommend?
Thank you so very much again..I really apreciate your time.
Steen
ANSWER: Hi Steen,
Imloader is not considered to be a pest. I dont know why ThreatFire saw it as being connected with Adware Agent. Adware agent is spyware that comes bundled with SmitFraud.
Its not a trojan. PC tools is probably flagging it as destructive.
I would uninstall Incredimail, first back up your data. Then re-install and see what ThreatFire thinks.
I dont know why it would interfere with dnloads.
Is ZoneAlarm maybe the cause here? Try dnloading CCleaner again and see if it comes thru ok.
Ive never used ThreatFire, but PC Tools make great products.
Heres the link to their Forum
http://www.pctools.com/forum/
ZoneAlarm is a great Firewall, you cant go wrong here.
CCleaner I use myself, nothing better except "Hijack This".
Ive never used Sys Mechanic but Ive seen the last review at cnet and they gave it 3 out of 5 stars.
I would ask the folks at PC Tools Forum in the ThreatFire section if they have any advice. I still dont know what any of this would connect to as far as dnloads.
Hope this helps.
---------- FOLLOW-UP ----------
QUESTION: Thank you Doug, your reply helped. One more question: Is there a major difference in protection level between an antivirus product you have to pay for and one that is offered for free...i.e. is it necessary to pay for good protection or are the free versions you can get equally as good protection? The reason I am asking is that I am currently using Hauri ViRobot Desktop 5.5 on a 30-day trial basis. When that period ends I was wondering if I should purchase the 1-year subscription to it or install the free version of the PC Tools Anti-Virus product and, as mentioned previously, I also have PC Tools ThreatFire (which seems very good by the way).
Thanks again!!
Steen
AnswerHi again Steen,
I dont think so, as far as protection levels, if you know where to get your facts. Avast and AVG are great free products. Users are pleased with their performance or they wouldnt be so widely used.
I use BitDefender right now, which Im paying for. Its a all-in-one which Im tryimg out since Im using Vista on my new lappie.
There are some great review sites out there like toptenreviews.com that have dependable suggestions on whats best.
As you know, we are all of our opinion when it comes to whats the best.
What works well for one may not work well for another.
Its the settings and surfing habits that determine what will work well for each person.
Hope this helps.