Glow-tool.exe

estherw001 Posted messages 2 Status Member -  
 Rastapop -
Hello,
Yesterday my computer was very slow with intense hard drive acceleration noise and a process "glow-tool.exe" that was consuming almost all of the CPU (Windows task manager process window).
The display of my applications was more than slow, and my daily backup time tripled!!!
I performed a thorough Avast scan overnight. 1 threat was found and quarantined this morning (Other Malware-gen [trj].)
Does this ring a bell for anyone, and am I rid of it, or is my computer still "infected"?
Thank you for your answers.

Configuration: Windows XP / Firefox 15.0.1

5 answers

  1. g3n-h@ckm@n
     
    hi, where did he find this trojan malware-g3n? ^^

    --
    ¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
    0
    1. Rastapop
       
      This process belongs to Vidal Expert, and it starts so that Vidal Menu can search for updates online for the latest medication database.
      It runs during the download of this update, and once it is finished, the notification window of Vidal Expert appears in the bottom right corner of the screen.
      This process will run during every update attempt, which is completely normal.
      If you kill it, be aware that it will automatically restart at the next reboot of the workstation, when Vidal Menu is loading.
      1
  2. estherw001 Posted messages 2 Status Member
     
    Hello, sorry for the delay; I was traveling.
    Avast found it in Documents and Settings\Estherw\Application Data\Sun\Java\Deployment\System Cache\6.0\23\3 db38.....ec40.

    I hope this will clarify things for you and for me as well.
    Anyway, thank you for looking into my problem.

    It seems that "my CPU fan" (and not the hard drive?) is no longer going crazy, but still (not always) there are some slowdowns and loud fan noise when using Mozilla Firefox.
    However, since the scan and quarantine, there haven't been any issues so far with slow loading of other software or responsiveness or data transfers to external drives or USB keys.
    I haven't done a startup scan yet; I started but stopped because it took too long and I needed the computer.
    See you soon.
    0
  3. g3n-h@ckm@n
     
    Attention !!! : this tool may be falsely detected as a virus
    Attention !!! : this tool is powerful, strictly follow the instructions below

    all "non-vital windows processes" will be stopped, save your work.

    Disable all your protections if possible, antivirus, sandbox, firewalls, etc....

    download and save Pre_Scan on your desktop:

    https://forums-fec.be/gen-hackman/Pre_Scan.exe

    if the link does not work:

    http://general-changelog-team.fr/fr/downloads/viewdownload/41-outils-de-gen-hackman/52-pre-scan
    http://www.archive-host.com

    Warning: There will be a desktop blackout during the scan --> don't panic.

    once downloaded, run it, let the scan complete until "Pre_scan_date_and_time.txt" appears on the desktop.

    if the tool is launched multiple times, it will offer you a menu and no option is required, select the "Kill" option

    if the tool is blocked by the infection, use this version with the .pif extension:

    https://forums-fec.be/gen-hackman/Pre_Scan.pif

    if the tool detects a proxy and you have not installed one, click on "remove proxy"

    There may be a multitude of flashing black windows, let it work

    Post Pre_Scan_date_and_time.txt which will appear on the desktop at the end of the scan

    It is possible that the tool will restart your PC, let it do so

    DO NOT POST IT ON THE FORUM !!! (it is too long)

    Host the report on http://pjjoint.malekal.com then provide the obtained link in exchange on the forum where you are being helped

    --
    ¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
    0
  4. esther
     
    Thank you for your response.

    I like to understand, at least a little, what I'm doing and what it's for.

    Even though I have up-to-date daily backups, I can't afford for my computer to be non-functional for even a few hours.
    On the other hand, I have files subject to medical confidentiality that I do not want to see "floating around".
    Could you also assess what my benefit/risk is in keeping my machine as it is after the action of Avast and "attempting" the procedure you are proposing?

    Thank you, and thank you also for accepting my reservations.
    0
  5. g3n-h@ckm@n
     
    the risk of keeping it as it is? well 100% I don't really understand

    I didn't do this program to destroy the machines lol ^^

    --
    ¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
    0