FS.dll, What is it, why is it on my computer, and why does Hitman Pro - Microsoft Community


alright, so, have few questions. i'm on windows 7, , have multitude of malware scanners, such malware bytes, avast, , hitman pro, , few browser/startup scanners.

recently, hitman pro has discovered 3 .dll files under name fs(.dll) , categorized malware. hitman seems reliable touchy scanner, scanned avast , malware bytes , found 0 results, scanning direct .dll files, which, way, under directory: c:\users\(my pc username)\appdata\local\temp, , under 3 files:

  1. hydd88c.tmp.1487195022
  2. hyd5366.tmp.1487195971
  3. hyd1898.tmp.1489503292

these folders seem related utorrent, have used in past. not explain recent rise of these .dll files are

and under each of files, have directory, .dll files can found going through \hta\3rdparty\ on each. upon doing so, can find 2 files in each:

  • the fs.dll file
  • and .ocx activex control file, which, honest, not sure is, isn't registered malware scanners.

i have looked these on web, no results on file info, saying still gathering info on them, or not sure are. have scanned these virustotal, , ratio of 14/64 scanned viruses.

i tempted delete them, person would, cannot computer @ moment. don't know these directories, , tempted delete .dll , .ocx in each file.

i'm fair noob when comes stuff, , need describe these files are, folders are, , should delete if any, , how safely remove them computer. 

any , referrals at appreciated.

1.  generally, that's in temp directory can safely deleted.  in fact, it's idea clean out temp directories periodically.  can either use disk cleanup or manually

2.  generally, unknown file related torrents should suspect.

3.  generally, file or folder random-appearing name (e.g., hyd1898.tmp.1489503292) should considered either temporary file/folder can safely deleted or malware.

4.  given hta files (html applications) vectors malware, sketchy folder named hta suspect.

5.  fs.dll recognized sources component of malware.  see, e.g., https://securingtomorrow.mcafee.com/mcafee-labs/updated-blackenergy-trojan-grows-more-powerful/  doesn't mean fs.dll malware, given location, suspicious.

6.  if there doubt legitimacy of file , hesitate delete it, usual procedure either (a) add file extension (e.g., fs.dll.bad) or (b) move different directory whatever malware might want use won't able find (this typically antivirus programs do; call "quarantine") or both.  after suitable period of time (that's you) without detectable ill results, should feel more comfortable deleting it.



Windows / Windows 7 / Files, folders, & storage



Comments

Popular posts from this blog

Error 8233 Microsoft Windows security -spp - Microsoft Community

Replacement for Microsoft Model 1423 2.4GHz USB Wireless Mouse - Microsoft Community