temp files reveal password, connections?

Discussion in 'malware problems & news' started by zappa, Jan 6, 2003.

Thread Status:
Not open for further replies.
  1. zappa

    zappa Registered Member

    Joined:
    Feb 9, 2002
    Posts:
    176
    Location:
    Los Angeles, Ca.
    I continually get 20 to 30 temp files in Windows/Temp and today I looked at the files with quick view. I found my password file, connection info etc. I will attach a couple of jpg's to show what I mean. Is this unusual or normal?
     

    Attached Files:

  2. zappa

    zappa Registered Member

    Joined:
    Feb 9, 2002
    Posts:
    176
    Location:
    Los Angeles, Ca.
    pic 2
     

    Attached Files:

  3. zappa

    zappa Registered Member

    Joined:
    Feb 9, 2002
    Posts:
    176
    Location:
    Los Angeles, Ca.
    last pic 3
     

    Attached Files:

  4. Primrose

    Primrose Registered Member

    Joined:
    Sep 21, 2002
    Posts:
    2,743
    Are you transfering a codec between PCs ?

    http://www.fourcc.org/fcctxcod.htm

    Are you copying some CD's?

    Many things happen in the TEMP file..it is the place used by programs to hold data when you install and uninstall programs and other many other reason...can you pin it all down to coincide with the activity you were doing at the time?

    Were you watching some videos?

    http://www.geocities.com/macrotech_tr/mmedia/media1.html
     
  5. zappa

    zappa Registered Member

    Joined:
    Feb 9, 2002
    Posts:
    176
    Location:
    Los Angeles, Ca.
    All good ideas Primrose, thanks. Somehow I let a Klez virus out of Quarantine folder...through the folder portal, no idea how... and thus I thought Klez was involved. I cleaned system of Klez but klez paranoia exists here.

    To answer your questions No and Yes in that order. I never had my password location in a temp file since I've been looking at them.

    More knowledge is better and I was looking for opinions. I liked the links you gave me, fantastic, thanks.
     
Loading...
Thread Status:
Not open for further replies.