My first download was paired with malware. Below is a copy of my report to Symantec, the makers of Norton Internet Security. It took three calls to Norton and about three hour total until their helpful support reps succeeded to completely remove this nasty piece of Malware described below. I will stay away from this site from now on and my advise for you is to do the same!
"Every time I start the computer Im getting the message that NORTON is handling a threat from SecurityRisk. Downldr, then informs me that either the attack was blocked or that the risk was removed.
Notable is the fact that each time the location of the executable file on my hard drive listed by Norton A/V is a different one. Also, the. Exe file name is different each time the one after my previous start of the computer was whiteusnew[1]. Exe. This event started to occur after I deleted an annoying little piece of software entitled START SAVIN that was downloaded without warning while I was downloading Revo Uninstaller from a site called SoftPedia. These attacks started the first time I started my computer after removing START SAVIN from my hard drive with Revo Uninstaller Pro.
However, there must be something that this malware has installed on my computer which triggers its action each time I start the computer. Moreover, whenever Im using the Internet, I am still getting pop-ups from START SAVIN even though, since deleted, its name does no longer show in either ADD/REMOVE PROGRAMS of Windows or REVO Uninstaller!? Obviously this malware action hinders the availability of my computer until this attack has been resolved.
I scanned the computer with Norton Anti Virus and BitDefender, 3 times each, with no result. Please help. Thanks."
COPY OF NORTON REPORT
Filename: file_to_run*******. Exe
Threat name: SecurityRisk. Downldr
Full Path: c:\users\steve\appdata\local\temp\file_to_run*******. Exe____________________________
Details
Few Users, Very New, Risk High
Origin
Downloaded from
Unknown
Activity
Actions performed: 2____________________________
On computers as of
3/3/2014 at 3:34:37 PM
Last Used
3/3/2014 at 3:36:37 PM
Startup Item
No
Launched
Yes___________________________
Few Users
Fewer than 100 users in the Norton Community have used this file.
Very New
This file was released less than 1 week ago.
High
This file risk is high.
Threat type: Security Risk. Programs that pose a security or privacy risk and are not already classified as malicious.____________________________
Source: External Media
Source File:
File_to_run*******. Exe____________________________
File Actions
Event: Running process: c:\users\steve\appdata\local\temp\ file_to_run*******. Exe Terminated
Infected file: c:\users\steve\appdata\local\temp\ file_to_run*******. Exe Removed____________________________
File Thumbprint - SHA:
35dd6757fa242b0beef890dd4e750eba2e164d2ace*******e*******f9da2f3a0
File Thumbprint - MD5:
Not available