Bam-cell.nr-data.net (unable To Remove)

Discussion in 'Malware Help - Public (Anyone Can Post & Respond)' started by ANNIEPOTTS, Dec 8, 2020.

  1. ANNIEPOTTS

    ANNIEPOTTS Private First Class

    Past week I was logging into eBay. I "felt" logging in was too slow. Out of the corner of my eye, on the bottom left of the computer screen, I saw the following:
    https://www.Bam-cell.nr-data.net
    I logged out asap, went "incognito" (I use Chrome,Windows 10) and did a search. A lot of other eBay users,since 2018,have been hit with this malware preventing them from using eBay securely Copious readings ascertained this BHO/Malware is more than difficult to permanently remove. It also creates a multitude of problems. Currently, I cannot reboot into Safe mode.
    I have tried all suggested removal methods posted on Google. Well, I tried the rest ,now I need the Best:
    Major Geeks I need you!
    Thank you for your kind assistance.
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please follow the Read and Run First instruction in the main Malware forum.
     
  3. ANNIEPOTTS

    ANNIEPOTTS Private First Class

    Thank you. Can only attach the AdwCleaner log. As soon as I began downloading Malwarebytes problems arose:
    screen went black, stalled. Finally downloaded the .exe file, BUT saw the following, which was piggybacked with the Malwarebyte exe:
    "unconfirmed 742110.crdownload" .I checked the properties and saw "unknown application", 0 bytes, security cannot be displayed" I stopped at this point. I did rename the Malwarebyte file to mb.exe as instructed.

    worth noting that I had one heck of a time trying to get back into MG Forum. Screen froze, blacked out, rerouted to other sites. Another mention: saw "sync.go.synobi" out of the corner of my eye on bottom left of the computer screen.

    How do you you wish me to proceed?
     

    Attached Files:

  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please go here > https://www.zemana.com/Download
    their program is no longer free, but you can use the demo version for this cleaning.

    It auto updates, and you click scan. After it's finished, click on the icon that looks like Cell phone strength bars. High-light the report (by date log was produced) and click on the "Open Report" icon. (looks like a folder). That notepad.txt can then be copied/pasted into another .txt doc and saved. Upload that, please.
     
  5. ANNIEPOTTS

    ANNIEPOTTS Private First Class

    attached file...did NOT remove the cookie. Will wait until you tell me to remove.
    Addendum note: took 1.4 hrs to open this computer. Black screens,blue screens. Also,Microsoft updates/security -- said unable to install. Another 45 minutes as computer "uninstalled".
    Also,the anticipated ransomware request came: send $500 to Photobucket to get my pictures,as I was violating their legal agreement in my use of the photos ....the account has been stagnant for year.
    This is the worst I have been hit. Thank you so much.
     

    Attached Files:

  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Send $500 to Photobucket?? Never heard of ransomware asking for money to be sent to a website.

    Please download the latest version of FRST the below link.
    Farbar Recovery Scan Tool and save it to your Desktop.


    Note: Make sure you download the proper version ( 32 bit or 64 bit ) for your PC. Only one will run, the correct one. So it you make a mistake and download the wrong one, go back and get the other.
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your next reply.
    • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.
     
  7. ANNIEPOTTS

    ANNIEPOTTS Private First Class

    First,I will send updated info in a few days (have sick human and sick dog to take care of(inc the coonhound in the pic going in for Cushing tests).BUT,so, far,the following programs are/were corrupted:
    AWD cleaner
    CC Cleaner (free)
    Click and Clean (free)
    Vipre-Pro (paid version)
    REVO (free)
    Kaspersky malware/trojan finder (free/free standing)
    Malwarebyte (free)

    HJT (ver 1.99 old) works great! clean.I picked up several bad ADS hidden streams.
    Glary Pro also did not get corrupted BUT...it did not pick up the ixt0 BHO.It paused on it for 5-6 minutes,then went on.

    Now,Zemana 'regular scan' does not pick up the new-found trojan Maldropper.onclk I changed the settings and used specialty scan and the trojan was found. It is auto reocurring.Zemana can quarantine,delete and it still comes back. I have had to resort to manual searching for malware.The key registry was so corrupted.example: HKEY_Current\User\Software \CRDOWNLOAD.webp

    Quick question: what is this file"ixt0.dll" (ixt zero.dll), It is a BHO? difficult to remove.I found it in ALL media files. I also found many infected .dat files w/maldropper trojan.

    Went to download Farbar-was hijacked to another site.

    Give me few days to reply,please.I will get that download! btw:the ransom request was in my mailbox (gmail).My Proton mail blocked it, deemed malware.I did an extensive search on a lot of the corrupted malware files properties etc. SAME info was there:fake names etc EXCEPT the LOCATION malware was sent from: Bay Area California and they were ALL sent from a Samsung Galaxy series smartphone.

    After MUCH effort (black screens etc),I do get on the internet and immediately go "incognito". I actually surf extremely fast in that mode.

    THANK YOU THANK YOU...from the heart.I need some time. I WILL return to you w/info. You are SO appreciated.
     
  8. ANNIEPOTTS

    ANNIEPOTTS Private First Class

    What a suck-azz week. Christmas Day one of 2 outdoor ac/heat units blew up (4 months old). Neighbor got drunk...plowed into our driveway and hit our GMC Jimmy. Husband burned turkey in new convection oven.I fell asleep on a window bench and rolled off on to the floor. Shoulder hurts like hell. Fedex delivered many packages to neighbors. Had to go out with flashlights at midnight to find Chewy packages. $790 later, 1 dog is OK. Toy chi had gastritis (good news). AND then....Microsoft.

    update..desktop is toast. Everything was running great. Followed instructions.BUT...when I rebooted found I had the Microsoft "bug" twinui.Most media files hijacked. So pizzed:
    I did one boo boo.:rolleyes:
    I deleted 12 MicrosoftEdgeupdates from both drives. These were the last ones I was looking for.Upon new reboot-black,blue screens."Unable to find owner file to log on";.No way to get in the computer.HA!
    I banged the keyboard, was able to do F5 safe mode.Thought I could do a partial recovery.Nope.Said failure,undoing changes.Ran diagnostics on HP.FINALLY saw this:'no operating system installed'.
    Not logical.Why did I see theMicrosoft crap.I got into desktop!!!Zemana,Glary,HJT was there.So was Microsoft Edge.MOFO!!!Able to get online.I am fixing this mess as I created it. Did learn A LOT!
    Dealing with Vipre also.Program missed a lot.Tech said oh,you got false positives on the trojans.I almost said to him "gee,just like the false positive on your trojan and you are now a baby daddy."

    I have a lot of work to do.IF I (once again) run into troubles,I shall post anew! Until then,I sincerely Wish ALL a Healthy Happy New Year! MG Admin rocks.I so Appreciate your humor,kindness and HELP!!!

    Disclaimer! never do I what do. Ask MG first! Follow their instructions. Otherwise,you will acquire a vast vocabulary of expletives that never even existed. Eat Prevacid daily.But,to my positive...I do manage to get from A to Z using logic when all else has backfired.Um,just that it is not necessary to kill yourself if one had listened in the first place.
     
  9. IvanW

    IvanW Private E-2

    I am beginning just now wondering, is it worth it to have a PC at all, all this malware, stinkware, hurtware, rootkits etc. etc. etc. etc., is it worth it to go through all this merely to have internet. Something I shall have to think on. One would think that people would have better things to do than create this crap only to hurt others. Our world is sad and so are those who wish to destroy it..
     
    xrobwx71 likes this.

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds