Bitgrabber

Discussion in 'Malware Help (A Specialist Will Reply)' started by kiddz7, Jan 16, 2007.

  1. kiddz7

    kiddz7 Private E-2

    Hi guys,

    i installed bitgrabber because i downloaded some movies and it asked for pw when i tried to unzipped. anyways, i uninstalled bitgrabber, but theres an ads windows poppoing out randomly when i open IE. please help :cry
     
  2. kiddz7

    kiddz7 Private E-2

    sorry didnt know theres a procedure, running them atm
     
  3. kiddz7

    kiddz7 Private E-2

    i running cccleaner
    Spybot Search & Destroy
    bitdefender
    panda
    avg anti spy

    atm
     
  4. kiddz7

    kiddz7 Private E-2

    finished cccleaner and spy bot
    avg anty spy report :
    C:\Documents and Settings\kiddz7\Application Data\Bash Kind Balm\xuurfapa.exe -> Adware.Lop : Ignored.
    C:\RECYCLER\S-1-5-21-1220945662-412668190-725345543-1003\Dc6\xuurfapa.exe -> Adware.Lop : Ignored.
    C:\System Volume Information\_restore{D91EE7CD-F9E7-4BF3-9B0B-2BC0CD75AFF4}\RP447\A0054183.exe -> Adware.Lop : Ignored.
    C:\WINDOWS\Downloaded Program Files\UERS_0001_N85M0906NetInstaller.exe -> Downloader.Agent.alr : Ignored.
    C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UERS_0001_N91M2007NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UERS_9999_N91S2507NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\WINDOWS\Downloaded Program Files\UERS_0001_N91M1807NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\WINDOWS\Downloaded Program Files\UERS_0001_N91M2007NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\WINDOWS\Downloaded Program Files\UERS_9999_N91S2507NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignored.
    C:\WINDOWS\Downloaded Program Files\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
    D:\Exe and Installation\Multimedia\Movie Player\DVD Region Free.zip/crack.exe -> Not-A-Virus.VirTool.Win32.AvSpoffer.a : Ignored.

    i deleted those files, still running panda and bitdefender

    ia lso deleted some folder from my comp "Bash Kind Balm"

    the pop up has not stopped, how do i know if im still infected or not though?
     
  5. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Welcome to MajorGeeks.com!

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.

    - Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis:

    Downloading, Installing, and Running HijackThis

    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.

    When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
    • CounterSpy
    • AVG Antispyware Log - ONLY IF NEEDED you were not able to run CounterSpy
    • Bitdefender - from step 6
    • Panda Scan - from step 6
    • runkeys.txt - the log from GetRunKey.bat
    • newfiles.txt - the log from ShowNew.bat
    • HijackThis
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds