1. I think i got a really new virus/wyrm/trogan or wahtever the heck it is... i searched a couple of the files on google... nothing at all came up... not a single thing, recently i was looking for spyware removals, and i came across this site, so I decided to make an account and post on this site... Well I was looking for reasons why my internet lags so bad and why it takes up so much CPU, and the fact that every now and then it deselects this window :S well so anyways, I found out that there were 29 trusted sites on my trusted sites list that i didnt put on their, and that may be where i was breached or whatever.. so i removed those, and thats been fine but i just looked again now in the tools section and saw show addons and so i decided to check it out.. There were a couple things that i recognized such as messenger skype, knight online toolbar, stuff like that.. But a few I didn't recognize... Should I disable them?

    Here's the ones i don't recognize

    under name it says ucbhemjt.dll under file it says ucbhemjt.dll

    under name it says {2E9D4C81-9F27-4C14-B804-7B0F6Bc88A4F} under file it says Outerinfo.dll

    under name it says {53707962-6F74-2D53-2644-206D7942484F} the publisher on this says (Not verified) Safer Networking Limited under file it says SDHelper.dll

    under name it says {AF655524-B30F-40B6-986B-E625764BA71D} under file it says hokeqozil43855.dll

    under name it says obmrvfpu.dll under file it says obmrvfpu.dll

    help... its annoying having to close iexplorer in task manager to close the task (cause it doesnt close task if i just close out of the window) JUST to run minesweeper without lagging... And its annoying having to click internet every 5 seconds to reselect this window to type :|

    HELPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPPP
     
    Last edited: Jul 31, 2007
  2. oh i found out outer info is for advertisements... so misewell disable it for now


    EDITED: MaxSpeed is another one... all it says about it is MaxSpeed and the type browser extension

    (heh do you think it would be possible to make a virus thats unremovable? that would suck)
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Majorgeeks!

    Sounds like you may have quite a few problems which may include PurityScan, Virtumonde, Look2Me, as well as OuterInfo that you mentioned.

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, renaming, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    Make sure you also rename HijackThis.exe as suggested in the procedures. Use analyse.exe for the new name. This is very important due to some new infections going around.
    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too:
      • CounterSpy - only for Windows XP, 2K, & NT users
      • AVG Antispyware log - ONLY IF NEEDED you were not able to run CounterSpy. - only for Windows XP, 2K, & NT users
      • Bitdefender - from step 6
      • Panda Scan - from step 6
      • runkeys.txt - the log from GetRunKey.bat
      • newfiles.txt - the log from ShowNew.bat
      • HijackThis
    NOTE: You can only attach 3 files in a single message so it will require that you use two messages to attach all of these logs!
     
  4. Ok, well I stated going through the guide read and run me first before asking for support, (hehe sry for not reading - i'm new and just wanted to get a quick answer) And started to go through the list of add and remove programs... There were bunches of stuff there that I deleted... but one, called Web Saving from Ebates when I try to delete it it says

    ___________________________________________________________________
    |WJView Error_______________________________________________________|
    | (this part is blank this part is blank this part is blank this part is blank this par)|
    | X ERROR: Could not execute Main : The system cannot find the file specified.|
    |_____________________OK__________________________________________|

    sucky box drawing but its a quicky ;)

    Well, I don't know if this means anything, but I'm off to go do more of the guide
    PS: the (this part is blank this part is blank this part is blank this part is blank this par) is just to make the box look better cause the 2 or more spaces shows as 1 - that wasnt in the popup message thing
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Just continue on with all steps and attach the 6 requested logs when you finish. We will then address any remaining problems that you have.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I highly recommend that you attach the requested logs. Some of the items you mentions leave a load of hidden files laying around on your PC and any of them could easily reinfect you.
     
  7. oh fine give me a second
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    It will take more than a second to complete the READ ME. ;)
     
  9. I don't know much about cords and such about computers... which one is the internet cord that im supposed to physically unplug in step 5?
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    How do you connect to the internet? Is it via a dialup modem, vial DSL modem, Cable modem, other? Basically whatever this connection is to your PC, you can just unplug it; however, if you cannot figure this out, just continue on. Even though it is best to unplug it, it is more important that you get started so we can get you cleaned up and running as fast as possible.
     
  11. it says Run Ccleaner - I went start>run Ccleaner... it said not found... is that what i was sposed to do?
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Did you install it? If so, to which user account? Did you install it on the user account that you are trying to run it on? You are not suppose to run it from the run box. You will find it right on your Desktop and also from Start, All Programs. That is assuming you have installed it and are trying to run it on the user account where you installed it. Otherwise you will have to goto the C:\Program Files\Ccleaner folder and manually double click on the ccleaner.exe file to run it.
     
  13. I didn't see the download for it - Can you give me a quote of it in the guide, or a link?
     
  14. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    CCleaner 1.41.544
     
  15. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    BJ gave you a link but the link for it was in step 1 of the READ ME. Sounds like you may be skipping things.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds