I am Stuck

Discussion in 'Malware Help (A Specialist Will Reply)' started by Vaylgar, Dec 1, 2005.

  1. Vaylgar

    Vaylgar Private E-2

    Ok I typed one already a 20 minute discription of this severe problems im having but for some reason when i submitted it the forum didnt accept it and erased it saying i wasnt logged in , and i was when i started typing so im going to assume i have so long to type all this before it kicks and times me out fo being logged in.
    Here is my problem as simple and short as i can get without getting kicked out of my own post.
    I have a spyware or virus , im assuming its a virus since it is doing very weird replication things on my computer , I know how i got it becuase i took a chance and went to a unknown warez site to find out some information i needed about a product and to try and test a product.
    This infection I have is creating random .dll files and exe files most of which have some random numbers or letters (Like but only limited to whats on the keybaord :) fyias32.exe this exe sometimes has a Dll file named the same with a dll extension instead of .exe) but slot of them have 32 in the name and ALL are either 0kb or 35kb in size and I found and manuualy removed over a 100 of these and it keep replicating from another source I cant find , I have scanned with Ad-aware , Noadware spyware removal , Microsoft spyware remover , Cws Shredder which finds nothing at all even though Spybot Search and Distroy finds that I am infected with sevral Coolsearch but Spybot keeps finding the same files over and over and says it removes them but they return each time i rescan immediatly after. Nortons 2005 internet Suite finds NOTHING , Microsofts version FINDS NOTHING!! Thanks BILL!!
    Adaware finds just like spy bot the same ones its seems over and over , the main thins is I cant find and locate the real culprit thats reproducing itself on my computer now and I really dont want to have to reformat to chop this thing up ,
    this is what it is doing , Hijacking all broswer surfing , seems to make it go to the odd named .dll file and .exe name it creates if i delete it it makes another but randomly selecting letters and numbers like s 3 year old the keyboard and made up the name and put .dll or .exe behind them BTW these are all created so far in C:\windows and C:\windows\System32 which im sure you guessed already .
    another things this monster does is when i went to my yahoo email to activate a new spyware i got it made the browser open a duplicate of itself untill IE crashed and shut everything I was doing , another thing it does it puts a FAKE microsoft shield up and blinking to make you think there is a instance you need to be aware of and if you left click on it which I did only 1 time even though i knew it wasnt microsofts i wanted to see what it was going to do , I assumed it would take me to someone selling a spyware removal or virus scanner , well it didnt I was running spybot remover search and distroy and it LOCKED up my system DEAD as hell and made my sound echo so I had to force off my computer with the power switch for 5 seconds.
    I am very skilled with building computer and most software but I have to admit this one has made me feel very stupid , as hacking and viruses are not my thing. Can someone please help ill post my Hijack this log and let you guys see this I see a few things im unsure about in the log so I want someone who knows for sure HELP!

    • Edit by bjgarrick: Unrequested, Inline HJT log removed!
     
    Last edited by a moderator: Dec 4, 2005
  2. Vaylgar

    Vaylgar Private E-2

    m y new updated after i ran a analysis and removed what it told me too which was alot of the same files ive been finding and removing sevral times and this damn thing remakes them again as you can see , i removed all the bad ones it told me to in the analysis site and they came right back!! there is a exe or somthing that virus scanner isnt finding I dont know HELP

    • Edit by bjgarrick: Unrequested, Inline HJT log removed!
     
    Last edited by a moderator: Dec 4, 2005
  3. Shadow_Puter_Dude

    Shadow_Puter_Dude MG Authorized Malware Fighter

    Do not copy adn paste logs in to your posts; always include them as attachments.

    Uninstall the following using Add or Remove Programs in the Control Panel:
    Follow the instructions in this thread:
    about:Blank and HSA Hijacker - Simplified Removal
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds