I can't seem to fix this myself, so here I am

Discussion in 'Malware Help (A Specialist Will Reply)' started by EJP, Apr 24, 2005.

  1. EJP

    EJP Private E-2

    I have never had even a single virus before, thanks to BitDefender Pro, AdAware, and Spybot (and being careful) but last Friday night my personal XP system got hit in a major way. While I was away from the keyboard for dinner it acquired 18 new desktop shortcuts, so many IE popups that my task bar was full of nothing but tiny icons, 100% CPU utilization, and so on. BitDefender was going crazy with "virus blocked" and "do you want to allow this program to access the internet" popups -- several per second -- and the system was virtually unusable.

    I have read "How to: Spyware, Trojan And Virus Removal" and I followed the checklist as carefully as I could. It looks like I have knocked the infection back a bit, but even after all of the scans showed that everything was ok, the popups have returned and my firewall is still seeing different programs like "Buddy" pinging away a few times an hour. There are several executables like bmsuxmvwgm.exe and nail.exe that simply won't stay deleted. I could continue but you get the idea. It's quiet right now but I think it is just playing possum.

    I have already blown a day and a half wresting with this monster and I want to find a solution and get on with my life. I am comfortable with RegEdit and just about anything else you want to throw at me, but it's clear that I need some experienced help with this.

    What's next?

    Oh yeah, and who can I punch in the mouth after all of this is over?

    -- EJP
     
  2. EJP

    EJP Private E-2

    Never mind.

    I was able to get rid of Aurora (Buddy) and nail.exe by using the unistaller that I found mentioned in another thread, and then the various scanner programs in the FAQ were able to clean up the rest.

    SpyBot, AdAware, and BitDefender all say I'm clean. Finally!

    But I'd still like to punch whoever is responsible in the mouth.

    -- EJP
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I'm happy to see you got it all worked out. If you have other problems, you can follow the steps below since you stated you already ran the READ ME.

    - Download HijackThis 1.99.1

    - Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    - Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the downloaded ZIP file.

    - Before running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    - Run HijackThis and save your log file.

    - Post your log as an ATTACHMENT to your next message. (Do NOT copy/paste the log into your post).
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds