Major spyware/Virus issues

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by LitasLilDemon, Nov 19, 2004.

  1. LitasLilDemon

    LitasLilDemon Private E-2

    Hey all, Im in desperate need of some help, cause I've got some stuff that just wont go away.

    I've run AdAware, and there are 4 VirtuMundo files that will not go away...

    Norton Antivirus pops up with a virus called catinfo.exe, and also something called ATLEvents, neither of which I can delete (I've tried the antivirus route, safemode deleting, following the file name and deleteing it straight from there, nothing)

    Spybot Search and Destroy also brings up the ATLEvents files, and says it deletes them, but they come right back.

    Any ideas for any of this? It's causing my IE to lock up and shut down on me, and if it stays up it is super slow.

    I've got my HijackThis log, if anyone needs it.

    Thanks in advance!

    Amber
     
  2. Kodo

    Kodo SNATCHSQUATCH

    Please follow all the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal


    If you already have any of the programs linked in the tutorial please double check your version to make sure you have the latest one and that you have any/all updates for the programs.

    NOTE: In order to resolve the issues you are having it is very important that you at least try to perform all the steps as outlined. If you have any difficulty please post back letting us know what steps you have completed, what you found while doing the scans if anything and details about any problems you have encountered in completing the steps. The more details you can provide the better.

    also check out our list of vritumondo resolution threads.
    http://forums.majorgeeks.com/showthread.php?t=46356
     
  3. LitasLilDemon

    LitasLilDemon Private E-2

    Alrighty... sorry for not running all the steps before, I was just so frustrated I didnt even see the huge "READ THIS FIRST" Thread!!

    So, here we go..

    I rebooted in safe mode to do all of these.
    Ran Housecall:
    Found TROJ.DLOADER.JU, said it was non-cleanable, but deleted the entire file instead

    Ran Symantec:
    No problems noted

    Ran Stinger:
    No problems noted

    Ran the CCleaner:
    Said everything was clean

    Ran Adaware (with the added tool):
    Found 4 critical files
    VirtuMundo, of course

    Ran Spybot:
    Found ATLEvents.ALTevents and DSOExploit

    Ran CWShredder:
    No problems noted

    Ran Kill2Me:
    No problems noted.

    I am still having problems with IE freezing up and closing on me, which stinks. Anyone have any ideas?
     
  4. PhilliePhan

    PhilliePhan Guest

    Hi LLD,

    It looks like you've pretty much exhausted the Tutorial's options.
    Please go ahead and send us a HijackThis Log.

    Note that your HijackThis should be up-to-date (v1.98.2) and MUST be extracted to its own safe folder - C:\Program Files\HijackThis!

    If you need a Fresh Download of HJT, get it HERE: HijackThis 1.98.2

    Also note that, before you scan, you MUST close all running programs including your web browser, e-mail and items in the system tray.

    Please save your HJT Log as a .txt file and attach it via the "Manage Attachments" tool in the Additional Options section when you post.

    Send us a log and we'll go from there ;) I'll try to check back when I get a chance. Please note that I am currently working on about 10 (OR MORE) of these StopGuard/Virtumundo threads and I'm just a regular forum contributer without a lot of free time - so, be patient ;)

    Best,
    PP
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds