How to remove resistant spyware?

F

Francogrex

I somehow got a few weeks ago an infection with
"powerfulvirusremover2008", it's always directing me to a website for
fake anti-virus removal tools. I tried a lot of available anti-
spywares like ad-aware, spybot, AVGantispyware, spydoctor... nothing
could detect and remove it! does anyone have any suggestion to get rid
of that nasty piece of scum? Thanks
 
M

Malke

Francogrex said:
I somehow got a few weeks ago an infection with
"powerfulvirusremover2008", it's always directing me to a website for
fake anti-virus removal tools. I tried a lot of available anti-
spywares like ad-aware, spybot, AVGantispyware, spydoctor... nothing
could detect and remove it! does anyone have any suggestion to get rid
of that nasty piece of scum? Thanks

Your system is infected with a rogue antivirus program. It is called "rogue"
because it pretends to be A Good Guy but is really Evil. Do not pay them!

Look for removal steps here:
Bleeping Computer removal how-to's -
http://www.bleepingcomputer.com/forums/forum55.html
or here - Malwarebytes malware removal guides - http://tinyurl.com/5xrpft ]

These may work for you and all may be well. However, in many cases the
computer will also be infected with Zlob and/or Vundo trojans and protected
by a rootkit. These machines are extremely difficult to clean.

If your machine is one of these cases, either get guided help at one of the
specialty forums below OR back up your data and do a clean install of
Windows. It is your choice. If you are unsure how to back up your data or
how to do a clean install, you can take your machine to a local computer
professional. I don't recommend using BigComputerStore/GeekSquad types of
places.

PLEASE DO NOT POST LOGS IN THE MS NEWSGROUPS.

http://aumha.org/downloads/hijackthis.zip
http://aumha.net/ - Click on the HijackThis forum. Read the announcement and
the stickies *first*.
http://www.atribune.org/forums/index.php?showforum=9
http://aumha.net/viewforum.php?f=30
http://www.bleepingcomputer.com/forums/forum22.html
http://www.dslreports.com/forum/cleanup
http://www.cybertechhelp.com/forums/forumdisplay.php?f=25
http://www.geekstogo.com/forum/Malware_Removal_HiJackThis_Logs_Go_Here-f37.html
http://www.malwarebytes.org/forums/index.php?showforum=7
http://gladiator-antivirus.com/forum/index.php?showforum=170
http://spywarewarrior.com/viewforum.php?f=5
http://forums.techguy.org/54-security/
http://forums.tomcoyote.org/
http://www.thespykiller.co.uk/index.php?board=3.0
http://forums.subratam.org/index.php?showforum=7

Malke
 
U

Umapathy (உமாபதி)

G

Gerry

Franco

Malke has advised on removal but you need to go further otherwise you
will have another infestation pretty soon.

Are you posting to newsgroups and forums using your real email address.
If yes your email address is totally compromised. The best solution is
to
ask your Internet Service Provider for a new address.

Otherwise you need to munge your email address.

You need to be aware that much spam contains malware so reading it can
be hazardous. Not all is detected by anti-virus and anti-spyware
programmes and removed. Some are very difficult to remove and once you
get an infestation your computer can be severely damaged. You can get
software to sort spam but the better way is to change your address to
stop it coming.
http://www.firetrust.com/en/products/mailwasher-pro

--



Hope this helps.

Gerry
~~~~
FCA
Stourport, England
Enquire, plan and execute
~~~~~~~~~~~~~~~~~~~
 
M

Mick Murphy

You say you have scanned with Spybot(if you have, THAT is Spyware).
Install Malwarebytes and "Spybot Search & Destroy"(correct program name).
Update them, then scan your system in Safe Mode.
All info below.

http://www.spybot.info/en/index.html

Spybot Search & Destroy 1.6 is a very good, FREE Anti-Spyware Program.
Download, install, update, and immunize your System with it.
Then SCAN with it.
Update it, and scan your System once a fortnight.

http://www.malwarebytes.org/mbam.php

Malwarebytes is as the name says, a Malware Remover!
For the Free version scroll down their page to either download from
Download.com, or Major Geeks.com

Download, install, and update.

Important re: Safe Mode
If you happen to find a problem that you can’t uninstall / delete, reboot
the computer, and go into Safe Mode.
To get into Safe mode, tap F8 right at Power On / Startup, and use UP arrow
key to get to Safe Mode from list of options, then hit ENTER.
RESCAN your computer with your Anti-Virus, Malwarebytes and Spybot S & D
while in Safe Mode.
 
F

Francogrex

You say you have scanned with Spybot(if you have, THAT is Spyware).
Install Malwarebytes and "Spybot Search & Destroy"(correct program name).
Update them, then scan your system in Safe Mode.
All info below...

thanks all guys for responding, I tried everything and the problem
still there, the antivirus detected the "Trojan.W32.BHO.hhv" inside a
"windows/system32/batmeterv.dll" file... I cannot at all delete the
dll and the antiviruses cannot remove the worm! do I really have to
resort to format c to get rid of that rubbish?, it seems something new
citculating!
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top