Advanced-anti-virus-scanner.com Virus

My PC is infected with a virus that periodically puts up the message ed.


"ATTENTION! If your computer is struck by the spyware, you could suffer data loss, erratic PC behavior, PC freezes and creahes .."


I opend the task manager when this cam up and saw that it has a link back to


advanced-anti-virus-scanner.com/...


Help!!!!!!!!!!!!! I cannot get a response from BD Support and business is down until this is resolved.


Anny suggestions?

Comments

  • Please provide an AVIS log. (HOWTO section)

  • PaulIDA
    edited January 2009
    Please provide an AVIS log. (HOWTO section)


    Thanks Catalin,


    Attached is the AVIS log. The ticket ID is 200901021010599. I have replied to the ticket email with a zip containing avis log, gmer log, deep scan log, and doc with images of some messages produced by the malware.


    Thanks again,


    Paul

    /applications/core/interface/file/attachment.php?id=4421" data-fileid="4421" rel="">bd_sys_log.xml.zip

  • Attach the following to a new post(packed in a password protected archive using the password "infected"). You may need gmer(gmer.net) to save some of them.


    c:\windows\tasks\bgsczjak.job


    c:\windows\system32\hggyvtun.dll


    c:\windows\system32\kuyukd.dll


    c:\windows\system32\urqnfwuv.dll


    c:\windows\system32\psqlpwd.dll


    c:\windows\system32\fmojqg.dll

  • Attach the following to a new post(packed in a password protected archive using the password "infected"). You may need gmer(gmer.net) to save some of them.


    c:\windows\tasks\bgsczjak.job


    c:\windows\system32\hggyvtun.dll


    c:\windows\system32\kuyukd.dll


    c:\windows\system32\urqnfwuv.dll


    c:\windows\system32\psqlpwd.dll


    c:\windows\system32\fmojqg.dll


    Hi Catalin,


    Attached is a compressed file with the files you have requested.


    Thanks,


    Paul

    /applications/core/interface/file/attachment.php?id=4426" data-fileid="4426" rel="">WindowsFiles.zip

  • Hi Catalin,


    I noticed that there are quite a few downlaods for the bd_sys_log.xml.zip file I had uploaded earlier. Is there potentially any information in that file that could result in a security issue if it landed in the wrong hands? Can BD employees only down load it?


    Would you like me to upload the zip with all of the logs and docs that I had originally accumulated for this issue?


    Thanks,


    Paul

  • Doing some searching I found a forum which discusses a solution to this virus as far as I can tell.


    http://forums.cnet.com/5208-6132_102-0.htm...orum-w;forums06


    To remove the virus, it recommends downloading Malwarebytes' Anti-Malware software which is free. Any opinion on whether to do this or not is appreciated! I've been out of business since Thurs and can't wait any longer.


    Thanks


    Paul

  • Sm3K3R
    Sm3K3R ✭✭✭
    edited January 2009

    Tiago,here we go again with another useless post of yours ,about the allmighty <removed>.


    I miss your samples. B)

  • I successfully (I think) removed the virus using Malwarebytes Anti-Malware.