i cant seem to delete the application which is found in my
SYSTEMS file.It is named "elitevxa32".Random adware has
been appearing when i am connected to the internet.I
suspect this "elitevxa32" as i have used many programmes
to try to rid the adware.From hijackthis, i tried to
delete the value but it just came back.In my registry, the
startup item is named as "antiware" and the command, of
course the "elitevxa32.exe" from my SySTEMS file.If i
delete it, it comes back again.
It is definitely a newer malware. Could you please copy, then rename the
file to elitevxa32.xxx, compress it to a .zip file, password protect it,
and then email it to me ?
I'll get the file to MS and send it to AV vendors.
Thanks !
Apparently the file is being protected either by a super hidden .dll , a
Guardian file, or a phantom Service. Suggest you open Task Manager and
check to see if it is a running Process. End Process it if so. Then run
MSAS in Normal mode and do a Full System scan with all 3 boxes checked
and all HD's/partitions included in the scan. Reboot to Safe Mode and
scan again.
Doubt that this will remove the malware though. It would be best if you
posted this to a reputable spyware forum. Please read the guidelines of
the forum you choose prior to posting :
MS-MVP 2004-2005
Windows Server - Software Distribution
Windows - Security
Ask a Question
Want to reply to this thread or ask your own question?
You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.