D
Dave Baker
The intergoogles and Facetubes seem to be infested with nasties finding
their way onto my pc at the moment. It started with the printer churning out
blank pages all by itself which turned out to be a large spool file which
you couldn't delete created by something icky. Shifted that in Recovery
Console plus what appeared to be a randomly named dll file in the windows
directory and it all went quiet for a while until everything came back. The
spool file filled all available space on the C drive and a new one popped up
as soon as you deleted the last one.
Ran MBAM which found Vundo, Downadup, Sysvxd.exe and several registry
entries. Got rid of the lot but bugger me it's all back plus even more this
morning. Anyway just spotted the bloody thing had turned the firewall off so
it had a nice little backdoor every time I went online.
Note to self and others. Check the firewall settings haven't been tampered
with BEFORE you run anti malware progs or it'll be a waste of time. Anyway
fingers crossed for now. Hijack This seems to indicate nothing unusual
running anyway.
their way onto my pc at the moment. It started with the printer churning out
blank pages all by itself which turned out to be a large spool file which
you couldn't delete created by something icky. Shifted that in Recovery
Console plus what appeared to be a randomly named dll file in the windows
directory and it all went quiet for a while until everything came back. The
spool file filled all available space on the C drive and a new one popped up
as soon as you deleted the last one.
Ran MBAM which found Vundo, Downadup, Sysvxd.exe and several registry
entries. Got rid of the lot but bugger me it's all back plus even more this
morning. Anyway just spotted the bloody thing had turned the firewall off so
it had a nice little backdoor every time I went online.
Note to self and others. Check the firewall settings haven't been tampered
with BEFORE you run anti malware progs or it'll be a waste of time. Anyway
fingers crossed for now. Hijack This seems to indicate nothing unusual
running anyway.