Here's the links, the log's from these applications can be difficult to read
and could cause problems if you remove the wrong things, If you need any help
just send them to my email (
[email protected]) and I will check the
logs over, I'm not sure what this spyware is without seeing the logs so its
hard to comment at this stage but Ewido Security Suite may be able to help if
run in safe mode also getting this random file and uploading it at jotti's
malware scan site will help you know whats causing this,
Jotti's Malware Site
http://virusscan.jotti.org/
Open the site, Press Browse find the file then press Submit, This uses about
14 different Antivirus scanners to check the file and will give a good
indication of what your infected with.
Ewido Security Suite
download, install, and update the free version of ewido security suite
http://www.ewido.net/en/download/
When installing, under "Additional Options" uncheck "Install background
guard" and "Install scan via context menu". Click on update in the left menu,
then click the Start update button. After the update finishes close Ewido
Reboot to Safe Mode - Restart your computer and begin tapping the F8 key on
your keyboard and choose safe mode from the list
Run Ewido again. From the main menu click on 'scanner' then click 'Complete
System Scan' When ewido finds something, it will pop up a notification.
Select "Remove" and check the boxes "Perform action with all infections" and
"Create encrypted backup" then click on ok.When the scan finishes, click on
"Save Report" and save it to your desktop or c:/drive incase you need it
again.
To check things in more detail try Silent Runners and Rootkit Revealer
Silent Runners
http://www.silentrunners.org/Silent Runners.zip
The Purpose Of “Silent Runners†Is To Identify The Programs That Start Up
With Windows, The Script Will Report Any Non-Default Value It Finds
Unzip it to the desktop and double-click on it. If you get any kind of
warning message about scripts, please choose to allow the script to run. When
the scan is finished, a message will pop up and a logfile will have been
created on the desktop.
RootKit Revealer
http://www.sysinternals.com/files/rootkitrevealer.zip
Unzip it to the desktop, run it, and click Scan. This will generate a log
file; After the scan finishes choose File then Save it's log to c:drive (It
may save into Windows\system32 by default, change that to c:, if you get a
pop up about desktop not being a valid location press ok then change it to
c:drive) You need to ensure you are in normal windows mode to run it, You
might also get a warning from antispyware resident apps that a service is
being installed. It will be a random name but is from sysinternals.
Andy