No need. Expect new announcements in the next few months as we roll out new offerings: make sure you follow @teamcymru and apply for our news mailing list via https://www.team-cymru.org/News/dnb.html. We look forward to continuing to offer similarly useful tools to you in the future. antivirus 4.8.1335 [VPS 090430-0] *On-access scanning enabled* (Updated) ============== Running Processes =============== C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\WLTRYSVC.EXE C:\WINDOWS\System32\bcmwltry.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

Team Cymru has a proud tradition of providing useful tools to assist the Information Security Community. shield is able to keep it from re-directing, or popping up...but I still have weird redirects (pages I obvious did not click to go to) and slow internet reactions at times.

I don't know how I got infected but did. A case like this could easily cost hundreds of thousands of dollars.

I turned off the system restore (where I believe the remnants were hiding), and re-ran Ad-Aware and SAS. Several functions may not work. Everyone else please begin a New Topic. We must prioritize how we spend our resources, and even more so when we are offering services at no cost.

Analysis Date2013-11-03 17:41:19MD5ac4c13a5d570f20fe2250b93e93e66b4SHA11bb94cedf6e174c5e6f2ed7822352321227eec94Static Details:File typePE32 executable for MS Windows (GUI) Intel 80386 32-bitLanguage040904B0 Section.text md5: cca671468e4c5c0699b6a9396e145816 sha1: aae33a90f6f9831cc7c193ea82e98d2e9df9a5c2

As with every commercial organization, we have finite resources. Crazy ad sound in background!

SORRY: Infected and can't find virus. BleepingComputer is being sued by Enigma Software because of a negative post of SpyHunter. SORRY: Infected and can't find virus. network scanner starting detecting and blocking a malicious site called: directitfast.com/seneka/engine/engine.php?d=(random letters).

after it's quick scan)used MBAM (i still could download and update everything)used Avira anti-rootkitused Smitfraudfix (but it didn't find anyting i guess)DrWeb did remove the actual virus i guess, it was Web Scanner;c:\program files\alwil software\avast4\ashWebSv.exe [2008-11-22 352920] R3 OZSCR;O2Micro SmartCardBus Smartcard Reader;c:\windows\system32\drivers\ozscr.sys [2007-10-3 92550] S2 lxdfCATSCustConnectService;lxdfCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxdfserv.exe [2008-1-11 99248] S3 JL2008PC;Digital Camera;c:\windows\system32\drivers\jl2008pc.sys [2005-7-11 125370] S3 NAVENG;NAVENG;c:\progra~1\common~1\symant~1\virusd~1\20080519.003\NAVENG.SYS [2008-5-19 82256] S3 NAVEX15;NAVEX15;c:\progra~1\common~1\symant~1\virusd~1\20080519.003\NAVEX15.SYS [2008-5-19 895408] S3 We listen keenly to the community feedback and we have determined that there are a number of new services that are needed.

Include the address of this thread in your request.