Fortunately it seems like the core infection is still working since I still see it trying to send junk.However, this is not some quiet virus. This system is obviously infected. Constantly popping up with messages about things crashing, explorer.exe hasn't worked in days, and the thing runs like garbage. Subtlety seems like it would be important for most viruses so they can just go undetected. But any level of user would notice something is wrong at this point.
*Edit: A day later, the new process that's crashing is now IonMeramkel Antibibus. I assume as variations come out, the name will continue to change.
*Edit2: How about I just make a list with some of the crashing programs I see. If for some reason you have stumbled across this page googling these, you very likely are infected with malware and should get that checked out. Some places online are mentioning zbot trojans. This may partially be the case, but the original infection was due to Asprox/Kuluoz . With Asprox/Kuluoz having it's modules, there's no telling what could have been installed later.
- IenMeramkel Antibibus
- IonMeramkel Antibibus
- MapMark Microsoft
- RobotView
- JonMeramkul Antibibus
- UpdateFlashPlayer_<alnum string>.exe
- Apriori
- JenMeramkel Antibibus
- JenMeromkel Antibibus
- MyFtp
Hi there ! What antivirus had you used to eliminate the shit ? I've also seen in my taskmanager a new process named ydseav.exe and in description JenMeramkel Antibibus. I had never used an antivirus before and I would not pay for one. Thanks
ReplyDeleteThat ydseav.exe appears to be a randomly named exe that the Antibibus processes create (or something creates). There can be a few running and the names appear to always just be randomly generated. I would probably suggest trying something like Malwarebytes to remove it (they have a free edition) since I've had good luck with that in the past, but personally if I were infected on a computer I cared about I'd wipe the machine and start over. That will be the most thorough cleansing but also the most time tedious and consuming.
Delete