Unususal DLL n EXE

Solved/Closed
pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009 - Jun 6, 2009 at 01:00 AM
 Nick - Feb 25, 2010 at 11:41 AM
Hello,
for the past few weeks my PC is showing a lot of virus activity,my anti virus is " Avira AntiVir Personal- Free Antivirus ", for the past few week it made my PC became realy slow on start up as well during in between browsing through internet .The list of virus detected are

unwise.exe
goldman.exe
mgign.dll
system32/x
REcycler\jwgkvsq.vmx

http://i429.photobucket.com/albums/qq12/pinso/unwiseexe.png
http://i429.photobucket.com/albums/qq12/pinso/mgigndll.png
http://i429.photobucket.com/albums/qq12/pinso/jwgkvsqvmx-1.png

jwgkvsq.vmx is sometimes detected in system32 as well.

From all this viruses unwise.exe n mgign.dll are frequently detected by my ativirus. System32/x was detected two three times by my Antirus, for this i installed a patch that was provided by Microsoft.net , from then on
system32/x has vanished. However the other viruses continues to pop up. Is this the reason my PC is really slow on start up. I tried to reduce the number of application on start up also but still my system is slow. I h 512 ram n intel inside celeron. I tried MosoForceDelete n Gipo FileUtilities but still no good.
Can someone help me solve my problem.
Related:

4 responses

misn31 Posts 6 Registration date Thursday April 2, 2009 Status Member Last seen June 14, 2009 15
Jun 6, 2009 at 03:50 AM
hi,
uninstall antivir and then download MalwareBytes AntiMalware.
run the software and it will remove all the threats in your computer.
try this link to download it:
http://ccm.net/telecharger/telecharger 1307 trojan remover
0
Yeah hi their i h Trojan Remover 6.7 installed in my PC along with Avira AntiVir Personal ( imo Avira is better), but anyways i fixed that problem by other method, thank u for ur time.
0
pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009 1
Jun 6, 2009 at 05:02 AM
Had some prob loggin in, anyways thanks
0
pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009 1
Jun 6, 2009 at 08:35 AM
Till this evening everything was fine, but now again these virus came back,,,,people can some experienced one Help me....
Virus shown again

1) http://i429.photobucket.com/albums/qq12/pinso/mgigndll-1.png

I h aCD-RW that i use as IN-CD , where i can store any files like a floppy.

2)http://i429.photobucket.com/albums/qq12/pinso/jwgkvsqvmx.png (This one is detected in my IN-CD hence F:)

This virus poped up again i.e.,2, i had erased n formatted it again , and after openin the CD tray n closing it, the virus was not detected . But again this evening after inserting the same Disk this virus showed up (i.e., (2) along with virus (1) ).
Its driving me crazy, its really bugging me.
I already h " Trojan Remover 6.7 " n " Avira AntiVir Personal- Free Antivirus "

CAN SOMEONE SUGGEST SOME FULL PROOF SOLUTION. WHEN WILL THIS FIGHT WITH SPYWARE N MALWARE END.
0
Hi their ,,,
i think jwgkvsq.vmx is a Conficker worm, ( symptom's are slow pc suddendly net fails to work n the Show Hidden file options turns to Dont show Hidden files ) thats a real pain in the a**, even i had that nasty lwgkvsq.vmx worm in my pc, my suggestion is try " Download Bitdefender or use Mc Afee tool " ( they r my personal favourite) , n see what happens. Respond if these warez fails u.

Can't say much about " Unwise.exe n Goldman.exe " (i think these must be trojans or some viruses,they both h .exe extension, may be some one who knows might help u with that) same goes for mgign.dll

p.s: u can get these warez from the Download section, see if that helps m8.
0
pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009 1
Jun 7, 2009 at 04:24 AM
i Dloaded " MalwareBytes AntiMalware " n " Lavasoft Ad-ware " , after installing n running it detected these viruses:

http://i429.photobucket.com/albums/qq12/pinso/Malwaredetected.png
http://i429.photobucket.com/albums/qq12/pinso/Adware.png
http://i429.photobucket.com/albums/qq12/pinso/Adware2.png

My system has bugun to be a little quiter n smoother as for McAfee n Bit Defender i dloaded n ran them, they did not detect anything except for some patches i use for some pirated warez.

But my problem is it still detect " system32/x " and " goldman.exe " not regularly but sometime n when it does then i'm not able to use the net anymore. I m not able to delete it anymore.

For System32/x i had dloaded a patch from Microsoft.Net it was quite useful, except for the System32/x did not use to pop up frequently. But it still does exits on my PC. I cant delete this virus.

This bug is really troubling ,,, im taking a lot of trouble to restart n wait for the system to start agin.
0
as u've mentioned dat u have a lotta pirated stuff on ur system i'm damn sure dat SVCHOST.EXE file itself is corrupt/modified and RPC is hit badly. to confirm dat plz do the following:
1. got to SYSTEM32 folder
2. change the view to "DETAILS" (include language)
3. go through the list of files and check for files dat wud say "language:...chinese...tamil...;orig. name:winres;type:...(RPC)"
4.also luk for files sopidkc.exe, liser.exe, liser.dll, winres.exe and winres.dll

...first and lemme know. if u find these files then it can be cured manually only else u'll have have to reformat and re-install the O/S.....and of-course use licensed prods.
0
pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009 1 > Acidevil
Jun 26, 2009 at 12:24 AM
As u've mentioned dat u have a lotta pirated stuff on ur system i'm damn sure dat SVCHOST.EXE file itself is corrupt/modified and RPC is hit badly. to confirm dat plz do the following:
1. got to SYSTEM32 folder
2. change the view to "DETAILS" (include language)
3. go through the list of files and check for files dat wud say "language:...chinese...tamil...;orig. name:winres;type:...(RPC)"
4.also luk for files sopidkc.exe, liser.exe, liser.dll, winres.exe and winres.dll

...first and lemme know. if u find these files then it can be cured manually only else u'll have have to reformat and re-install the O/S.....and of-course use licensed prods.


Thank u for replying ,,,,
since last advised by renewman, i downloaded Registry fix,,n came up with a lot of Malicious dll n exe ,, many Trojans i was only able to delete or remove it with the help of Registry fix,,,,but then i was left with only 2 dll i.e.,
" scvhost.dll "
" mslass.dll " ( i forgot the real name for this one)
i could not remove it, u name it anti-virus, malwarebyte ,registry check, Force delete.

Nothing helped so with a heavy heart i formatted my pc, now i m using DeepFreeze paid version. since then no malware no virus, occasionally i get Windows error . But not a single virus or malware.
http://i429.photobucket.com/albums/qq12/pinso/6-21-20099-34-53AM.png

Yes i do recollect seeing those names in system32 folder , i.e., "language:...chinese...tamil...;orig. name:winres;type:...(RPC)" .

But i guess i'll not h to worry anymore because of DF
0
Nick > pinsoman Posts 12 Registration date Friday June 5, 2009 Status Member Last seen July 25, 2009
Feb 25, 2010 at 11:41 AM
Use Linux. No viruses.
0