Go Premium for a chance to win a PS4. Enter to Win

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 2623
  • Last Modified:

how to remove "Generic Downloader X" Virus.

A guy in my office has a newer Windows XP Pro pc that was having alot of pop-ups urging him to buy an anti-virus solution.  His PC allready had an active subscription of Sonic WALL Enforced Antivirus running on it.

I ran some anti virus scan and deleted all the files that I could.  I could not deleted the following file however "ocicx.dll" which was located in Windows/System32.

How do I get rid of this anoying virus?  
0
Gary Gordon
Asked:
Gary Gordon
  • 3
  • 2
1 Solution
 
Gary GordonAuthor Commented:
Correction,  the name of the infected file was "obicx.dll".
0
 
phototropicCommented:
The file is related to Zlob Trojan which installs the VirusResponse Lab 2009 rogue anti-spyware program :

http://www.bleepingcomputer.com/startups/obicx.dll-24088.html

I would recommend scanning with Malwarebytes' Antimalware:

http://www.malwarebytes.org/mbam.php

Download the trial version, update it fully, then click on "Perform a quick scan".  Show results then click on "remove selected". Post the log here.

I would also run Smitfraudfix:

http://siri.geekstogo.com/SmitfraudFix.php

Run option 2 in safe mode.  Post the log.

If you still have problems after that, download and run SDFix:

http://www.bleepingcomputer.com/files/sdfix.php

It would also be a good idea to reset your hosts file:

http://www.mvps.org/winhelp2002/hosts.htm

Good luck!!!
0
 
Gary GordonAuthor Commented:
Wow -  the Anti Mal Ware and the Smit Fraud Fix were very effective.
0
 
Gary GordonAuthor Commented:
wow
0
 
phototropicCommented:
Glad you got it sorted.

Thanks for the points and grade...
0

Featured Post

 [eBook] Windows Nano Server

Download this FREE eBook and learn all you need to get started with Windows Nano Server, including deployment options, remote management
and troubleshooting tips and tricks

  • 3
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now