Solved

how to remove "Generic Downloader X" Virus.

Posted on 2008-10-22
5
2,614 Views
Last Modified: 2013-11-22
A guy in my office has a newer Windows XP Pro pc that was having alot of pop-ups urging him to buy an anti-virus solution.  His PC allready had an active subscription of Sonic WALL Enforced Antivirus running on it.

I ran some anti virus scan and deleted all the files that I could.  I could not deleted the following file however "ocicx.dll" which was located in Windows/System32.

How do I get rid of this anoying virus?  
0
Comment
Question by:Gary Gordon
  • 3
  • 2
5 Comments
 
LVL 4

Author Comment

by:Gary Gordon
ID: 22780061
Correction,  the name of the infected file was "obicx.dll".
0
 
LVL 23

Accepted Solution

by:
phototropic earned 500 total points
ID: 22780138
The file is related to Zlob Trojan which installs the VirusResponse Lab 2009 rogue anti-spyware program :

http://www.bleepingcomputer.com/startups/obicx.dll-24088.html

I would recommend scanning with Malwarebytes' Antimalware:

http://www.malwarebytes.org/mbam.php

Download the trial version, update it fully, then click on "Perform a quick scan".  Show results then click on "remove selected". Post the log here.

I would also run Smitfraudfix:

http://siri.geekstogo.com/SmitfraudFix.php

Run option 2 in safe mode.  Post the log.

If you still have problems after that, download and run SDFix:

http://www.bleepingcomputer.com/files/sdfix.php

It would also be a good idea to reset your hosts file:

http://www.mvps.org/winhelp2002/hosts.htm

Good luck!!!
0
 
LVL 4

Author Comment

by:Gary Gordon
ID: 22781468
Wow -  the Anti Mal Ware and the Smit Fraud Fix were very effective.
0
 
LVL 4

Author Closing Comment

by:Gary Gordon
ID: 31508901
wow
0
 
LVL 23

Expert Comment

by:phototropic
ID: 22798828
Glad you got it sorted.

Thanks for the points and grade...
0

Featured Post

How to improve team productivity

Quip adds documents, spreadsheets, and tasklists to your Slack experience
- Elevate ideas to Quip docs
- Share Quip docs in Slack
- Get notified of changes to your docs
- Available on iOS/Android/Desktop/Web
- Online/Offline

Join & Write a Comment

Suggested Solutions

These are on the increase and getting more common these days. Users who use the Google search engine may complain of having their search redirected to unwanted sites, regardless of what browser is used. This happens when the system is infected with…
PREFACE The purpose of this guide is to provide information to successfully add specific IIS 7.0 role services for the Symantec Endpoint Protection Manager (SEPM) to function properly when installed on Windows 2008. AUDIENCE Information Technol…
This video discusses moving either the default database or any database to a new volume.
This tutorial demonstrates a quick way of adding group price to multiple Magento products.

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

25 Experts available now in Live!

Get 1:1 Help Now