Link to home
Start Free TrialLog in
Avatar of Jess31
Jess31

asked on

Legmir.BZ HELP

I have something - virus/malware... not sure what to call it, but I get bombarded with popups, add, endless IE Tabs... etc.
I rain Spyware doctor by PC Tools (?) and it reported that I have legmil.BZ which sounds right.
But I have Avast installed and it did a full scan on my pc and while it came up with a number of viruses that it says it fixed it does not find this one, and I don't believe it even knows of such a virus from searching it's help.

How do I get rid of this?
Should I be using a diferent antivirus? I used to use AVG but this legmir.BZ (and others) entered under AVG's watch so I got rid of it (it was also very heavy on the little resources I have).
ASKER CERTIFIED SOLUTION
Avatar of Thomas Zucker-Scharff
Thomas Zucker-Scharff
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I would also recommend an antiroot kit, run it prior to MWBytes et all.

Sophos makes a good free one:  http://www.sophos.com/products/free-tools/sophos-anti-rootkit.html

Antirootkit is an excellent Idea.  I wrote a blog on rootkit detectors last year with links to various software: http://zucker-scharff.blogspot.com/2009/11/rootkit-detectors.html
I would stick with Avast, and clean the system using ComboFix and attach the log here for us to check to make sure it's clean.

Please download ComboFix by sUBs:
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
(If it doesn't run, re-download and rename before saving to your desktop)

Now STOP all your monitoring programs (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix.
Double click combofix.exe & follow the prompts.
When finished, it will produce a log. Please save that log and attach it in your next reply by pasting it in the "Code Snippet" or "Attach File" window.
Re-enable all the programs that were disabled during the running of ComboFix..

Note:
Do not mouse-click combofix's window while it is running. That may cause it to stall.

CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
 
If needed, here's the Combofix tutorial which includes the installation of the Recovery Console:
http://www.bleepingcomputer.com/combofix/how-to-use-combofix 
Avatar of Jess31
Jess31

ASKER

Malware Bytes wouldn't install. So I tried Super Anti Spyware and it worked very nicely, and quite fast!

I thank everyone for all the great info