RON ads by Gooochi. The program/hack/script is generally hidden in large image files or AVI files. It contains and actively hides and replicates several key loggers, trojans and registry changes, (including scripting to rewrite some of avasts security protocols).
When the file was opened I noticed that a windows cmd terminal was briefly opened, then avast blocked access to several malicious sites. I noticed the computer working while it was not supposed to be and opened Task Manager to find out what was causing the work. Avast.setup was one of the programs running in the processes tab although I had not touched Avast or had any of it’s panels open. Shortly after this iexplore.exe opened its first ads under the title RON ads by Gooochi.
I was extremely suspicious and immeadiately ran Virus checks, with nothing found. I restarted the computer and booted up the Task Manager straight away. Avast again blocked access to several more malicious sites and then Avast.setup was run again. I thought I was in the clear briefly when nothing further appeared to happen. Then the pop ups came en-mass. Sometimes overriding full screen applications.
I think I’ve managed to get rid of most of the Malware using the steps set out in the link below.
Can anyone tell me how to find out what the scripts actually changed and how to return avast! to normal?
http://www.geekstogo.com/forum/Ads-gooochi-MUST-GET-RID-THIS-t197135.html