I’ve contracted a virus on my Win 7 machine. It’s the Surabaya virus, with one of the hallmarks being a pop up window during the Windows welcome screen that reads:
Surabaya in my birthday Don't kill me, I'm just send message from your computer
Then a handful of lines of Indonesian text, with a lone “OK” button at the bottom. Other symptoms include not seeing any folders in Windows Explorer (even though they exist–I can access them by typing them into Win Explorer). Any ideas on how I can rid myself of this? Maybe it goes by another name?
Further info:
I have been using the latest version of Avast, with the latest definitions.
I can find information about this with a Google search, but nothing from the trusted names in antivirus (Avast, Norton, AVG, Microsoft). All the hits are from small sites I’ve never heard of. Each of these sites contains different removal directions, with the lone similarity being that I have to download and install its own malware remover/scanner. I’ve tried about 3 of these, and none have worked.
Any thoughts on how I can resolve/troubleshoot further?
Thanks for the reply. But should I start at the Farbar Recovery Scan Tool and carry out the “aswMBR.exe” instructions as well? Or should I carry out JUST the Farbar instructions?
Great thanks. It’s my first time here though, so what does that mean exactly? There’s an Avast team that will analyze those results and get back to me? In this forum?
Save this as fixlist.txt, in the same location as FRST.exe
Run FRST and press Fix
On completion a log will be generated please post that
THEN
Download MCShield to your desktop and install
It will initially run a scan and show the result as a toaster by the system clock
Then in the control centre select scanner and tick unhide items on flash drives
Then get the log which will be located under the logs tab on the main page
And post that
FINALLY
Please download AdwCleaner by Xplode onto your desktop.
[*]Close all open programs and internet browsers.
[*]Double click on AdwCleaner.exe to run the tool.
[*]Click on Scan.
[*]After the scan is complete click on “Clean”
[*]Confirm each time with Ok.
[*]Your computer will be rebooted automatically. A text file will open after the restart.
[*]Please post the content of that logfile with your next answer.
[*]You can find the logfile at C:\AdwCleaner[S1].txt as well.
OK I attempted to follow @essexboy’s instructions. In the first step, I copied the text to fixlist.txt, saved it to the same location as FRST, and ran FRST with the option to “Fix.” After about 30 seconds, the application encountered a Windows error, “Farbar Recovery Scan Tool has stopped working.” I have attached a screenshot of that, FRST-error.jpg. I have also attached the Windows details, FRST-error.txt. And finally, FRST also created a log of that entire process, which I have attached, Fixlog.txt.
I decided to stop here and relay this info before continuing. Please advise.
Thank you for posting your logs. At this point since you are having problems, do nothing and wait for Essexboy to give you further instructions. He comes on the forum later in the day, so please be patient. Thank you.