?Malicious? files in C:\Users\MYUSER\AppData\LocalLow\Adobe.

CGV2222

New member
Local time
10:59 AM
Messages
5
So, when I'm in my normal computer, a file kept trying to download .gif files and stuff and Avast! kept marking it as malware and stopping it from downloading, so I tried to figure out when it was from, and it led me to my Adobe folder in LocalLow, and I see 3 folders, named a bunch of random letters that have files that are ALSO named things completely random, a .exe file keeps executing itself while I'm using the computer and using 90kb of RAM and opens MANY of them, however, Avast! and MalwareBytes have had no luck removing it, I'm in safe mode with networking right now and still, nothing. I'd really appreciate some help.

The file that kept auto executing was
gyizacobfkwx.exe
it seems to be masquerading itself as google chrome.

Inside my adobe folder, one of the gibberish folders is filled with stuff that looks like a /users folder merged with my windows folder, except none of the inside folders contain any files.

In my normal computer use, I also tried running rkill, but rkill didn't do anything at all. I don't know what I'm dealing with right now.

I tried to run Avast! but it seemed to have disabled avast somehow? I don't know how. It tells me that it can't run the scan because of missing endpoints.
 

My Computer My Computer

At a glance

Windows 7 64 bit
OS
Windows 7 64 bit
Try checking the file on virustotal.com and see what anti-virus products pick up something and to find out what kind of malware it is. Then see if any of the well known AV's that detected something have a free online scanner you can try.

You can try Autoruns to perhaps stop the program from starting after boot. Autoruns for Windows
 

My Computer My Computer

At a glance

Windows 7 Pro 32Intel(R) Core(TM) i5 CPU M 540 @ 2.53GHz4,00 GB (Usable 2,98)NVIDIA NVS 5100M
Computer type
Laptop
Computer Manufacturer/Model Number
HP Elitebook 8540p
OS
Windows 7 Pro 32
CPU
Intel(R) Core(TM) i5 CPU M 540 @ 2.53GHz
Motherboard
Hewlett-Packard 1521
Memory
4,00 GB (Usable 2,98)
Graphics Card(s)
NVIDIA NVS 5100M
Sound Card
NVIDIA High Definition Audio
Screen Resolution
1600x900
Hard Drives
INTEL SSDSA2CW120G3
Antivirus
F-Secure Internet Security
Browser
IE, Firefox, Opera
Other Info
Sandboxie,
SRP (Software Restriction Policy),
EMET (Enhanced Mitigation Experience Toolkit),
WFC (Windows Firewall Control by BiniSoft),
Malwarebytes Premium
Any luck?

I am experiencing the exact same issue, with different file names of course.
Was there ever a solution offered that was NOT an advertisement for antivirus software?
 

My Computer My Computer

At a glance

Windows 7 Home Premium 32bit
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Asus
OS
Windows 7 Home Premium 32bit

My Computer My Computer

At a glance

Windows 7 Pro 32Intel(R) Core(TM) i5 CPU M 540 @ 2.53GHz4,00 GB (Usable 2,98)NVIDIA NVS 5100M
Computer type
Laptop
Computer Manufacturer/Model Number
HP Elitebook 8540p
OS
Windows 7 Pro 32
CPU
Intel(R) Core(TM) i5 CPU M 540 @ 2.53GHz
Motherboard
Hewlett-Packard 1521
Memory
4,00 GB (Usable 2,98)
Graphics Card(s)
NVIDIA NVS 5100M
Sound Card
NVIDIA High Definition Audio
Screen Resolution
1600x900
Hard Drives
INTEL SSDSA2CW120G3
Antivirus
F-Secure Internet Security
Browser
IE, Firefox, Opera
Other Info
Sandboxie,
SRP (Software Restriction Policy),
EMET (Enhanced Mitigation Experience Toolkit),
WFC (Windows Firewall Control by BiniSoft),
Malwarebytes Premium
Let's see what the following detects...

Please use the Farbar Recovery Scan Tool Download
Select the version that applies to your system.
Save it to your Desktop.
Double-click the downloaded file to run it.
When the tool opens, click Yes to the disclaimer.

Press the Scan button.

When done, the tool makes a log, FRST.txt, in the same directory from which the tool is run (Desktop).

:ar: Please provide the FRST.txt in your reply.
The first time the tool is run, it also creates another log: Addition.txt

:ar: Also post the Addition.txt in your reply.
 
Last edited:

My Computer My Computer

At a glance

Windows 7 Home Premium
Computer type
PC/Desktop
Computer Manufacturer/Model Number
An ol' eMachines
OS
Windows 7 Home Premium
Internet Speed
Fine for me...I'm retired!
Back
Top