pabiyhf.exe virus?

NosajAbihs

New member
Local time
9:44 AM
Messages
2
Does anyone know anything about this exe? It's in my app roaming file, when I delete it, it reappears and is eating resources and reaching out to IP addresses.

Attached is a screen shot of what its doing to my system, any help would be great.
 

Attachments

  • pabiyhf.jpg
    pabiyhf.jpg
    202.4 KB · Views: 20

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
hp
OS
windows 7
Please use this tool to update your profile specs

And then use this tool to post all the files here

Please run Autoruns and then click on File> Save.. Save the file in .arn format and upload here. Will have a look
 

My Computer

Computer Manufacturer/Model Number
Nothing specific....what ever the clients provide for Repair
OS
Windows 7 ultimate x64
NosajAbihs


I have never heard about this virus. Use best antivirus to delete this
Try this solution may be it will help you

-Open that .exe file in notepad and delete everything and save the file.
-Now change the file status back to read only mode.
-so that the virus could not get access again

Best of luck
 

My Computer

Computer type
PC/Desktop
OS
microsoft window7 Ultimate x64
NosajAbihs


I have never heard about this virus. Use best antivirus to delete this
Try this solution may be it will help you

-Open that .exe file in notepad and delete everything and save the file.
-Now change the file status back to read only mode.
-so that the virus could not get access again

Best of luck

This ^ is really poor advice!

Please follow centaurs suggestion. In addition, you may also seek opinion by uploading the file to dedicated online virus scanners. Use this tutorial to help you with that:

http://www.sevenforums.com/tutorials/277740-online-scanners-scan-suspicious-files-your-pc.html

Regards,
Golden
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Golden Mk. I.4
OS
Windows 10 Pro x64 ; Xubuntu x64
CPU
Intel i7 860 @ 2.80 GHz O/C'ed to 4.0GHz
Motherboard
Gigabyte P55A-UD3R Rev.1. Award BIOS F13
Memory
16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24)
Graphics Card(s)
EVGA NVidia GTX 560 1024MB
Sound Card
Realtek Integrated
Monitor(s) Displays
Dual Samsung SyncMaster 2494HS
Screen Resolution
1920*1080 and 1920*1080
Hard Drives
1*Samsung 840 EVO 120GB SSD;
1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
1*Samsung F1 SpinPoint 1TB;
2*Western Digital 1TB External USB 3.0
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0
PSU
Thermaltake ToughPower QFan 750W
Case
Thermaltake Element S VK60001W2Z
Cooling
Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans
Keyboard
Logitech G110
Mouse
Logitech MX518
Right click to start Task Manager. In the processes, click on the bad file, then end the process.

Next, clean out all temporary files, don't reboot.

Now, Download AdWareCleaner AdwCleaner Download to your desktop
1.Right-click on adwcleaner.exe and select Run As Administrator to launch the application.
2.Click on Delete button.
3.Confirm each time with OK.
4.Your computer will be rebooted automatically. A text file will open after the restart. Please post the content of that logfile in your reply.

Check to see if the bad file has re-appeared in Task Manager process. If it has, end the process again.


I'd like you to scan your machine with ESET OnlineScan
  1. Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  2. Click the
    esetOnline.png
    button.
  3. For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    1. Click on
      esetSmartInstall.png
      to download the ESET Smart Installer. Save it to your desktop.
    2. Double click on the
      esetSmartInstallDesktopIcon.png
      icon on your desktop.
  4. Check
    esetAcceptTerms.png
  5. Click the
    esetStart.png
    button.
  6. Accept any security warnings from your browser.
  7. Check
    esetScanArchives.png
  8. Push the Start button.
  9. ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  10. When the scan completes, push
    esetListThreats.png
  11. Push
    esetExport.png
    , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  12. Push the
    esetBack.png
    button.
  13. Push
    esetFinish.png
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
NosajAbihs


I have never heard about this virus. Use best antivirus to delete this
Try this solution may be it will help you

-Open that .exe file in notepad and delete everything and save the file.
-Now change the file status back to read only mode.
-so that the virus could not get access again

Best of luck

This ^ is really poor advice!

Please follow centaurs suggestion. In addition, you may also seek opinion by uploading the file to dedicated online virus scanners. Use this tutorial to help you with that:

http://www.sevenforums.com/tutorials/277740-online-scanners-scan-suspicious-files-your-pc.html

Regards,
Golden



When I searched for above problem and i found the solution more suitable that i have posted above.
Anyways thanks for the guidance
 

My Computer

Computer type
PC/Desktop
OS
microsoft window7 Ultimate x64
So I think I figured it out. I believe the exe above was tied to either Windows Defender or McAfee. I recently downloaded both in response to information from my ISP and sluggish performance from this pc. After uninstalling both and switching to Norton, the pabiyhf.exe disappeared or was stopped by Norton. Now I have cotuh.exe doing similar tasks yet when I shut down Norton, the cotuh.exe ends and doesn't start until I restart Norton. So its either part of Norton or a virus that only runs when Norton is on. Now I'm trying to figure out what igheh.exe is for and what Notekope is in my roaming apps data.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
hp
OS
windows 7
Holly crap !!!!

Somebody ... just shoot me in my head !!!! :shock:
 

My Computer

Computer Manufacturer/Model Number
Nothing specific....what ever the clients provide for Repair
OS
Windows 7 ultimate x64
It took you 2 days to come up with that answer ??? :banghead::banghead::banghead:
 

My Computer

Computer Manufacturer/Model Number
Nothing specific....what ever the clients provide for Repair
OS
Windows 7 ultimate x64
Have you followed Jacee's or Golden's suggestions?
 

My Computer

Computer type
Laptop

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Back
Top