Page 2 of 4 FirstFirst 1234 LastLast
Results 11 to 20 of 33

Thread: spybot can't remove win32.tiny.abk...

  1. #11
    Junior Member
    Join Date
    Feb 2008
    Posts
    4

    Default

    I HAVE THE SAME PROBLEMS AS REPORTED ABOVE

    THANKS FOR PORT 25 INFO

    This worked for me at first, I went into my linksys
    router and blocked all ports 0-26, my internet
    connection immediately improved, this worked
    at first, but shortly after the connection
    is still bad but it is better than before.

    This thing is also screwing up my other programs.
    Everything is slower but not as noticeable
    as really bad internet connection.

    AVG does not pick this up.
    Spybot kills files but cannot get the source.

  2. #12
    Junior Member
    Join Date
    Feb 2008
    Posts
    4

    Default

    THIS CRAP KEEPS COMING BACK

    I HAVE HAD ZERO PROBLEMS ON MY SYSTEM BEFORE THIS

    --- Report generated: 2008-01-31 21:32 ---

    Microsoft.WindowsSecurityCenter_disabled: Settings (Registry change, fixed)
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start!=W=2

    Win32.Tiny.abk: Data (File, fixed)
    C:\WINDOWS\Temp\AE8AB41F91F72503.tmp

    Win32.Tiny.abk: Temporary file (File, fixed)
    C:\WINDOWS\Temp\7CF28762C38CA0D4.tmp


    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

  3. #13
    Junior Member
    Join Date
    Feb 2008
    Posts
    4

    Default

    Is there any way to use Spybot just in particular
    chosen folders, so I can debug without running
    the whole thing for an hour ?

    I will upload file if I can copy it.

    Do we got SpyBot on this ?

    Nothing else picks this up.
    AVG and AVAST pick nothing up.

    Everything is updated.
    Last edited by MAGNES; 2008-02-02 at 04:43.

  4. #14
    Junior Member
    Join Date
    Feb 2008
    Posts
    4

    Default

    Thanks to everyone above for the tips.

    I have the critter under control now.

    IT IS USING SERVICES.EXE TO CONNECT TO SUSPECT
    COMPUTER

    IT STOPPED WRITING ON MY MACHINE, I WAS ABLE
    TO DELETE .TMP FILES MANUALLY AND THIS TIME
    THEY HAVE NOT COME BACK

    PORTS 0-26 ARE BLOCKED BY MY ROUTER

    SYGATE IS PERMANENTLY BLOCKING SERVICES.EXE

    BUT THE SOURCE IS STILL ON MY MACHINE

    MORE HERE

    INFESTED 3 days of hell
    http://www.goldenagora.com/phpBB3/vi....php?f=6&t=943

    FOLKS ! YOU CAN GET THIS UNDER CONTROL LIKE ME.
    AT LEAST YOU KNOW WHAT IT IS NOW.

    HAVE A LOOK AT THIS, SOMEONE NEEDS TO CONTACT THESE PEOPLE AND MAYBE INVESTIGATE THEM

  5. #15
    Junior Member
    Join Date
    Feb 2008
    Posts
    1

    Default Win32 Tiny.abk

    Quote Originally Posted by guy-chi View Post
    spybot can't remove win32.tiny.abk...
    please help!
    I had the same problem this is what cleared mine. It seems to be a hidden program but try it

    Edit: Removed, no malware removal advice in this forum. Please see:
    "BEFORE you POST"(READ this Procedure BEFORE Requesting Assistance)
    NOTE:We do NOT ask Users to run fixes before helpers have analyzed HJT/KAV scans

    Good luck if it works pass it on
    Last edited by tashi; 2008-02-14 at 18:33. Reason: removed links to tool that should be used under supervision

  6. #16
    Junior Member
    Join Date
    Feb 2008
    Posts
    1

    Default

    Ok, for anyone trying to remove this thing, I have found this on a french forum. This website has software that got rid of this, nothing else did.
    Removed
    Here's the link to the software, it's dos based. You have to run it in safe mode.

    Removed

    This is the only thing that worked.
    Last edited by tashi; 2008-02-14 at 22:23. Reason: removed links

  7. #17
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,955

    Default

    Hello.

    Once again, please do not post fixes/tools in the Spybot-S&D support forums.
    http://forums.spybot.info/showthread.php?t=1266


    "BEFORE you POST"(READ this Procedure BEFORE Requesting Assistance)

    • Until a helper responds, the HJT log has not been analyzed. Please wait to be advised and don't run fixes until asked. This is especially important if your Operating System is Windows Vista!
    • Please note that all instructions given are customized for that member's computer only, the tools used may cause damage if run on a computer with different infections. Your symptoms may only appear to be similar.
    I have seen numorous users making their machines unstable by running tools willy nilly.

    Best regards.
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

  8. #18
    Junior Member
    Join Date
    Feb 2008
    Posts
    10

    Default

    [QUOTE=tashi;164504]Once again, please do not post fixes/tools in the Spybot-S&D support forums.
    http://forums.spybot.info/showthread.php?t=1266


    [URL="http://forums.spybot.info/showthread.php?t=288"]

    Unfortunately for me, Im another statistic with this variant of win32.tiny.abk that seems to be a mass mailer. It doesn't have any obvious entry point in HJT logs and Ive exhausted all spyware (counterspy, spybot, spyware doctor) and virus (kapersky, nod32, norton 2008, panda, avg) tools in attempt to eliminate this.

    This appears to be a different variant of the one detailed in january's spybot update, from what I've gathered, this variant has only existed since early this month.

    Its unfortunate that this site's rules goes against the whole consensus of the internet, freedom of information. If its a legal concern, then maybe add a liability (no warranty) clause and have forum moderators proactively commenting for liability such resolutions rather than removing them.

    The purpose of this forum is to identify issues and present resolutions, I think there should be serious look to Safer Networking's approach to moderation of information.

    /rant -> Now I got 4 hours to format the machine, reupdate, reinstall 3rd party apps and get some sleep to get my customers machine back to them. hence why im

  9. #19
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,955

    Default

    Hi there.

    Developers of some tools used in help forums requested that their tools be applied by trained helpers after log analysis, to avoid users turning their machine into a doorstop.

    For infections not removed by normal means we have the Malware Removal Forum, where volunteers trained to use such tools as safely as possible assist people.

    A google search will show links to others' fixes and anyone can find and use that information as they wish.

    Best regards.
    Last edited by tashi; 2008-02-25 at 19:15. Reason: clarify
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

  10. #20
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,955

    Default

    Everyone, if Spybot-S&D does not detect or remove an item and you can find the files, please zip or rar them and send to: detections(AT)spybot.info (Replace AT with @)

    Thanks a bunch.
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •