This is a read-only archive of malwareremoval.com. No new posts or registrations. Privacy Page
Malware Removal Forums

ib.adnxs.com infection

6 min read

✨ The volunteers who helped with this thread aren't active anymore, but you can still get a personalized answer — click Ask AI below.

This thread's last reply is from September 24, 2012, 8:29 PM UTC. Software, malware, and removal-tool advice below may be out of date — treat specific steps and download links with caution.

askey127 Admin/Teacher
You should be in pretty good shape.
Tell me how it's running.
Be extra careful about adding back plug-ins, extensions, and toolbars.
Most toolbars are not for your benefit.
Some interesting reading here (a bit technical) about a common source of the nuisance, and how it's picked up.
http://www.microsoft.com/security/porta ... Deyjalil.A
They show an "anti-spam filter" as an example of the infection source. There are quite a few others. Notice "VideoFileDownload"
simon1
Thanks for all the help.
I had a question. On top of having the annoying ib.adnxs ads showing up, we had our yahoo and google email accounts hacked into. We had someone delete our contact lists from both accounts and had the "please send money to Manila" emails sent out to our contact list. Are the 2 incidents related? We changed passwords on both accounts, so we haven't had any more hacks. And now with your fixes, we are not getting any more ads popping up, but I wondering if the 2 are related.
askey127 Admin/Teacher
simon1,
Whenever you have an unrequested trojan downloader, it can dump all kinds of files on your machine, to steal any kind of information.
Some of the downloaders that distribute ib.adnxs also may send you other malware.
I certainly would be suspicious that it was on your machine and copied some of your passwords when you visited those sites.
You also should be suspicious of any bank accounts, credit card, or other personal information passing thru the machine. (change all those passwords)
One of the infections is summarized here:
http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=TrojanDownloader%3AWin32%2FDeyjalil.A
This would correspond to downloading VideoFileDownload, if you specifically did that. (You did have VideoFileDownload on your machine)

Remote Access Infections can be dangerous to you personally, although I am not absolutely certain you had one. There is at least a suspicion you did have one that "phones home"..
For absolute safety going forward, experts feel it is best to re-install Windows after encountering one.
We have a whole thread in our Public Library about Remote Access Infections:
http://www.malwareremoval.com/forum/viewtopic.php?f=4&t=60204

Does this give you added info, even if not more comfort ?
askey127
simon1
yes. thank you very much.
askey127 Admin/Teacher

✨ Ask AI about this thread

No ads, no affiliate links — generated on request from this thread's own archived content, not written by forum staff. Never run a scan/removal tool as a self-service step if the original thread describes it being done under a helper's direct supervision, and don't include your name, email, or other personal details in a follow-up question. See our privacy page for details on how this works.