By PrivateCranky · 4 replies
May 6, 2009
  1. Hello all,

    Please be gentle, it's my first question post here!

    I've recently had the opportunity to attempt to remove a new nasty. This one is rather compilcated, and it took me several attempts to get rid of it.

    I've read the special sticky notes on this part of the forums. The computer in question was not used for financial transactions of any kind, so it was safe to not reformat it.

    I'm not sure how the nasty got onto the computer, but it sure was difficult to get rid of.

    I think the crux problem was a .dll called "wyyo.dll", but I'm a bit frightened by chasing this one!

    I hope the experts can help here!

    Many thanks,

    Pvt. Cranky.
    Hi Touch,

    Thanks for replying. I believe I have fully removed this nasty from my friend's computer, but I wanted to check here, because I've not seen this one in the wild before and I believe it is a new one (I suppose it could be a variant of another one but I can't be sure, and would only like to examine it in a secure environment). However, seeing as I believe it is removed, I do not have a sample of it to give to you - maybe someone else will have one?

    I searched on this board before my first question post, and wanted to know if the experts here have had any experience or knowledge with this nasty.

    Brilliant, thanks Touch, that was all the information I was after.

    I'm sill wondering where "patient zero" was so to speak.

