A couple more things and Or even submit the RunScanner log to to on-line analysis.6.

File C:\Windows\System32\XyadMUvw.ini2 not found! [Files/Folders - Modified Within 30 days] File delete failed. File C:\Windows\System32\QAbadJlm.ini not found! Please run SD Fix

  1. Since the installation of webroot, and a few full sweeps, my computer has speed up a lot, and is now down to ONE repeating virtuemonde.
  2. etc, do you want to block it?" in which I replied "yes".
  3. Files Infected: C:\Windows\System32\xxyaYqQj.dll (Trojan.Vundo.H) -> No action taken.
  4. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully.
  6. C:\Users\User\AppData\Local\Temp\tmp0001fd90 (Trojan.Vundo) -> No action taken.
  7. here are the logs for Mbam and Kaspersky: Thursday, January 29, 2009 Operating System: Microsoft Windows XP Home Edition Service Pack 3 (build 2600) Kaspersky Online Scanner 7 version: Program
  8. When I was infected with "virtuemonde", I had AVG running on my computer.

If you need any logs I will be happy to post them up. When the installation begins, follow the prompts and do not make any changes to default settings. Several functions may not work. C:\WINDOWS\system32\ltxsftlx.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully.

Select your Platform and check the box that says: "I agree to the Java SE Runtime Environment 6 License Agreement.". Clean your temporary files.2. C:\Windows\System32\yjspzf.dll (Trojan.Vundo) -> No action taken. C:\Windows\System32\iIBRLdET.dll (Trojan.Vundo) -> No action taken.

generally everytime i open a new link or tab it seems. C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\WWMZCDQI\upd105320[1] (Trojan.Vundo) -> No action taken. This site is completely free -- paid for by advertisers and donations. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\msserver (Trojan.Vundo) -> No action taken.

C:\Windows\System32\qoMdbYpq.dll (Trojan.Vundo) -> No action taken. C:\Users\User\AppData\Local\Temp\tmp00007618 (Trojan.Vundo) -> No action taken. Please let me know if I am missing something... thanks alot for all your help phir3, Oct 23, 2008 #9 cybertech Moderator Joined: Apr 16, 2002 Messages: 72,004 For Vista I like Malwarebytes.

HKEY_CLASSES_ROOT\CLSID\{30b2f470-297e-417d-8dfb-8c344bfe6366} (Trojan.Vundo.H) -> No action taken. I have gone into my registrey and tried deleting the directories from starting, but they keep coming back. C:\Users\User\AppData\Local\Temp\tbpwbcm.log scheduled to be deleted on reboot. C:\Windows\System32\kHAQJyaA.dll (Trojan.Vundo) -> No action taken.

cybertech, Oct 19, 2008 #2 phir3 Thread Starter Joined: Oct 16, 2008 Messages: 6 Malwarebytes' Anti-Malware 1.29 Database version: 1295 Windows 6.0.6000 20/10/2008 5:36:41 PM mbam-log-2008-10-20 (17-36-36).txt Scan type: Full Scan C:\Windows\System32\byXRLedB.dll (Trojan.Vundo) -> No action taken. Keep it in the forums, so everyone benefitsBecome a BleepingComputer fan: Facebook and Twitter Back to top #7 blinn79 blinn79 Topic Starter Members 8 posts OFFLINE Local time:02:48 PM Posted C:\Windows\System32\xxYOgeCv.dll (Trojan.Vundo) -> No action taken.

C:\Windows\System32\ivvfkdwl.dll (Trojan.Vundo.H) -> No action taken. The scan area is clean. When the scan is finished, a message box will say "The scan completed successfully.

File C:\Windows\System32\cIQXGMoq.ini2 not found!

Solved: trojan.virtuemonde vista 32bit C:\Users\User\AppData\Local\Temp\tmp00006ec8 (Trojan.Vundo) -> No action taken. Double-click ATF-Cleaner.exe to run the program.

I am so close to just Installing Clean my laptop, but I know their has got to be a way that I can win against this stupid malware. Loading... Let it run unhindered until it finishes. If your Real protection or Antivirus intervenes with OTScanIt, allow it to run.

Thank you... C:\Users\User\AppData\Local\Temp\tmp0000ea1f (Trojan.Vundo) -> No action taken. If an update is found, the program will automatically update itself. I then ran Mbam immediately after webroot and it detected only one thing.

Virtuemonde Started by blinn79 , Jan 25 2009 03:38 AM C:\Windows\System32\wvUkljjj.dll (Trojan.Vundo) -> No action taken. User's Internet Explorer cache folder emptied. Repeat as many times as necessary to remove each Java version.

The problem is, I am a student in college and bought Microsoft Office through a download program (no backup disk) and if I format my computer, I will lose Microsoft office Please re-enable javascript to access full functionality. Refer to this page if you are unsure how.Open the Kaspersky Scanner page.Click on Accept and install any components it needs.The program will install and then begin downloading the latest definition

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{0a4f5f03-d696-42a3-ba9e-deca625492fa} (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Windows\System32\yayyVliJ.dll (Trojan.Vundo) -> No action taken.

Several functions may not work. Nothing popped up on reboot, so I am ASSUMING it did it automatically w/o notifying me or confirming that the file was removed on reboot. It always comes back into my registry and I want it gone. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.

The scan will begin and "Scan in progress" will show at the top. Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts. Upgrading Java: Download the latest version of Java Runtime Environment (JRE) 6 Update 10.