1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Virus Infection

Discussion in 'Malware and Virus Removal Archive' started by gmagdalek, 2008/09/26.

  1. 2008/09/26
    gmagdalek

    gmagdalek Inactive Thread Starter

    Joined:
    2008/09/26
    Messages:
    1
    Likes Received:
    0
    I have the same problem , I managed to start using VLC media player to listen to the music with no problem but when scanning with NOD32 I get the same thing files infected, I took your advice Geri and scanned with Kaspersky and only one file showed up infected...
    Friday, September 26, 2008
    Operating System: Microsoft Windows XP Professional Service Pack 2 (build 2600)
    Kaspersky Online Scanner 7 version: 7.0.25.0
    Program database last update: Thursday, September 25, 2008 23:02:28
    Records in database: 1261818
    Scan settings
    Scan using the following database extended
    Scan archives yes
    Scan mail databases yes
    Scan area My Computer
    C:\
    D:\
    E:\
    H:\
    I:\
    J:\
    Scan statistics
    Files scanned 86284
    Threat name 20
    Infected objects 110
    Suspicious objects 0
    Duration of the scan 02:17:36

    File name Threat name Threats count
    C:\WINDOWS\system32\winnqz32.dll//PE_Patch.PECompact//PecBundle//PECompact/C:\WINDOWS\system32\winnqz32.dll//PE_Patch.PECompact//PecBundle//PECompact Infected: Trojan.Win32.Dialer.yz 1
    C:\Archivos de programa\Blaero Start Orb\Blaero Start Orb.exe Infected: Trojan-Spy.Win32.Agent.ehl 1
    C:\Archivos de programa\MP3 Player Utilities 4.00\DelDrv.exe Infected: not-a-virus:RiskTool.Win32.Deleter.e 1
    C:\WINDOWS\system32\closeapp.exe Infected: not-a-virus:RiskTool.Win32.CloseApp.e 1
    C:\WINDOWS\system32\gyomesmx.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hbqsowoe.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hgbbnhhx.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hgnhgvcs.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hhlmoign.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hkfuuydx.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hkkahvuf.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hkodobyo.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\hqqbsjfv.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\idnhxctu.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\idqjqkoo.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\idvqyekh.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\igcdbsex.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\ipkdorff.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\jcptjpaa.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\jydnxxwq.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\kpdnlurj.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\laruxiej.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\ldfcglkq.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\ljytbtju.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\meortfhx.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\mgmsahuy.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\mhteeruy.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\miagfokc.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\mmblrkxc.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\mujkuhwp.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\muufcpqa.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\niqrfhkq.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\njlrdhnc.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\nvulmjwi.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\oiurmvnj.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\olmaumhy.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\pftfyauv.dll_old Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\pgltsbjp.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\pjibmxsa.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\pvqovqih.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\pxjaejad.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qcacftdn.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qof 1
    C:\WINDOWS\system32\qdknfvfw.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qeqkrkir.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qgsklxpw.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qkgqjhkl.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qrryfnvc.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\qrtwsgnm.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\ravhdero.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\rfdbbetk.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\rgbrkfsf.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\smxkcxug.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\sncswjnj.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\svwrtxio.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\swcxaooe.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\swmooyqg.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\sxersryv.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\tfoanfod.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qoh 1
    C:\WINDOWS\system32\tjmkvsjq.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\tqfjeaip.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\tresexoa.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\ujlehcua.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\umsaubsp.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qre 1
    C:\WINDOWS\system32\uopdwued.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\upglimkt.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\uqyhiwmj.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\uuwqugxy.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\uvcpamiw.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\uwjrocac.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vijgpmbb.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vlmyyeif.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vlpnmrjl.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vlrncbdq.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vmxwjnlx.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vuluxvrm.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vupwbros.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vuvbqkmr.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vwfnsqio.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vwgcniqr.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\vytpubnw.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\wbcjwwca.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\winnqz32.dll Infected: Trojan.Win32.Dialer.yz 1
    C:\WINDOWS\system32\winpnp32.dll Infected: Trojan.Win32.Dialer.yz 1
    C:\WINDOWS\system32\wjgugsjc.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\wotwhisu.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\wpaqqqpp.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\wtffnqlk.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\xdhmnkpl.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\xuhxkwsy.dll Infected: Trojan.Win32.Monder.an 1
    C:\WINDOWS\system32\xvabmoec.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.pon 1
    C:\WINDOWS\system32\xwqduxvs.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\yeqolvti.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\yfntqfxv.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.qpi 1
    C:\WINDOWS\system32\ygxejued.dll Infected: Trojan.Win32.Monder.gen 1
    C:\WINDOWS\system32\yxqlhjte.dll Infected: Trojan.Win32.Monder.gen 1
    E:\GMgadgets\programs\KosovaWarez.exe Infected: not-a-virus:NetTool.Win32.Delf.c 1
    E:\GMgadgets\programs\KosovaWarez.exe Infected: HackTool.Win32.BruteForce.f 1
    E:\GMgadgets\programs\KosovaWarez.exe Infected: HackTool.Win32.Scanner.b 1
    E:\GMgadgets\programs\Messengers\gg\MSN Kick.zip Infected: HackTool.Win32.VB.mk 1
    E:\GMgadgets\programs\Messengers\MSNDescifraContraseas.zip Infected: not-a-virus:pSWTool.Win32.MSNPassword.b 1
    E:\GMgadgets\programs\Messengers\msnhack.zip Infected: IM-Flooder.Win32.VB.au 1
    E:\GMgadgets\programs\music n video\Nero-7.7.5.1_esp_trial\Nero-7.7.5.1_esp_trial.exe Infected: not-a-virus:WebToolbar.Win32.MyWebSearch.bm 1
    E:\GMgadgets\programs\Transformations\Vista Transformation Pack 6.0.exe Infected: not-a-virus:RiskTool.Win32.CloseApp.e 2
    E:\GMgadgets\programs\Transformations\Vista Transformation Pack 6.0.exe Infected: Trojan-Spy.Win32.Agent.ehl 1
    E:\GMgadgets\programs\vtp5_01.zip Infected: not-a-virus:RiskTool.Win32.CloseApp.a 2
    E:\GMgadgets\programs\vtp6_rc1.zip Infected: not-a-virus:RiskTool.Win32.CloseApp.a 2
    I:\Movies\videos\Funny\wedding_ring.wmv Infected: Trojan-Downloader.WMA.GetCodec.b 1
    The selected area was scanned.
     
  2. 2008/09/26
    Admin.

    Admin. Administrator Administrator Staff

    Joined:
    2001/12/30
    Messages:
    6,687
    Likes Received:
    107
    Please follow the rules

    I have moved you post to its own topic.
     

  3. to hide this advert.

  4. 2008/09/26
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    Only 1 file infected?

    :confused:

    Download ComboFix by sUBs from here, saving the file to your desktop.


    Please disable realtime protection applications as they sometimes interfere with the tool. Check this link for your applicable programs.

    • Close all open programs and windows
    • Double click combofix.exe and follow the prompts.
    • It may reboot your computer and resume running when you logon. Wait for it to complete. When finished, it will open a log for you. Post that log and a new HijackThis log in your next reply.
    Note: Do not mouseclick combofix's window while its running. That may cause it to stall
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.