Mourning the loss of our friend, WhitPhil.
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
 
Malware Removal & HijackThis Logs
Tag Cloud
access audio black screen blue screen boot bsod connection crash desktop dvd email error excel excel 2003 firefox hard drive hardware hdmi hijackthis internet itunes keyboard laptop malware monitor motherboard network networking outlook problem ram recovery router screen slow sound spyware tdlwsp.dll trojan upgrade vba video virus vista vundo windows windows 7 windows vista windows xp wireless
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > Malware Removal & HijackThis Logs >
Security Tool/Vundo (New)

Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

 
Thread Tools
Cisco Kid's Avatar
Junior Member with 15 posts.
 
Join Date: Aug 2007
28-Oct-2009, 04:18 PM #1
Security Tool/Vundo
Running:

Dell Vostro 1000
XP SP2
AMD Athlon X2
2GB ram
100GB HDD

Symptoms:
This thing is completely riddled. Many "Security Tool" popups, "fake news" popsups, and serious performance degradation before finally freezing up. Certain websites are blocked. Windows update fails with an activeX error. Certain files will not run, specifically the Windows malicious software removal tool. Just blinks and disappears. When I right click and run as administrator it tells me I don't have administrative rights...

Attempted fixes
I booted up and quickly ran msconfig and disabled "92063828" in startup. This let me install and run Mcafee 8.0 which found 54 viruses. Many of them deleted or quarantined but some say "move failed." Symptoms remained. Also tried the Stinger utility, TrendMicro's online scanner, and bitdefender. Each utility keeps finding viruses, but after reboot symptoms remain. Ran the utilities again many times and they find more viruses. Up until recently they were mostly "Fake!Alert" but as I type I see Mcafee has found Vundo.gen. I also tried uninstalling and reinstalling iexplorer and running a windows repair.

Fun fact - "92063828" is still in the startup menu of msconfig, although remains unchecked.

I have downloaded the Hijack This utility and have a log file of the output which I have attached..


Thanks for any help you can provide!
Attachment Blocked
Attachments in the HJT forum are often designed to solve a specific issue and not meant to be used without instructions specific to your computer. If you want help specific to your computer, please post a HiJackThis Log.
Cisco Kid's Avatar
Junior Member with 15 posts.
 
Join Date: Aug 2007
29-Oct-2009, 10:23 AM #2
Update:

I disabled system restore through direction of the link at the bottom of this page

http://vil.nai.com/vil/content/v_153771.htm

I am now able to open some files I couldn't before. Some symptoms remain.
Cisco Kid's Avatar
Junior Member with 15 posts.
 
Join Date: Aug 2007
29-Oct-2009, 05:06 PM #3
progress
bitdefender scan kept popping up the same four .dll's with a "delete failed" next to them. I typed "bitdefender delete failed" into google and this was the first return.

http://forum.bitdefender.com/index.php?showtopic=15797

I downloaded the utility they reference and went in and deleted the four .dll's. A restart brought up a error warning me of a missing .dll but other than that I was able to start windows update and am downloading SP3 successfully. Popups have ceased. I'll repair the missing .dll's and report back if everything is still kosher.
Reply Bookmark and Share

Tags
dell vostro 1000, security too, trojan, virus, vundo

Smart Search

Find your solution!



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.

Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -5. The time now is 02:00 PM.
Copyright © 1996 - 2009 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2009, Jelsoft Enterprises Ltd.
Powered by Cermak Technologies, Inc.