Lord348_8 New Member Date Joined Apr 2008 Total Posts : 2 Posted 4-10-2008 12:00 (GMT +1) Hi Dear experts my PC has defected in some viruses / malwares /.......I want ask you help me to clean my pc Reports : [quote]RemoveIT Pro v4 Enterprise (Trial) : 11:53:05 AM: Infected file (Win32.Unknown.Random.X) d:\windows\system32\qomlmmj.dll 12:06:50 PM: Infected file (Sys32.mljgg) D:\WINDOWS\system32\mljgg.dll 12:06:54 PM: Infected file (Win32.Trojan.Susear.a) D:\WINDOWS\system32\drivers\mpcsys.sys 12:08:04 PM: Infected file (Sys32.runcheck) D:\WINDOWS\system32\runcheck.exe 12:08:10 PM: Infected file (Sys32.servicem) D:\WINDOWS\system32\servicem.exeMalwarebytes' Anti-Malware 1.11 Database version: 606 Scan type: Full Scan (D:\|) Objects scanned: 77480 Time elapsed: 48 minute(s), 54 second(s) Memory Processes Infected: 0 Memory Modules Infected: 3 Registry Keys Infected: 17 Registry Values Infected: 2 Registry Data Items Infected: 2 Folders Infected: 0 Files Infected: 11 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: D:\WINDOWS\system32\mljgg.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\rlgaogvo.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\qomlmmj.dll (Trojan.Vundo) -> No action taken. Registry Keys Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f9254fb0-1bdd-40cd-ada4-cb60296bf713} (Trojan.Vundo) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{f9254fb0-1bdd-40cd-ada4-cb60296bf713} (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5y99ae78-58tt-11dw-be53-y67078979y} (BackDoor.ProRat) -> No action taken. HKEY_CLASSES_ROOT\CLSID\{3feca576-7ad2-4e11-a6ad-6b59d4fb5db9} (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3feca576-7ad2-4e11-a6ad-6b59d4fb5db9} (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\qomlmmj (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Malware.Trace) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\jkwslist (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\aldd (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\MS Juan (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\affri (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\affltid (Malware.Trace) -> No action taken. HKEY_CURRENT_USER\Software\Microsoft\rdfa (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affltid (Malware.Trace) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken. Registry Values Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{3feca576-7ad2-4e11-a6ad-6b59d4fb5db9} (Trojan.Vundo) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\BM2f641b5f (Trojan.Agent) -> No action taken. Registry Data Items Infected: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: d:\windows\system32\mljgg -> No action taken. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Authentication Packages (Trojan.Vundo) -> Data: d:\windows\system32\mljgg -> No action taken. Folders Infected: (No malicious items detected) Files Infected: D:\WINDOWS\system32\mljgg.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\ggjlm.ini (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\ggjlm.ini2 (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\yxmuabfi.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\ifbaumxy.ini (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\rlgaogvo.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\ovgoaglr.ini (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\qomlmmj.dll (Trojan.Vundo) -> No action taken. D:\WINDOWS\system32\packet.dll (Spyware.Agent) -> No action taken. D:\WINDOWS\system32\wpcap.dll (Spyware.Agent) -> No action taken. D:\WINDOWS\system32\vtajdnux.dll (Trojan.Agent) -> No action taken. What should I do ? Back to Top
Forum Information Currently it is Saturday, November 22, 2008 2:51 PM (GMT +1) There are a total of 64.052 posts in 15.836 threads. In the last 3 days there were 26 new threads and 157 reply posts. View Active Threads Who's Online This forum has 27198 registered members. Please welcome our newest member, shahed . 35 Guest(s), 3 Registered Member(s) are currently online. Details r1ch1e , shahed , traceyd31 5 Latest Threads