Trojan.download.37236

I have 20 virses and Trojan horses on my desk, I think my computer has ceased to them that I don't know what to do

Well, hurry up, man! (Woman? I don't like).

If you do not have an antivirus program, download the free version of MalwareBytes' Anti-Malware and do a full scan of the system. Then remove them!

And God, the father Almighty. Note Please! I do not subscribe to specific questions, so if I stop replying, PM me the link to your question and I will answer you!

Tags: Windows

Similar Questions

  • How delete/fix Trojan Downloader: Java/Open Connection.LZ

    How delete/fix Trojan Downloader: Java/Open Connection.LZ?

    Hello

    Read about the MS information

    http://www.Microsoft.com/security/portal/threat/encyclopedia/entry.aspx?name=TrojanDownloader%3AJava%2FOpenConnection.LZ

    Download update and scan with the free version of malwarebytes anti-malware

    http://www.Malwarebytes.org/MBAM.php

    You can also download and run rkill to stop the process of problem before you download and scan with malwarebytes

    http://www.bleepingcomputer.com/download/anti-virus/rkill

    If it does not remove the problem and or work correctly in normal mode do work above in safe mode with networking

    Windows Vista

    Using the F8 method:

    1. Restart your computer.
    2. When the computer starts, you will see your computer hardware are listed. When you see this information begins to tap theF8 key repeatedly until you are presented with theBoot Options Advanced Windows Vista.
    3. Select the Safe Mode with networking with the arrow keys.
    4. Then press enter on your keyboard to start mode without failure of Vista.
    5. To start Windows, you'll be a typical logon screen. Connect to your computer and Vista goes into safe mode.
    6. Do whatever tasks you need and when you are done, reboot to return to normal mode.
  • Trojan downloader on computer

    whenever I boot windows, a Trojan horse is here.  the antivirus (windows essential) picks it up, asking to clean, and does.  Unfortunately, every time I start the computer, the Trojan horse appears upward.  I did the full analysis, cleaned the horse Trojan Downloader several times, but in vain. What can I do else?

    Basically, I'm pasting some general info.  I hope that you do not use the administrator account.  Don't know if I mentioned below; but, if your user account is messed up, you can create a new one and then hover over important documents/images to the new account.

    ·                        A few basic things you can do to try and isoalte the problem.  First of all, try to get into Safe Mode or "Safe Mode with networking" mode Get safe by pressing the "F8" key when you see the things in the factory.  Don't touch for quick, you can cause a keyboard error.  You can even it tap several times until the screen of fab.   If it works it will give a menu, choose safe out of that mode.  Understand the functioning of the computer in safe mode.  You are not very good graphics, but it is usable.

    In addition, and cela I should have started with, do not use an admin account for everyday use.  If you are unsure if you are, you are probably.  If you simply turn your computer and it goes into Windows, you are. (This means that you had no logon).     This is true for everyone, all the time...  Make a user account when you first get your computer or after a reload.

    I actually copied above other threads.  I'm tired of typing the same thing for each question, with what I'm trying to help.  There is place.  I think the vast majority of people with computers to use the administrator account.  It is more obvious to the user.  Before you answer anything I need to know a few things, you are running as an administrator, and have you tried to reproduce the problem in safe mode.

    If your in until Admin and something has become corrupted or infected, can be very hard to fix.  If running as a user, usually easy.

    So, in your case, see how the computer is running in safe mode.  Make another user account and understand works of this one.  Very easy to do. under control panel, Manager of the user.  If your using a account Admin, do first one user account.  You may need to do a system restore and I hope that you can come back in until the problem started. and it usually goes back only 4 weeks.

  • MBAM PRO MAJOR F/P - Trojan.Downloader.ED

    MBAM Pro has "gone crazy", pretty much everything (including system files) labelling as Trojan.Downloader.ED

    Several people are now reporting that the MBAM Forum.

    Be careful.

    The bad database has been v2013.04.15. 12

    I think that the F/P has been fixed with v2013.04.15. 13

  • Horse of Trojan Downloader:Java / openconnection.jr

    Charge of the basics of Microsoft security and discovered that I have a Downloader Trojan on my computer. I can't remove it from PC, even if other users are able to run Microsoft Essentials and it is advised to virus has been removed. When I, as the administrator of the PC try to run, I cannot and receive an error code Ox800705b4 not allowing me to enable real-time protection. In addition, I get an alert saying computer is now infected and I need to buy someone's PC security tools for delete.

    Anyone have this problem and how to remove?

    Thank you.

    Hey, this point also detected on my computer with Microsoft Security Essentials. When it has been detected, MSE recommended that I put in quarantine the item, but you say to remove it. Why MSE recommend only 40 if it needs to be removed? I am running the Microsoft Windows Malicious Software Removal Tool. The link to OneCare says it is no longer available.

    Quarantine and remove when it is used in the above sense are interchangeable. It doesn't matter that you choose. Follow the instructions below and forget a care.

    Restart the computer in safe mode with network. Click the second link below and download Malwarebytes. Update Malwarebytes and perform a full scan. Choose to quarantine found nothing. Once complete, click the third link below and download Superantispyware Portable. Run a full scan quarantined found anything yet. Restart your computer in normal mode and perform a quick scan with Malwarebytes.

    How to start in safe mode

    direct DLD MBAM

    Superantispy-portable

    The link for Malwarebytes is a direct file download. Make sure that update you it before analysis. SUPERAntiSpyware is the portable scanner. It does not install and is not updated if you scan with it in a reasonable amount of time after download. A reasonable amount of time is in hours.

    I do not vote for me I'm not here for points. If this post helps you, vote. Visit my forum @ http://repairbotsonline.com/

  • Trojan Downloader virus

    I got a message from the center of the Action in telling me that my device has Trojan Virus Downloader. But Microsoft Saftey Scanner told me that it has not detected any viruses?

    Hello
    Follow steps 1 and 2 in this virus/malware removal guide: http://www.selectrealsecurity.com/malware-removal-guide/
    It provides simple instructions on how to remove malware from Windows. If you have any questions, just ask. Let me know if this helps you.
    Brian
  • How to remove trojan downloader and xp3 zbot

    downloaded virus email of friend.cpu from fast.unable to d/l pages.sec essent.says ok.

    Hello
    Try following the steps in this virus/malware removal guide: http://www.selectrealsecurity.com/malware-removal-guide
    It contains instructions which will remove most malware infections. If you have any questions, just ask me. I hope this helps you.
    Brian
  • Cannot remove trojan downloader: "ASX\Wimad.DP."

    I found this Wimad.DP ASX\ in the system of my laptop and I tried to remove several times but it still.
    I don't know what to do. Please help me.

    Try to download and run the full scan of the system with:

    http://www.Microsoft.com/security/scanner/en-us/default.aspx

  • HELP error code: 80072efe - cannot download or install security updates or update the definitions of viruses and spyware

    Help, please!

    I am running Vista Home Premium 32 bit on SP2.

    I just had my McAfee security expires and since I was not able to install security updates.

    I uninstalled McAfee and searched my system to make sure that it is completely gone, then I installed Microsoft Security Essentials.

    I was able to update its definitions of once and since I was not able to do so once again - instead, I get the error message "Virus and Spyware definitions update failed" and the code of error 0x80072efe

    I have since run a full scan of the system and the following were found on my system:

    -Trojan Dropper

    -Trojan notifier

    -Trojan Downloader

    -Virus: Win32/Alureon.H

    It is said that they have been removed - I'm not sure if they have something to do with my problems of system...

    Also my windows update still does not go to download security updates, and it still gives me the same error code.

    Is there a way to fix this?

    Thank you very much

    Also, the first update failed installed has been updated for Windows Vista (KB955430)

    The last successful security update was security update for Windows Vista (KB979309)

    The one who follows - update security for Windows Vista (KB978338) failed and there all security updates do not have

    I just had my McAfee security expire... I installed Microsoft Security Essentials.

    You should have uninstalled the McAfee application and download / run the tool to remove McAfee Consumer product and then installed Microsoft Security Essentials before as your McAfee subscription has expired.

    See...

    Can I install Microsoft Security Essentials [or any other anti-virus/anti-spyware application] to clean my already infected computer?
    http://social.answers.Microsoft.com/forums/en-us/msescan/thread/87058857-D181-4019-a723-efd9a49d9275

    Personal data backup (which none should be considered 100% reliable at this point) then format the HARD disk and do a clean install of Windows.  Please note that a repair installation (upgrade AKA on-site) will NOT fix it!

    HOW to do a clean install of Vista: section "If you want to reinstall Windows Vista by running a new installation...". "of http://windows.microsoft.com/en-us/windows-vista/Installing-and-reinstalling-Windows-Vista

    Once installed the clean, you will have the equivalent of a "new computer" in order to take care of everything on the next page before connecting the machine to the internet or one local network (i.e. other computers) otherwise and before using a flash drive or the SD card that is not brand new, or has not been freshly formatted:

    4 steps to help protect your new computer before going online
         http://www.Microsoft.com/security/pypc.aspx

    Tip: After getting the computer fully patched, download/install KB971029 manually: http://support.microsoft.com/kb/971029

    NB: No matter what Norton or McAfee free trial which is preinstalled on the computer when you bought will be reinstalled (but invalid) when Windows is reinstalled. You MUST uninstall the trial for free and download/run the removal tool before installing updates, Windows Service Packs, or updates IE and before installing your new anti-virus application.

    Norton Removal Tool
         FTP://ftp.Symantec.com/public/english_us_canada/removal_tools/Norton_Removal_Tool.exe

    McAfee Consumer product removal tool
         http://download.McAfee.com/Products/Licensed/cust_support_patches/MCPR.exe

    See also:

    Risks & benefits of P2P file sharing
    http://www.Microsoft.com/protect/data/downloadfileshare/filesharing.aspx
    http://blogs.technet.com/MMPC/archive/2008/10/06/the-cost-of-free-software.aspx

    Measures to help prevent spyware
    http://www.Microsoft.com/security/spyware/prevent.aspx

    Measures to help prevent computer worms
    http://www.Microsoft.com/security/worms/prevent.aspx

    Avoid fake security software!
    http://www.Microsoft.com/security/antivirus/rogue.aspx

    If these procedures look too complex - and there is no shame in admitting this isn't your cup of tea - take the machine to a local, good reputation and stand-alone computer (that is, not BigBoxStoreUSA or Geek Squad) repair facility.

    ~ Robear Dyer (PA Bear) ~ MS MVP (that is to say, mail, security, Windows & Update Services) since 2002 ~ WARNING: MS MVPs represent or work for Microsoft

  • Security Essentials removed a Trojan horse. Here is a list of items (8 files). Are these deleted and I'm done or is there more to do?

    all detected points is checked - view of the elements that have been detected on your computer

    lower than

    Trojan downloader - deleted

    lower than

    items: 8 registered

    These disappear

    Choose 'delete history '.

    If all detected items are listed as deleted , then they were as stated removed. No need of remove history. That is simply what is said and removes / deletes recorded items that were deleted history. No further action is required on your part, see the following topics:

    How to view or clear the history in the Microsoft Security Essentials?
    http://www.Microsoft.com/en-us/security_essentials/support/ddf53ebc-97F5-4860-aad6-ed532385a681.aspx

    Hope that answers your question.

  • I was contacted by a company "teche4pc". Is he trustworthy?

    Original title: teche4pc

    I was contacted by an Alabama based "teche4pc" company Worthy of trust?

    I paid to get the installed MSE. May be money wasted, but's done it.
    Everything about the company?

    Hello

    MSE is free - for more, see answers - viruses and malware - MSE Forums

    Answers - viruses and malware - MSE Forums
    http://answers.Microsoft.com/en-us/protect/Forum/MSE

    -----------------------------------------------------------

    MyWebOfTrust - Tech4PC has a bad reputation
    http://www.MyWOT.com/en/scorecard/www.teche4pc.com

    When I went to the MSE site Teche4PC reported a JAVA malware attack!

    Security Essentials has encountered the following error:

    Error code 0 x 80508023. The program did not find software malware and other potentially unwanted software on this computer.

    Category:

    Trojan Downloader

    Description:

    This program is dangerous and downloads of other programs.

    Recommended action:

    Remove this software immediately.

    Articles:

    file:C:\Users\Rob\AppData\Local\Temp\jar_cache3169758258053797760.tmp->OracleJava.class

    file:C:\Users\Rob\AppData\Local\Temp\jar_cache4024764497304773785.tmp->OracleJava.class

    file:C:\Users\Rob\AppData\Local\Temp\jar_cache7341887017910824031.tmp->OracleJava.class

    file:C:\Users\Rob\AppData\Local\Temp\jar_cache7594449794841652620.tmp->OracleJava.class

    Get more information on this article online.

    =================================

    Yes, it's a SCAM!

    Avoid scams to phone for tech support
    http://www.Microsoft.com/security/online-privacy/avoid-phone-scams.aspx

    In the United States, you can contact the local police to the FBI, Attorney general, and
    consumer watch groups. Arm yourself with knowledge.

    The Internet Crime Complaint Center (IC3) is a partnership between the
    Federal Bureau of Investigation (FBI) and the National White Collar Crime Center
    (NW3C), funded in part by the Bureau of Justice Assistance (BJA).
    http://www.ic3.gov/complaint/default.aspx

    No, Microsoft wouldn't you not solicited. Nor would they know if any errors
    It exists on your computer. So those are the frauds or scams to get your money or
    worse to steal your identity.

    Avoid scams that use the Microsoft name fraudulently: Microsoft has no
    for you unsolicited telephone calls help fix your computer
    http://www.Microsoft.com/protect/fraud/phishing/msName.aspx

    Scams and hoaxes
    http://support.Microsoft.com/contactus/cu_sc_virsec_master?ws=support#tab3

    Microsoft Support Center consumer
    https://consumersecuritysupport.Microsoft.com/default.aspx?altbrand=true&SD=GN&ln=en-us&St=1&wfxredirect=1&gssnb=1

    Microsoft technical support
    http://support.Microsoft.com/contactus/?ws=support#TAB0

    Microsoft - contact technical support
    http://Windows.Microsoft.com/en-us/Windows/help/contact-support

    I hope this helps.

    Rob Brown - Microsoft MVP<- profile="" -="" windows="" expert="" -="" consumer="" :="" bicycle=""><- mark="" twain="" said="" it="">

  • TrojanDropper; Win32/Dunik! RTS - or files affected not given

    Whenever I run a full scan with the Microsoft Safety Scanner, it tells me that TrojanDropper:Win32 / Dunik! RTS was on my computer and PARTIALLY REMOVED.

    However, he didn't tell me which file or files are still infected causing.  No file name is given - just that this Trojan horse has been partially removed.

    When I do a full scan with Windows Defender, it tells me that my computer is clean and works normally!  When I do a full scan with Spybot Search Destroy &

    or of Malawarebytes Anti Malaware, I get the same results - nothing about the infection by TrojanDropper:Win32 / Dunik! RTS - computer clean.

    I'd appreciate some answers on what is happening on?  And how I can scan Microsoft security to revome completely this Trojan horse?  I tried scanning mode safe as well - same result.

    Thank you.

    TrojanDropper:Win32 / Dunik! RTS

    MMPC threat results

    http://www.Microsoft.com/security/portal/threat/encyclopedia/entry.aspx?name=TrojanDropper%3aWin32%2fDunik! RTS

    Technical information (analysis)

    TrojanDropper:Win32 / Dunik! RTS is a name used for the detection of Trojan horse that were added to our signatures after advanced automated analysis.
     
    The generic nature of this detection means that the malicious behavior of files detected as TrojanDropper:Win32 / Dunik! RTS are highly variable and may vary once an instance of this detection to another.
     
    No further information is currently available on this threat. However, if we receive a large number of reports, then a specific detection will be added to our signatures and a detailed analysis will be added to the encyclopedia.
    Note: Detection of files reported as TrojanDropper:Win32 / Dunik! RTS were added to our signatures after advanced automated analysis. If you believe that this file has been reported in error, we encourage you to submit the file assigned to us for further analysis. Don't forget to indicate that it is perhaps incorrect detection by checking the box and adding a note in the comments field of the submission form.
     
    Trojan Downloader/Dropper

    A form of Trojan that installs other malicious files on the infected computer, either by downloading them from a remote computer, either dropping them directly from the copy contained in its own code.
     
    It is only partially deleted is because it is packed (usually a .zip file) with other files that may or may not be malicious, and it can be a file validates that displays charaterisics to aTrojan dropper and err on the side of caution only that specific file was deleted. Sometimes an error may also be displayed statng the file is too large to remove. The removal process can also be impeded by Spybot and MBAM providing protection in time actual resident.
     
    A Google search indicates a Microsoft security software to be the only ones to detect this particular malware named.
     
    You do not have any resident antivirus real-time on your computer. You rely on Windows Defender, Spybot, the free version of Malwarebytes Antimalware and occasional scanning with Microsoft Security Scanner for security? None of them alone or in combination provide adequate protection against all forms of malware. Consider using Microsoft Security Essentials (http://www.microsoft.com/en-us/security_essentials/default.aspx ), Windows Defender will be disabled or uninstalled during the installtion of MSE as it becomes redundant. See below.
     
    Windows Defender and Microsoft Security Eesentials
     
    It is recommended that if you use MSE you disable the function of Spybot's Tea Timer and only use MBAM to on demand scan.
     
    Be sure to read if considering the installation of MSE.
    Checklist for installation of Microsoft Security Essentials
    Special attention to the current and previous software antivirus in time real and good LFR lbefore installing MSE.
     
    If you want to try a different anti-malware for complete removal program I would say Dr.Web CureIt.
     
    Recommended action would be to seek any other form of assistance Microsoft. See the following:
    How to remove "TrojanDropper:Win32 / Dunik! RTS' and Trojan: Win32 / Dynamer! DTC.

    http://answers.Microsoft.com/en-us/protect/Forum/protect_scanning/how-to-remove-trojandropperwin32dunikrts-and/5dd3f92e-18f0-402e-997b-4d3af67011d0
    I hope this helps.
     
     
     
  • After the startup error message: C:Docume~1\owner\Locals~1\Temp\dwm.exe__how I can fix it.

    I ran Malwarebytes Anti-Malware and the following came and I deleted everything that came.  Then, I get the error that I mentioned:

    Malwarebytes' Anti-Malware 1.46
    www.Malwarebytes.org

    Database version: 4725

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702

    30/09/2010 21:36:15
    MBAM-log-2010-09-30 (36-21-15) .txt

    Scan type: quick scan
    Objects scanned: 170298
    Time elapsed: 1 hour (s), 32 minute (s), 59 second (s)

    Memory processes infected: 3
    Memory Modules infected: 0
    Registry keys infected: 0
    Registry values infected: 1
    The infected registry data: 1
    Folders infected: 0
    Files infected: 6

    Process memory infected:
    C:\Documents and Data\Microsoft\svchost.exe Data (Trojan.Downloader.Gen)-> unloaded successfully process.
    C:\Documents and Settings\Temp\dwm.exe owner (Trojan.Downloader.Gen)-> unloaded successfully process.
    C:\Documents and Data\Microsoft\Windows\shell.exe Data (Trojan.Shell)-> unloaded successfully process.

    Memory infected:
    (No malicious items detected)

    Infected registry keys:
    (No malicious items detected)

    The registry is infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost (Trojan.Downloader.Gen)-> quarantined and deleted successfully.

    Infected registry data items:
    HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell)-> Bad: (explorer.exe, C:\Documents and Data Data\Microsoft\Windows\shell.exe) good: (Explorer.exe)-> quarantined and deleted successfully.

    Infected files:
    (No malicious items detected)

    Infected files:
    C:\Documents and Data\Microsoft\svchost.exe Data (Trojan.Downloader.Gen)-> quarantined and deleted successfully.
    C:\Documents and Settings\Temp\dwm.exe owner (Trojan.Downloader.Gen)-> quarantined and deleted successfully.
    C:\Documents and Settings\Temp\1EF.exe owner (Trojan.Downloader.Gen)-> quarantined and deleted successfully.
    C:\Documents and Settings\Temp\24D.exe owner (Trojan.Downloader.Gen)-> quarantined and deleted successfully.
    C:\Documents and owner Settings\Temporary Internet Files\Content.IE5\SCGCF3IX\update[1].exe (Spyware.Passwords.XGen)-> quarantined and deleted successfully.
    C:\Documents and Data\Microsoft\Windows\shell.exe Data (Trojan.Shell)-> quarantined and deleted successfully.

    What can I do about it.  I have windows XP, I got this HP pavilion 555e computer 6 years.  I'm still working, but I don't like the error messages.  Please let me know also where I can learn more about the errors of registry and files.

    try to click on start > run > msconfig

    then under the Startup tab, you will find entries that refer to the programs that are set to start automatically when windows starts.

    You can probably find one of the references corresponding to this faulty .exe and you can turn it off.

    by disabling, attempt to launch the inoculated program will stop and the error warning should also.

    DB·´¯'·.. ¸ > DatabaseBen, Retired Professional - Analyst - Database Developer's - accounting - former veteran of the Armed Forces - @Hotmail.com 'share nirvana mann' - dbZen ~ ~ ~ >

  • Help with RunDLL error on startup

    Laptop - Dell Inspiron 1420, Intel (r) Core (TM) 2 Duo CPU T5450 at 1.66 GHz 1.67 GHz

    Operating system is Windows Vista Home Premium Service Pack 1

    Exact error message: RunDLL error loading C:\Users\Jill\AppData\Roaming\wmhjhdju.dll (2 separate windows open with the same error during start-up)

    How many time I get this error message?  Just started today, 01/04/09 after I did the following:

    1 Ran Trend Micro PC-cillin lastnight manually to about 11 p because of the threat of viruses.
    2 2A found pshbfapc.dll (C:\Users\Jill\AppData\Local\Temp\) in quarantine Date 01/04/01 00:11, the status has virus
    apstpldr.dll [1] .htm ( C:\Users\Katiebug\AppData\Local\Microsoft\Windows\Temporary Internet...) Quarantined Date 01/04/01 00:17, a virus status
    3. it does not pick up any spy software
    4. this morning I thought it would be best to run Trend Micro again, but in safe mode, so I could put one new restore point and other.  Little I didn't know, it does not run in safe mode.
    5 downloaded free AVG and Windows Defender to run in safe mode
    6 went to safe mode and started AVG free.  It lasted about 1 and 1/2 hours, which surprised me.

    7. free report AVG:
     Scanner command-line antivirus AVG 8.5
    Copyright (c) 1992-2009 AVG Technologies
    Version of the program 8.0.268, engine 8.0.285
    Virus database: Version 270.11.35/2034 2009-04-01

    C:\Boot\BCD locked the file. Not tested.
    C:\Boot\BCD. Locked LOG file. Not tested.
    File C:\Documents and Settings\ locked. Not tested.
    C:\pagefile.sys locked the file. Not tested.
    C:\ProgramData\Desktop\ the locked file. Not tested.
    C:\ProgramData\Documents\ the locked file. Not tested.
    C:\ProgramData\Favorites\ the locked file. Not tested.
    C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4e5b7a0cc853f970c251f07c510abde7_9bd00ec1-2228-4c38-82f6-7888b8a53fe7 the locked file. Not tested.
    C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\74c2d7c8d239f07b55cf4874ec97ebf5_9bd00ec1-2228-4c38-82f6-7888b8a53fe7 the locked file. Not tested.
    C:\ProgramData\Templates\ the locked file. Not tested.
    C:\System Volume Information\ locked the file. Not tested.
    C:\Users\Default\AppData\Local\History\ the locked file. Not tested.
    C:\Users\Default\Documents\My Music\ locked the file. Not tested.
    C:\Users\Default\Documents\My Pictures\ locked the file. Not tested.
    C:\Users\Default\Documents\My Videos\ locked the file. Not tested.
    C:\Users\Default\NetHood\ the locked file. Not tested.
    C:\Users\Default\PrintHood\ the locked file. Not tested.
    C:\Users\Default\Recent\ the locked file. Not tested.
    C:\Users\Default\Templates\ the locked file. Not tested.
    C:\Users\Jill\AppData\Local\History\ the locked file. Not tested.
    C:\Users\Jill\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\004AFWPT\freescan[1].htm Virus found that Fakealert object has been moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Microsoft\Windows\UsrClass.dat the locked file. Not tested.
    C:\Users\Jill\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1 the locked file. Not tested.
    C:\Users\Jill\AppData\Local\Microsoft\Windows\UsrClass.dat.Log2 the locked file. Not tested.
    C:\Users\Jill\AppData\Local\Temp\cbXOfeCv.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\cbXQkkhE.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\ddcYoOiI.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\eFwVPGxV.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\fcCTkjjK.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\iifcCsRi.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\khfffCTN.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\ljJdbaxx.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\mlJAsSIc.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\rqRLcASK.dll horse of Trojan Vundo.CW object was moved to Virus Vault.

    C:\Users\Jill\AppData\Local\Temp\Setup2.exe horse of Trojan Generic13.IQU object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\ssqnnNDT.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\tuvWqnlK.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\vTliJBsP.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\wVpPjiFv.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\wvUlmmnK.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\xadabmlp.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\yaywxxvu.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Local\Temp\yayaWOEX.dll horse of Trojan Vundo.CW object was moved to Virus Vault.
    C:\Users\Jill\AppData\Roaming\wmhjhdju.dll horse of Trojan Downloader.Small.FKL object was moved to Virus Vault.
    C:\Users\Jill\Documents\My Music\ locked the file. Not tested.
    C:\Users\Jill\Documents\My Pictures\ locked the file. Not tested.
    C:\Users\Jill\Documents\My Videos\ locked the file. Not tested.
    C:\Users\Jill\NetHood\ the locked file. Not tested.
    C:\Users\Jill\ntuser.dat the locked file. Not tested.
    C:\Users\Jill\ntuser.dat.LOG1 the locked file. Not tested.
    C:\Users\Jill\ntuser.dat.Log2 the locked file. Not tested.
    C:\Users\Jill\PrintHood\ the locked file. Not tested.
    C:\Users\Jill\Templates\ the locked file. Not tested.
    C:\Users\Katiebug\AppData\Local\History\ the locked file. Not tested.
    C:\Users\Katiebug\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FN0BKL2X\divx[1] horse of Trojan BHO. HAA object has been moved to Virus Vault.
    C:\Users\Katiebug\Documents\My Music\ locked the file. Not tested.
    C:\Users\Katiebug\Documents\My Pictures\ locked the file. Not tested.
    C:\Users\Katiebug\Documents\My Videos\ locked the file. Not tested.
    C:\Users\Katiebug\NetHood\ the locked file. Not tested.
    C:\Users\Katiebug\PrintHood\ the locked file. Not tested.
    C:\Users\Katiebug\Templates\ the locked file. Not tested.
    C:\Users\Public\Documents\My Music\ locked the file. Not tested.
    C:\Users\Public\Documents\My Pictures\ locked the file. Not tested.
    C:\Users\Public\Documents\My Videos\ locked the file. Not tested.
    C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat the locked file. Not tested.
    C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat the locked file. Not tested.
    C:\Windows\ServiceProfiles\LocalService\ntuser.dat the locked file. Not tested.
    C:\Windows\ServiceProfiles\LocalService\ntuser.dat.LOG1 the locked file. Not tested.
    C:\Windows\ServiceProfiles\LocalService\ntuser.dat.Log2 the locked file. Not tested.
    C:\Windows\ServiceProfiles\NetworkService\ntuser.dat the locked file. Not tested.
    C:\Windows\ServiceProfiles\NetworkService\ntuser.dat.LOG1 the locked file. Not tested.
    C:\Windows\ServiceProfiles\NetworkService\ntuser.dat.Log2 the locked file. Not tested.
    C:\Windows\System32\catroot2\edb.log locked the file. Not tested.
    C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb the locked file. Not tested.
    C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb the locked file. Not tested.
    C:\Windows\System32\config\components the locked file. Not tested.
    C:\Windows\System32\config\COMPONENTS. Log1 locked the file. Not tested.
    C:\Windows\System32\config\COMPONENTS. Log2 locked the file. Not tested.
    C:\Windows\System32\config\default locked the file. Not tested.
    C:\Windows\System32\config\DEFAULT. Log1 locked the file. Not tested.
    C:\Windows\System32\config\DEFAULT. Log2 locked the file. Not tested.
    C:\Windows\System32\config\RegBack\COMPONENTS the locked file. Not tested.
    C:\Windows\System32\config\RegBack\DEFAULT the locked file. Not tested.
    C:\Windows\System32\config\RegBack\SAM the locked file. Not tested.
    C:\Windows\System32\config\RegBack\SECURITY the locked file. Not tested.
    C:\Windows\System32\config\RegBack\SOFTWARE the locked file. Not tested.
    C:\Windows\System32\config\RegBack\SYSTEM the locked file. Not tested.
    Locked C:\Windows\System32\config\sam file. Not tested.
    C:\Windows\System32\config\SAM. Log1 locked the file. Not tested.
    C:\Windows\System32\config\SAM. Log2 locked the file. Not tested.
    C:\Windows\System32\config\security locked the file. Not tested.
    C:\Windows\System32\config\SECURITY. Log1 locked the file. Not tested.
    C:\Windows\System32\config\SECURITY. Log2 locked the file. Not tested.
    C:\Windows\System32\config\software locked the file. Not tested.
    C:\Windows\System32\config\SOFTWARE. Log1 locked the file. Not tested.
    C:\Windows\System32\config\SOFTWARE. Log2 locked the file. Not tested.
    C:\Windows\System32\config\system locked the file. Not tested.
    C:\windows\system32\config\system. Log1 locked the file. Not tested.
    C:\windows\system32\config\system. Log2 locked the file. Not tested.
    C:\Windows\System32\LogFiles\WMI\RtBackup\ the locked file. Not tested.
    D:\System Volume Information\ locked the file. Not tested.

    ------------------------------------------------------------
    Objects scanned: 480916
    Found infections: 22
    Found puppies: 0
    Cured infections: 22
    Recovered puppies: 0
    Warnings: 0
    ------------------------------------------------------------

    8 Windows Defender found nothing...

    9. laptop rebooted in normal mode, so I could create a restore point and that's when the RunDLL window errors popped up twice

    I've exhausted myself looking on the net and the answer I get is to download Regcleaner to fix dll errors.  I've always learned not to mess with the registry.  I'm also not sure what I pay for if it's ligit or not.

    Should I run AVG Free, Windows Defender, and Trend-Micro all at the same time

    Should I just start Trend Micro, then when I want to scan virus in safe mode Windows Defender and AVG free?

    As I sit here typing this on my laptop not affected, the Trend-Micro on my laptop infected started a scan for virus/Malware on its own.

    Thank you

    Hi Fit4lyf8,

    Thank you for using the Microsoft answers Forum.  First of all, thank you for providing so much information in your message.  It really helps to solve the problem when we have all the information we need!  Because AVG found so many Trojan virus the likelihood other files are damaged seems quite high.  RunDLL error is also a good indicator.  I think that the best starting point is to try to run the System File Checker.  This tool (SFC. (EXE) check files in use windows and, if problems are found, restore a good version of the file.  When running Windows Vista in Normal Mode or Mode without failure, you can use the following steps:

    1. open a CMD window as an administrator. (ORB start, all programs, accessories, right-click on command prompt, and then click Run As Administrator)

    2. run this command:
    sfc/scannow

    3 monitor the results returned by SFC.

    Watch carefully the result of present SFC in the command prompt window. The three possibilities and their conclusions are:

    o SFC found no problem
    This means that versions of the correct system files are used by Windows Vista, SFC.exe can determine. If you're still having problems in Windows, it could be questions of registry (SFC checks the files, not the registry), software installed on Windows or equipment.

    o the SFC found and fixed the problems
    This means that the SFC may have solved your problem. Try to reproduce the problem again. If the problem persists, it may be that there is unrelated to system file issues. But the presence of these questions could indicate that corruption

    o the found but SFC could not fix problems
    This means that there are more important issues with the Windows system files. It could be that you have corruption in the SFC store uses for recovery. In this case, you may need to reinstall VIsta.

    Before you decide to reinstall VIsta let us know the results of the analysis of the system files.  There may be other measures we can take before reinstalling.  I hope this information is useful.

    Thank you

    Jack

    Jack
    Microsoft Answers Support Engineer
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • I'm having a problem on an Acer lap top install Vista Service pack 2

    The tower above for a pre Vista Home Premium 32-bit installed on it and with the Service Pack 1

    The notebook soiled by the following malicious software

    Trojan Downloader Troxen! RTS

    Java/OpenConnection.FB Trojan Downloader Java

    Exploit Java/CVE-2008-5353. NT

    Exploit Java/CVE-2009 - 3867.GU

    I removed the laptop HD and scanned the computer and removed infections above.

    Then I ran Windows Vista repair an Installation CD:Disc

    Finally, the laptop worked normally and I could access the internet and update Microsoft Security Essentials.

    However, I can't install Vista Service pack 2

    I installed the fix pre-installation KB947821-v15 - x 86

    I then installed the SP2 file Windows6 Installtion. 0-KB948465 - X 86

    It finished up to 100% in step 3 after the restart, how she restored to SP1.

    Everything worked OK then how to get SP1 to install it is a legacy of the aforementioned Trojan.

    If a full Microsoft Office 2003 retail version is preinstalled on the computer when you bought it, Office 2003 will be reinstalled when you perform a clean Windows installation... as long as you use either drives OEM that came with the computer when you bought the hidden restore [1] or to partition the clean install.

    If you have purchased & installed Office 2003 separately, you will be able to reinstall (after completing the clean install of Windows) using your Office 2003 CD-ROM.

    ============================================
    [1] not to be confused with the restoration of the system (Windows).

Maybe you are looking for

  • YouTube video plays in the left upper corner of the screen.

    Very well. The problem is that since the update for Firefox 37.0.2 I have problems playing video on Youtube.com and sometimes Newgrounds.com. In Youtube I play a lot of videos show only now in the upper left corner of the screen and the size of this

  • Update driver for ATI Mobility x 1400-Satellite Pro A100

    Hello I have the above card in my Toshiba Satellite Pro A100. Does anyone know if Toshiba published or publish updates driver for this card and if so, how to get them? Thnx Macca

  • Stream 8 5901 and 5909

    I decided to treat me this season for a new toy. Microsoft Store has a very good price on the 8 5909 flow, but Amazon has an even better price on the 8 5901 flow.I can't find any difference on the pages of specifications HP, and above all, both offer

  • Share the expression in step.result.numeric and locals.variable

    Hello together, I'm new in the world of TestStand and I have a simple question. How can I share the output of a step between the expression step.numeric.result (NumericLimitTest) and a variable 'local '? I need the output of a time step value for the

  • Inspiron 560 does not start after the new mobo

    just relpaced mobo with nine years of old stock that it does not start in windows 7, just goes into repair options, but will not repair. He's trying to start windows, it happens from windows, you see the glance just color logo on the screen, then it