Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

HELP i have over 10 viruses

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

HELP i have over 10 viruses

Unread postby ryan1231388 » October 13th, 2009, 10:15 pm

ok i dont have hijackthis, nor can i get it because my downloads are blocked

i saw a previous thread that was closed about some of my symtoms...

im getting antivirus2010 which i know is a virus.. and a constant ctv.exe with a random number, for example ctv2335.exe and iexplore.exe popups..

i also have something called spyware stormer, and spyware protect2009

Winzix and some other stuff.. my windows XP downgraded to windows 95,

thankfully ComboFix revived that but this is getting out of control, my system is rebooting itself every 5 minutes or so and random drivers are being messed with, im constantly getting windows file protection errors, though i dont have the cd to fix that, ive tried chkdsk/f/r and sfc/scannow

avast failed mbam failed spyware doctor failed spyhunter failed... what can i do now? also if theres anyone else out there having this problem, ive made a program in C# to fix the ctv.exe and iexplore.exe part of the virus

thats you, luckyguy457321

anyways help would be appreciated btw I'm only 13 yrs old so don't expect me to be some pro with this.

heres the file to block ctv#.exe and iexplore.exe. - you might not want to use this if you use internet explorer.. i use google chrome.

Link removed - Carolyn

edit - another thing is on my pc now called spyware police pro or something, i managed to get MBAM open for a minute and look at the results. *notice how it only ran for 1 minute, 11 seconds*

Malwarebytes' Anti-Malware 1.41
Database version: 2775
Windows 5.1.2600 Service Pack 2

10/14/2009 2:38:59 PM
mbam-log-2009-10-14 (14-38-59).txt

Scan type: Full Scan (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Objects scanned: 20411
Time elapsed: 1 minute(s), 11 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 1
Registry Values Infected: 6
Registry Data Items Infected: 1
Folders Infected: 3
Files Infected: 9

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
c:\WINDOWS\system32\buhiwuna.dll (Trojan.Vundo.H) -> Delete on reboot.

Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{933e0e36-9bc1-4e27-b951-3a3909123eba} (Trojan.Vundo.H) -> Delete on reboot.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\vobajijam (Trojan.Vundo.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\70134217 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\73573126 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\84732933 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{933e0e36-9bc1-4e27-b951-3a3909123eba} (Trojan.Vundo.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\safivapus (Trojan.Vundo.H) -> Delete on reboot.

Registry Data Items Infected:
HKEY_CLASSES_ROOT\exefile\shell\open\command\(default) (Broken.OpenCommand) -> Bad: (C:\WINDOWS\system32\pump.exe "%1" %*) Good: ("%1" %*) -> Quarantined and deleted successfully.

Folders Infected:
C:\Documents and Settings\All Users\Application Data\70134217 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\73573126 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\84732933 (Rogue.Multiple.H) -> Quarantined and deleted successfully.

Files Infected:
c:\WINDOWS\system32\buhiwuna.dll (Trojan.Vundo.H) -> Delete on reboot.
C:\Documents and Settings\All Users\Application Data\70134217\70134217 .exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\70134217\70134217.bat (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\70134217\70134217.exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\73573126\73573126 .exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\73573126\73573126.bat (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\73573126\73573126.exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\84732933\84732933.bat (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\84732933\84732933.exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
Last edited by Carolyn on October 14th, 2009, 8:27 am, edited 1 time in total.
Reason: disabled download link
ryan1231388
Active Member
 
Posts: 3
Joined: October 13th, 2009, 10:04 pm
Advertisement
Register to Remove

Re: HELP i have over 10 viruses

Unread postby ryan1231388 » October 14th, 2009, 8:47 pm

*FIXED*

my friend A.K.A the C++ King made a customized Anti-Virus for me.

sorry for the trouble.
ryan1231388
Active Member
 
Posts: 3
Joined: October 13th, 2009, 10:04 pm

Re: HELP i have over 10 viruses

Unread postby NonSuch » October 15th, 2009, 12:49 am

As this issue appears to be resolved, this topic is now closed.

You can help support this site from this link :
Donations For Malware Removal
User avatar
NonSuch
Administrator
Administrator
 
Posts: 28747
Joined: February 23rd, 2005, 7:08 am
Location: California


Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 300 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware