Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Vundo Variant infection and Malwarebytes won't download


  • This topic is locked This topic is locked
2 replies to this topic

#1 lapin87

lapin87

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:43 PM

Posted 01 November 2009 - 08:24 AM

My computer is running a bit slow, I'm getting lots of pop-ups, and some sort of Vundo variant is showing up in all my virus/spyware scans. One pop-up tries to tell me I am infected (duh) and to get some sort of antivirus software. I close all of these pop-ups. I tried downloading malwarebytes because I've used it before and had good results but I can not. I receive a message: mbam can't be found.

I believe it came from an ecard I clicked (stupidly) thinking it was from my grandma. I've used superantispyware, avira antivirus and a-sqaured free to try and get rid of this thing. All showed some form of the virus, but none were able to get rid of it.
Anyway, here are the logs as requested in the preparation guide (I very much appreciate the help):

2009-10-14 23:44:11 0 d-----w- c:\program files\Cisco
2009-10-14 23:37:40 1594 ----a-w- c:\windows\VPNUnInstall.MIF

==================== Find3M ====================

2009-09-11 22:52:37 20720 ----a-w- c:\windows\fonts\rae.ttf
2009-09-11 14:18:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-11 14:18:39 136192 ------w- c:\windows\system32\dllcache\msv1_0.dll
2009-09-10 19:54:06 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 19:53:50 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-09-04 21:03:36 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-09-04 21:03:36 58880 ------w- c:\windows\system32\dllcache\msasn1.dll
2009-08-28 10:28:59 70656 ----a-w- c:\windows\system32\dllcache\ie4uinit.exe
2009-08-28 10:28:59 13824 ------w- c:\windows\system32\dllcache\ieudinit.exe
2009-08-27 05:18:44 634648 ----a-w- c:\windows\system32\dllcache\iexplore.exe
2009-08-27 05:18:41 161792 ----a-w- c:\windows\system32\dllcache\ieakui.dll
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\dllcache\strmdll.dll
2009-08-18 04:33:52 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-08-13 15:16:05 512000 ------w- c:\windows\system32\dllcache\jscript.dll
2009-08-07 00:24:18 327896 ----a-w- c:\windows\system32\dllcache\wucltui.dll
2009-08-07 00:24:18 209632 ----a-w- c:\windows\system32\dllcache\wuweb.dll
2009-08-07 00:24:10 35552 ----a-w- c:\windows\system32\dllcache\wups.dll
2009-08-07 00:24:06 53472 ----a-w- c:\windows\system32\dllcache\wuauclt.exe
2009-08-07 00:24:04 96480 ----a-w- c:\windows\system32\dllcache\cdm.dll
2009-08-07 00:23:54 575704 ----a-w- c:\windows\system32\dllcache\wuapi.dll
2009-08-07 00:23:46 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-08-07 00:23:46 215920 ----a-w- c:\windows\system32\muweb.dll
2009-08-07 00:23:46 1929952 ----a-w- c:\windows\system32\dllcache\wuaueng.dll
2009-08-05 09:01:48 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-08-05 09:01:48 204800 ------w- c:\windows\system32\dllcache\mswebdvd.dll
2009-08-05 01:44:46 2189184 ----a-w- c:\windows\system32\ntoskrnl.exe
2009-08-05 01:44:46 2189184 ------w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-08-04 15:13:08 2145280 ------w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-08-04 14:20:09 2023936 ------w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-08-04 14:20:08 2066048 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-08-04 14:20:08 2066048 ------w- c:\windows\system32\dllcache\ntkrnlpa.exe
2009-07-30 23:42:21 93184 --sha-w- c:\windows\system32\jipovaza.dll
2009-07-31 23:43:15 90112 --sha-w- c:\windows\system32\pumotozi.dll
2009-07-31 11:42:25 93184 --sha-w- c:\windows\system32\zokayoge.dll
2008-09-28 01:07:03 32768 --sha-w- c:\windows\system32\config\systemprofile\local

settings\history\history.ie5\mshist012008092720080928\index.dat

============= FINISH: 7:08:29.35 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 lapin87

lapin87
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:43 PM

Posted 02 November 2009 - 12:34 AM

I'm getting this taken care of so nevermind I do not need any help anymore! ;)

#3 Guest_The weatherman_*

Guest_The weatherman_*

  • Guests
  • OFFLINE
  •  

Posted 02 November 2009 - 07:04 AM

Thanks for letting us know lapin87. :(




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users