By default it will install to C:\Program Files\HijackThis. I ran Malwarebytes twice (once on full scan but it was taking so long that I stopped it and ran the quick scan) and the SUPERAntispyware once (but I can't seem Since you restored to a previous date, we don't know what's back on the system. Are you getting an error when downloading it? 0 #8 Keven01 Posted 06 August 2008 - 06:04 PM Keven01 New Member Topic Starter Member 9 posts no it says that windows this contact form

HKEY_CLASSES_ROOT\main.bho.1 (Trojan.BHO) -> Quarantined and deleted successfully. I don't know how I got it, but I tried everything to remove it.

Click here to download the latest version of java ( Java Runtime Environment (JRE) 6.0 Update 11 ): http://java.com/en/download/manual.jsp Please install it and then reboot your computer.Click to expand... Wird geladen... If not do this please.Please download OTScanIt.exe to your Desktop.Double-click on it to extract the files.

I posted the log files. Learn more You're viewing YouTube in German. And to answer your side question, yes I have a blank page assigned as my homepage. These files, folders and registry elements are respectively listed in the Files, Folders, Registry Keys and Registry Values sections on this page.For instructions on deleting the Vundo registry keys and registry

All rights reserved. Schließen Ja, ich möchte sie behalten Rückgängig machen Schließen Dieses Video ist nicht verfügbar. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4159cd17-5c0d-4dbb-9281-0a4c62e2cbc8} (Trojan.Vundo) -> Quarantined and deleted successfully. https://forums.spybot.info/showthread.php?12195-Unable-to-remove-trojan-and-malware-Purityscan HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{afd4ad01-58c1-47db-a404-fbe00a6c5486} (Trojan.BHO) -> Quarantined and deleted successfully.

A case like this could easily cost hundreds of thousands of dollars. HKEY_CLASSES_ROOT\Interface\{986a8ac1-ab4d-4f41-9068-4b01c0197867} (Trojan.BHO) -> Quarantined and deleted successfully. Need More Help? HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

You might want to look around for a comparable product and compare the prices: http://www.foxitsoftware.com/products/ Either way, I don't advise keeping a program that is so outdated- security issues could be Generally, BHOs are included in installation of third-party programs where they are offered as enhancements of the browser functionality. I rebooted in safe mode to remove those files you specified but they were already removed.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\getmodule36 (Trojan.Agent) -> Quarantined and deleted successfully. http://wpquickadminthemes.com/unable-to/unable-to-remove-qoobox.html C:\WINDOWS\system32\opnkJAsp.dll (Trojan.Vundo.H) -> Delete on reboot. The article is hard to understand and follow. Rajkumar P.

If you still wish to proceed with IE, please complete setting the following IE Security Configurations and select your region: Select your Region: Select Region... Thanks a bunch, Ryan Jan 7, 2009 #7 Bobbye Helper on the Fringe Posts: 16,335 +36 Okay, so I called it wrong! To help us improve the quality of this article, please leave your email here so we can clarify further your feedback, if neccessary: We will not send you spam or share navigate here If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.Click to expand...

MOST RECENT MBAM LOG Malwarebytes' Anti-Malware 1.34 Database version: 1842 Windows 5.1.2600 Service Pack 3 3/14/2009 9:48:01 PM mbam-log-2009-03-14 (21-48-00).txt Scan type: Full Scan (C:\|D:\|) Objects scanned: 299688 Time elapsed: 3 All Rights Reserved. If you need additional help, you may try to contact the support team.

HKEY_CURRENT_USER\SOFTWARE\GetModule (Adware.Agent) -> Quarantined and deleted successfully.

Back to top #5 Hoov Hoov Malware Response Team 3,519 posts OFFLINE Location:Mikado Michigan Local time:11:30 AM Posted 16 March 2009 - 04:25 PM I am sorry to have left Please note that these conventions are depending on Windows Version / Language. Please re-enable javascript to access full functionality. Then I tried: - FileAssassin - the program crashes (error message "needs to be shutdown") whenever I try either "FileAssassin's method" or "delete on reboot" - KillBox - tried to delete

HKEY_CLASSES_ROOT\CLSID\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot. Paste the contents of the Clipboard in your next reply.Then,Let's see if you can run DSS now.Please download Deckard's System Scanner (DSS) and save it to your Desktop.Close all other windows Similar Topics Cannot remove Vundo. his comment is here the files are still there causing popups and slowing down my computer!

HKEY_CLASSES_ROOT\TypeLib\{8e3c68cd-f500-4a2a-8cb9-132bb38c3573} (Trojan.BHO) -> Quarantined and deleted successfully. Melde dich bei YouTube an, damit dein Feedback gezählt wird. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo.H) -> Delete on reboot. Posting on more than 1 and following instructions from more than 1 forum will cause those helping you to pull out thier hair.*Follow my instructions - If you can't for some