Can't get rid of troubled .dll

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Krayzie993, Jul 3, 2008.

  1. Krayzie993

    Krayzie993 Private E-2

    Ok so I have a .dll file under the system32 folder titled tuvVpPhe.dll. The problem is I can not delete it. I've tried using killbox! but I get a PendingFileRenameOperation error. I've used HiJack this and the file is listed under the BHO section, and under the Winlogin section.

    I disconnected that computer from the internet so I don't have the log info available. If it's a neccessity then I will reconnect that just to post the log.

    Those 2 lines are the only lines with the file listed. Everything else under HiJack This, looks ok. I am not a noob to the program. Also I tried HiJack's way of deleting a file upon rebot with no avail. I've also tried the program Move on boot which also did nothing. The .dll file remains there no matter what.

    Spybot found Virtumonde and Virtumonde.dll both of which it successfully removed. All the previous processes did not work under safe mode either. I'm normally pretty good at getting rid of viruses but this one appears to be stubborn.

    Vundo was also used and found nothing.

    I hessitate to connect to the internet because i believe I'll end up with other random .dll files that i'll have to remove. Right now I have it limited to one after removing 2 other's succesfully.

    Any help would be greatly appreciated and like I said if you guys absolutely need the log file from HiJack this I will post it. Really I'm just looking for another way to kill a .dll. Thank you in advance!
     
  2. Krayzie993

    Krayzie993 Private E-2

    Sorry, I should have mentioned that I tried to fix both of those lines with HiJack, but if another scan is done right after fixing, both lines are still there. Those lines would be 02 BHO tuvVpPe.dll and line 20 Winlogon tuvVpPe.dll.
     
  3. Krayzie993

    Krayzie993 Private E-2

    Ok a mod can close this thread I figured it out and was finally able to delete that dll and fix the hijack entries. Everything appears to fine now.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

  5. Krayzie993

    Krayzie993 Private E-2

    i was not using HJT to remove the malware. There are other programs that removed it for me. I was using HJT to further eliminate the threat that the other programs couldn't do. I had already tried everything in the Read Me, and none of that solved my problem. With a few a registry edits, and a combination of some other programs I was able to eliminate the threat. Everything is good now that there is no more malware left on my system.
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Very well.....safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds