can't get rid of tuvtu.dll

Discussion in 'Malware Help (A Specialist Will Reply)' started by buffaLo, Apr 5, 2006.

  1. buffaLo

    buffaLo Private E-2

    I came back from class today with a Microsoft Antispyware Pop up asking me to allow the process of "jiiii.dll" and "tuvtu.dll" Of course, i did not recognize these files and proceeded to block both from downloading into my registry. However, the tuvtu.dll made it past the block and i am having a hell of a time trying to delete it.

    I ran my computer in safe mood and attempted just about everything:
    RegistryFix
    ProcessExpNT
    Microsoft AntiSpyware
    Ad-Aware SE
    Spybot Search & Destroy
    Hi-Jack This
    Kill Box
    All of my CWS shredders
    Unlocker
    AboutBuster
    EVERYTHING

    have you heard of this chaslang?
    i searched the forums for anything on the file and found nothing
    I googled it too and found no luck
    please help

    the file is located:
    C:\Windows\System32\tuvtu.dll

    it keeps displaying a message that I have a "Beagle Virus" and should download another program
    after I "x" out of that, a pop up for some web security site appears

    thank you in advance

    buffaLo
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Not enough info to go on. Sounds almost like Virtumonde. They best way to figure out wht you have is to run the procedures below.

    Please follow our standard cleaning procedures which are necessary for us to provide you support. Also there are steps included for installing, running, and posting HijackThis logs as attachments.
    • Run ALL the steps in this Sticky thread READ & RUN ME FIRST Before Asking for Support
    • Make sure you check version numbers and get all updates.
    • Very Important: Make sure you tell us the results from running the tutorial...was anything found? Were you unable to complete any of the scans?...Were you unable to download any of the tools?...Did you do the on-line scans as suggested? etc.
    • After doing ALL of the above you still have a problem make sure you have booted to normal mode and run the steps in the below link to properly use HijackThis and attach a log:
    • When you return to make your next post, make sure you attach the following logs and that you have run these scans in the following order too (these scans are covered in steps 6 & 7 of the READ & RUN ME sticky)
      • Bitdefender
      • Panda Scan
      • HijackThis
    .
     
  3. buffaLo

    buffaLo Private E-2

    it was virtumonde

    all clear
    thanks
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome!
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds