Virus/malware constantly reappearing

Discussion in 'Malware Help (A Specialist Will Reply)' started by Artimidor, Jul 24, 2008.

  1. Artimidor

    Artimidor Private E-2

    Hello there!

    I could really need some help, I hope someone has ideas how I can progress and get my computer back to normal. :confused

    I definitely have some malicious malware on my computer, which I try to get rid of, yet haven't succeeded. I saw some things with Hijackthis that obviously were responsible for pages being loaded when I opened Internet Explorer and got rid of those - for a while.

    Because the trouble seems to be that this virus/trojan etc. manages to reproduce itself under different names in the windows/system32 folder. There are names like ewmwooql.dll, bkmbdvrf.dll etc. (between 82 KB and 102 KB), which refuse to be removed, but if you try double or trice you can at least rename them for some strange reason. When I try to remove such a file with KillBox-Beta.exe it says that it doesn't exist.

    Let me say that I have Norton Antivirus (up to date) installed on my computer, and no matter how long I scan, it doesn't detect anyting.

    When I open up msconfig.exe on my compuer and check the system start tab I notice that there's a line called "Rundll32.exe c:\windows\system32\bkmbdvrf.dll " - which I assume is the virus/malfware. I can untick that checkbox, but next time I start again, a similar line appears, just pointing to another similarly meaningless name, obviously the virus manages to reproduce or restore itself.

    Please note that this malicious virus also manages to turn off the Windows auto updates, as Norton constantly warns me that this is turned off. However, when I enter services.msc and turn the auto updates on and click OK and then go in again - it's turned off again.

    Has anyone gotten advice what I still could do? I'm getting quite desperate! Thanks in advance to everyone who has the time to help me out of this!

    Artimidor
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Please follow the instructions in the below link and attach the requested logs when you finish these instructions. If something does not run, write down the info to explain to us later but keep on going. Do not assume that because one step does not work that they all will not.

    READ & RUN ME FIRST. Malware Removal Guide


    Note: If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode. You can running steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:

    Starting your computer in Safe mode
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds