Best regards. Really appreciate your help on this one thanks!Just finished ComboFix as instructed - here is the log!ComboFix 08-06-10.5 - GB033796 2008-06-11 15:32:10.1 - NTFSx86Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.523 [GMT 1:00]Running from: Click on the "Scan Settings" button, and in the next window select the "extended" database, and click Ok. 5. ComboFix did not provide me the opportunity to select option "2" while it was deinstalling. https://www.zonealarm.com/forums/showthread.php/48437-Trojan-Win32-Monder-gen-virus-on-my-system-that-Zonealarm-cannot-clean-up-Help

Click the Remove or Change/Remove button. In the registry, open the Edit and click the Find. When the scan is complete choose to save the results as "Save as Text" named kaspersky.txt to your desktop and post them in your next reply. C:\Windows\bdn.com (Trojan.Agent) -> Quarantined and deleted successfully.

  • C:\Users\kie\Desktop\virii (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
  • Finally go to Control Panel > Internet Options.
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5bfc1e05-8287-420e-8526-f6d76e1febb8} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
Gin - http://download.game...nts/y/nt0_x.cab O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Then from your desktop double-click on jre-6u7-windows-i586-p.exe to install the newest version. C:\Users\kie\AppData\Local\Temp\khfDwwvt.dll (Trojan.Vundo) -> Quarantined and deleted successfully. When you encounter some problems, you should immediately run a security program.

oldsod Reply With Quote May 12th, 2008 #6 findley Guest Re: Trojan.Win32.Monder.gen virus on my system that Zonealarm cannot clean up -- Help Oldsod, Yes, good friends I too like the Thanks Operating System: Windows XP Home Edition Software Version: 7.0 Product Name: ZoneAlarm Internet Security Suite

dittywop, Have you been running the scan in Zone Alarm Internet Security Suite in safe To start viewing messages, select the forum that you want to visit from the selection below. see it here C:\Users\kie\Desktop\virii\Trojan-Downloader.Win32.Agent.r.exe (Fake.Dropped.Malware) -> Quarantined and deleted successfully.

It'll still have updated security definitions, but I'm not sure it's necessary with SpyGuard and SpyBlaster installed. Update it and scan from time to time. Here is a tutorial and download location: SpywareBlaster and SpywareGuard: http://www.javacools...m/products.html Spyware Guard is a real-time malware scanner SpywareBlaster tutorial: http://www.bleepingc...ware-tut49.html SpywareGuard tutorial: http://www.bleepingc...kers-tut50.html Let me know how you're doing! http://secunia.com/v...nning/personal/ You should be good to go after all this.

I like it when there are others participating in the same thread - it does not matter if the replies are a contrast or an affirmation to one of mine or http://www.completelyuninstallprogram.com/syscan-exe/ Learning new things never stops! The range of advice here is what makes this an excellent place to get answers as well as to learn. Useful Automatic removal syscan.exe with SpyHunter from the Infected Computer You can use the manual removal procedures above step by step to get rid of syscan.exe, but it is quite complicated

HKEY_CURRENT_USER\HOL5_VXIEWER.FULL.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully. http://visu3d.com/solved-help/solved-help-needed-win32-trojan.html Thanks anyway!UPDATE: got a Kaspersky scan for COMPUTER and MEMORY, indicating some infected files. Should you find other problems, please start a new topic. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webvideo (Trojan.FakeAlert) -> Quarantined and deleted successfully.

Start the PC in Safe Mode. C:\Windows\mslagent\mslagent.exe (Adware.EGDAccess) -> Quarantined and deleted successfully. C:\Windows\System32\ssvchost.com (Trojan.Agent) -> Quarantined and deleted successfully. his comment is here Best regards.

My system is clean (as far I can tell), but I've had some difficulty installing programs that I've wanted to use. C:\Windows\xbaqktfv.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. Click "Scan Settings" and check the option to use the Extended Database if available otherwise Standard). 6.

Your logs show left over remnants.

I'm at my wit's end.Thanks.---Hijackthis output:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 21:10:53, on 12/05/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Windows Defender\MsMpEng.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Repeat for the mljjj.dll Note: if the registry says you do not have permission to delete or to that effect, then right click the Main key in the left panel and The scan may take some time to finish,so please be patient. HKEY_CURRENT_USER\Software\mwc (Trojan.FakeAlert) -> Quarantined and deleted successfully.

After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply.===============Please do an online scan with Kaspersky WebScannerClick on Kaspersky Online ScannerYou will be promted C:\ProgramData\rqjqjkvm\nkvshmpq.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. As an alternate solution, I renamed the folders to prevent those applications from running. weblink Now click "Apply to all folders" Click "Apply" then "OK".