Now, after using almost all programs suggested in this guide and while those tools seem to remove everything, after each reboot, malwarebytes finds one trojan.injector file in the temp folder which Malwarebytes FileAssassin failed to delete tubakile.dll on reboot; I simply thought it had because it did not show up the way I was running 'dir' and the attribute change. Which is when the sinister nature of this beast finally hit home. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run\penimifihi (Trojan.Vundo.H) -> Quarantined and deleted successfully.

Pretty snazzy if you ask me. - Avira AntiVir Personal - http://www.filehippo.com/download_antivir/ - Really good free anti-virus application. Conficker Weekly scans by your anti-virus scanner, Spybot S&D, Ad-aware and Belarc Advisor will help detect malware that gets on your computer.Remember to keep your operating system, security software and Internet-capable software Also, I just ran ComboFix on my mother-in-law's computer over the weekend and it found but was unable to remove the new "Personal Anti-Virus" vundo variant.

Registry Data Items Infected: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.BHO) -> Data: c:\windows\system32\rigubisa.dll -> Quarantined and deleted successfully. For example, is it a system slow down? If I could figure this out, I'd be onto something. Do the full system scan and grab another beer.

I was able to get SuperAntiSpyware to install, update and run, though. Run this when you can't get any other tool to run or install. - TDSSKiller - http://support.kaspersky.com/faq/?qid=208283363 - Rootkit removal tool from Kaspersky. Contact Us Order of the Blue Gartr Archive Top Latest Threads Stylus for Tablet art.FFRK - Encounter on the B...Digimon World: Next Order...Laptop Fans Continuously DyingGPU fan whirringActivity on the EU have a peek at these guys Microsofts Malicious Software Removal Tool...it's a free download from Microsoft updates, it's a quick tool to run (Start==>Run==>MRT) And I have had it find stuff that MalwareBytes, Spybot, SAS, etc...missed.

If memory serves, ComboFix requires an internet connection so you'll want to choose Safe Mode with Networking. How stupid and illogical is that? Click on the "Run Cleaner" button and click okay when it asks if you really want to do this. Which one do you usually use?