Please i need some help here a had a virus detected by my antivirus Avira and i already try all the things listed in Malware and Spyware Cleaning Guide and nothing change my PC still the same, PLEASE HELP ME, thanks un advance.
i already unintall the program which had the problem and nothing the same after reescan qhit antivirus
sincerily BAJA1
my antivirus after scan say this:
Avira AntiVir Personal
Report file date: Viernes, 12 de Marzo de 2010 10:20
Scanning for 1844407 virus strains and unwanted programs.
Licensee : Avira AntiVir Personal - FREE Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows XP
Windows version : (Service Pack 3) [5.1.2600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : HOME
Version information:
BUILD.DAT : 9.0.0.419 21701 Bytes 22/01/2010 18:29:00
AVSCAN.EXE : 9.0.3.10 466689 Bytes 14/12/2009 06:13:16
AVSCAN.DLL : 9.0.3.0 40705 Bytes 27/02/2009 16:58:24
LUKE.DLL : 9.0.3.2 209665 Bytes 20/02/2009 17:35:49
LUKERES.DLL : 9.0.2.0 12033 Bytes 27/02/2009 16:58:52
VBASE000.VDF : 7.10.0.0 19875328 Bytes 06/11/2009 20:46:50
VBASE001.VDF : 7.10.1.0 1372672 Bytes 19/11/2009 20:47:04
VBASE002.VDF : 7.10.3.1 3143680 Bytes 20/01/2010 06:08:20
VBASE003.VDF : 7.10.3.75 996864 Bytes 26/01/2010 06:08:31
VBASE004.VDF : 7.10.4.203 1579008 Bytes 05/03/2010 02:08:12
VBASE005.VDF : 7.10.4.204 2048 Bytes 05/03/2010 02:08:12
VBASE006.VDF : 7.10.4.205 2048 Bytes 05/03/2010 02:08:13
VBASE007.VDF : 7.10.4.206 2048 Bytes 05/03/2010 02:08:13
VBASE008.VDF : 7.10.4.207 2048 Bytes 05/03/2010 02:08:13
VBASE009.VDF : 7.10.4.208 2048 Bytes 05/03/2010 02:08:13
VBASE010.VDF : 7.10.4.209 2048 Bytes 05/03/2010 02:08:13
VBASE011.VDF : 7.10.4.210 2048 Bytes 05/03/2010 02:08:14
VBASE012.VDF : 7.10.4.211 2048 Bytes 05/03/2010 02:08:14
VBASE013.VDF : 7.10.4.242 153088 Bytes 08/03/2010 02:17:46
VBASE014.VDF : 7.10.5.17 99328 Bytes 10/03/2010 17:50:19
VBASE015.VDF : 7.10.5.44 107008 Bytes 11/03/2010 17:54:37
VBASE016.VDF : 7.10.5.45 2048 Bytes 11/03/2010 17:54:37
VBASE017.VDF : 7.10.5.46 2048 Bytes 11/03/2010 17:54:37
VBASE018.VDF : 7.10.5.47 2048 Bytes 11/03/2010 17:54:38
VBASE019.VDF : 7.10.5.48 2048 Bytes 11/03/2010 17:54:38
VBASE020.VDF : 7.10.5.49 2048 Bytes 11/03/2010 17:54:38
VBASE021.VDF : 7.10.5.50 2048 Bytes 11/03/2010 17:54:38
VBASE022.VDF : 7.10.5.51 2048 Bytes 11/03/2010 17:54:38
VBASE023.VDF : 7.10.5.52 2048 Bytes 11/03/2010 17:54:39
VBASE024.VDF : 7.10.5.53 2048 Bytes 11/03/2010 17:54:39
VBASE025.VDF : 7.10.5.54 2048 Bytes 11/03/2010 17:54:39
VBASE026.VDF : 7.10.5.55 2048 Bytes 11/03/2010 17:54:39
VBASE027.VDF : 7.10.5.56 2048 Bytes 11/03/2010 17:54:39
VBASE028.VDF : 7.10.5.57 2048 Bytes 11/03/2010 17:54:40
VBASE029.VDF : 7.10.5.58 2048 Bytes 11/03/2010 17:54:40
VBASE030.VDF : 7.10.5.59 2048 Bytes 11/03/2010 17:54:40
VBASE031.VDF : 7.10.5.60 17408 Bytes 11/03/2010 17:54:41
Engineversion : 8.2.1.180
AEVDF.DLL : 8.1.1.3 106868 Bytes 12/02/2010 06:09:12
AESCRIPT.DLL : 8.1.3.17 1032570 Bytes 26/02/2010 08:33:17
AESCN.DLL : 8.1.5.0 127347 Bytes 26/02/2010 08:33:15
AESBX.DLL : 8.1.2.0 254323 Bytes 26/02/2010 08:33:18
AERDL.DLL : 8.1.4.2 479602 Bytes 14/02/2010 04:10:39
AEPACK.DLL : 8.2.1.0 426356 Bytes 03/03/2010 21:39:44
AEOFFICE.DLL : 8.1.0.39 196987 Bytes 20/02/2010 05:49:08
AEHEUR.DLL : 8.1.1.7 2326902 Bytes 20/02/2010 05:49:06
AEHELP.DLL : 8.1.10.1 237942 Bytes 26/02/2010 08:33:14
AEGEN.DLL : 8.1.2.0 373107 Bytes 26/02/2010 08:33:14
AEEMU.DLL : 8.1.1.0 393587 Bytes 04/10/2009 04:59:18
AECORE.DLL : 8.1.12.2 188790 Bytes 03/03/2010 21:39:42
AEBB.DLL : 8.1.0.3 53618 Bytes 09/10/2008 20:32:40
AVWINLL.DLL : 9.0.0.3 18177 Bytes 12/12/2008 14:47:59
AVPREF.DLL : 9.0.3.0 44289 Bytes 14/12/2009 06:13:16
AVREP.DLL : 8.0.0.7 159784 Bytes 18/02/2010 05:48:27
AVREG.DLL : 9.0.0.0 36609 Bytes 05/12/2008 16:32:09
AVARKT.DLL : 9.0.0.3 292609 Bytes 24/03/2009 21:05:41
AVEVTLOG.DLL : 9.0.0.7 167169 Bytes 30/01/2009 16:37:08
SQLITE3.DLL : 3.6.1.0 326401 Bytes 28/01/2009 21:03:49
SMTPLIB.DLL : 9.2.0.25 28417 Bytes 02/02/2009 14:21:33
NETNT.DLL : 9.0.0.0 11521 Bytes 05/12/2008 16:32:10
RCIMAGE.DLL : 9.0.0.25 2438913 Bytes 15/05/2009 21:39:58
RCTEXT.DLL : 9.0.73.0 86785 Bytes 14/12/2009 06:13:16
Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\archivos de programa\avira\antivir desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium
Start of the scan: Viernes, 12 de Marzo de 2010 10:20
Starting search for hidden objects.
'30354' objects were checked, '0' hidden objects were found.
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'CPSHelpRunner10.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'RaUI.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'lxdnmsdmon.exe' - '1' Module(s) have been scanned
Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'lxdnmon.exe' - '1' Module(s) have been scanned
Scan process 'DMXLauncher.exe' - '1' Module(s) have been scanned
Scan process 'RoxWatchTray10.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'RoxMediaDB10.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'RoxWatch10.exe' - '1' Module(s) have been scanned
Scan process 'RoxLiveShare10.exe' - '1' Module(s) have been scanned
Scan process 'RalinkRegistryWriter.exe' - '1' Module(s) have been scanned
Scan process 'lxdncoms.exe' - '1' Module(s) have been scanned
Scan process 'lxdnserv.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
37 processes with 37 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan executable files (registry).
The registry was scanned ( '43' files ).
Starting the file scan:
Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
[NOTE] This file is a Windows system file.
[NOTE] This file cannot be opened for scanning.
C:\Documents and Settings\BlackCrystal™\Configuración local\Temp\CombatArms_1.cab
[0] Archive type: CAB (Microsoft)
--> CombatArms.exe
[DETECTION] Is the TR/Dldr.FraudLoad.wzie Trojan
C:\System Volume Information\_restore{6C51E243-D090-48BD-8656-578A8B356A14}\RP64\A0058778.exe
[DETECTION] Is the TR/Dldr.FraudLoad.wzie Trojan
Beginning disinfection:
C:\Documents and Settings\BlackCrystal™\Configuración local\Temp\CombatArms_1.cab
[WARNING] An error has occurred and the file was not deleted. ErrorID: 26001
[WARNING] Failed!
[NOTE] Attempting to perform action using the ARK library.
[NOTE] The file was moved to '4fedc9aa.qua'!
C:\System Volume Information\_restore{6C51E243-D090-48BD-8656-578A8B356A14}\RP64\A0058778.exe
[DETECTION] Is the TR/Dldr.FraudLoad.wzie Trojan
[NOTE] The file was moved to '4bca7294.qua'!
End of the scan: Viernes, 12 de Marzo de 2010 10:57
Used time: 25:02 Minute(s)
The scan has been done completely.
4263 Scanned directories
100328 Files were scanned
2 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
2 Files were moved to quarantine
0 Files were renamed
1 Files cannot be scanned
100325 Files not concerned
1149 Archives were scanned
2 Warnings
3 Notes
30354 Objects were scanned with rootkit scan
0 Hidden objects were found