Question:
Can you help me delete a trojan downloader. DLL FILE?
Arpan G
2007-07-06 15:21:21 UTC
I have two trojan downloaders in my System32 directory

xxyvtus.dll
mllmk.dll

both have been flagged by my NOD32 antivirus as harmful. however, it cant delete them since they are in use by another program.

I have tried manually deleting them, and have failed.

I have tried deleting them in Safe Mode, with CMD, and have still failed, since they are in use with another program.

I have tried unregistering them using Regsvr32, and get the error message
"Dllname was loaded, but the DllRegisterServer or DllUnregisterServer entry point was not found."

Can anyone here help me delete these DLLs manually?

or find out to what programs they are linked so i can delete that program aswell.

I NEED SERIOUS HELP, i am tired of my explorer.exe crashing over and over, I just want to get rid of these.

I am on.

XP, sp2.
NOD32 antivirus
Sygate Personal Firewall Pro.
Spybot SnD
Ad-Aware SE personal

everything is up to date.
Seven answers:
Sly_Old_Mole
2007-07-06 16:00:06 UTC
xxyvtus.dll

mllmk.dll



Both are parts of vundo you need a tool to remove them:



http://www.bleepingcomputer.com/forums/topic18610.html



Anish D- you need to learn a lot more about Security before you put people down, Nod32 is one of the best AV going - AVG is a very poor AV.
Annette
2016-08-24 23:41:08 UTC
2
Leslie S
2007-07-06 15:37:20 UTC
let's see here, the first thing I have to say is that Spybot is in itself adware so just delete that from your system and there is one problem solved. Adaware is by far the best adware protection and I myself, rely on Norton for my antivirus protection and paired with AdAware and for the past four years, have never had a problem. That is the only protection you should need, just those two, the rest are unnecessary. Each of these on your list dials out to see about new updates and protections for you until finally your computer is too busy for you. If you are positive that you have a trojan horse virus, then my best advice to you is to reload your software, however, I think that you have so many different things going on and they all dial out. I know that when I fix other people's computers, I usually download a trial version from Norton and it is free for the first couple weeks and I also use the adaware which you are already using. Go into your add and remove programs in order to remove these other things, also look through this list for anything you didn't put on your computer. When you are finished, go into your program files and look through there as well for anything that you didn't put on your computer and then double check your mydocuments and make sure there are no spider savers in there, they really bog you down. I hope that I have helped you. Be leary of saving files from an infected computer, cleaning out the computer, and reloading the infected files to your cleaned computer, I see people do that alot... it's kind of a common sense blunder. You will end up having to do it all again. Also, Norton charges a fee, but will connect to your PC and get rid of any virus that you may have but you have to use their software. You will no longer need a firewall program because that is included in their package... It's a good deal and saves a lot of headaches in the future and the first time is the only real crunch in the pocket, after that is a yearly renewal for a minimal fee.
Techie
2007-07-06 15:43:34 UTC
Try making a floppy disk startup disk then shutdown your computer. Put the disk into your computer. Your computer should then startup into CMD but windows will not of started up so the program won't be in use. From there delete the trojan horses. Next type win. this should start windows. When Windows starts. Take the floppy disk out of the machine.
2007-07-06 15:29:01 UTC
download avast from download.com it's an antivirus thing. Then when it restarts it will do a system scan and it schould find the virus and get rid of it
2007-07-06 15:33:30 UTC
Try a online antivirus scanner and a online anti-adware/malware/spyware scanner in safe mode with network to clean up your computer BEFORE you download anything. This because the program you download can get infected.

To reformat your hdd is always the last option.



Disable "System Restore" for Windows Me and XP, then restart your PC to clean your system restore points for viruses, spyware, adware etc.



Now restart in safe mode.

To get in safe mode Press "F8" upon bootup.

Select "Safe mode with Networking".

Go to Start – Run - type iexplore http://www.bitdefender.com/scan8/ie.html Enter(ok).

Do a full system scan. If something is found, delete it, reboot and do the same again in safe mode with network.

When that scan does not find anything you reboot again in safe mode with network.

Go to Start – Run – type iexplore http://www.ewido.net/en/ Enter(ok).

Do a full system scan. If something is found, delete it, reboot and do the same again in safe mode with network.



**NOTE: Do NOT do anything else with your computer when scanning. This because you can start virus/adware/spyware/malware manually.



When no one of these scanners are showing anything you can reboot back to normal mode.

Turn on "System Restore".



Online virus, adware and spyware removal.

http://www.precisesecurity.com/antivirus/online-scan.htm

------------------

You need to get one antivirus program, one firewall, pop up blocker and some spyware/adware/malware removers if you don't have it.

I use Norton Internet Security (antivirus, spyware, firewall, add blocker, mail spamfilter, pop up blocker etc) Ad Aware, Spybot and more on my desktop running XP Home SP2 with Firefox and Yahoo Toolbar with pop up blocker and Windows pop up blocker on.

On my laptop i have Ubuntu 7.04. «No security» needed in Linux, but i use antivirus and firewall. Firefox is standard.

I have no virus, spyware, adware, pop ups etc on my computers.

Mozilla Firefox and Opera are safer browsers to use then Internet Explorer.

http://en-us.www.mozilla.com/en-US/products/

http://www.opera.com/



Avast Virus Cleaner - free virus removal tool.

http://www.avast.com/eng/avast-virus-cleaner.html



Ad-Aware 2007 Free.

http://www.lavasoftusa.com/products/ad_aware_free.php

Ad-Aware 2007 Free remains the most popular anti-spyware product for computer users around the world, with nearly one million downloads every week. Our free anti-spyware version provides you with advanced protection against spyware that secretly attaches and takes control of your computer, resulting in aggressive advertising pop-ups, sluggish computer activity, even identity theft through stolen bank details, passwords, and credit card account numbers. If you want real-time scanning capabilities, consider upgrading to Ad-Aware 2007 Plus for real-time protection against spyware, all the time.



SUPERAntiSpyware Free.

http://www.superantispyware.com/



AVG Anti-spyware Free.

http://free.grisoft.com/doc/20/lng/us/tpl/v5



AVG Anti-Rootkit Free.

http://free.grisoft.com/doc/39798/lng/us/tpl/v5

AVG Anti-Rootkit is a powerful tool with state-of-the-art technology for detection and removal of rootkits. rootkits are used to hide the presence of a malicious object like Trojans or keyloggers on your computer. If a threat uses rootkit technology to hide itself it is very hard to find the malware on your PC. AVG Anti-Rootkit gives you the power to find and delete the rootkit and to uncover the threat the rootkit is hiding.



CCleaner is a freeware system optimization and privacy tool. It removes unused files from your system - allowing Windows to run faster and freeing up valuable hard disk space. It also cleans traces of your online activities such as your Internet history. But the best part is that it's fast and contains NO spyware or adware.

http://www.ccleaner.com/



ClearAllHistory - clears browser history, cache, cookies, clipboard and remove other computer activity tracks.

http://www.clearallhistory.com/delete-passwords.html



**NOTE: Only have one antivirus program and one firewall installed on your computer.

http://service1.symantec.com/SUPPORT/nav.nsf/docid/2000031316555206

"Microsoft recommends that you have only one anti-virus program installed on your computer."

Anti-adware/malware/spyware are ok to have more of.



Also scan with online scanners sometimes.

http://security.symantec.com/sscv6/home.asp?langid=ie&venid=sym&plfid=00&pkj=VOONYHGBYNCJEIMXQKC&bhcp=1

http://www.bitdefender.com/scan8/ie.html

http://www.ewido.net/en/onlinescan/

http://www.kaspersky.com/virusscanner

http://support.f-secure.com/enu/home/ols.shtml



Run Windows Updata http://windowsupdate.microsoft.com/

and defragmet you harddisk(s).

How To Analyze and Defragment a Disk in Windows XP

http://support.microsoft.com/kb/305781



Hope this is helpful.

Good luck.

JTB.
2007-07-06 17:07:48 UTC
Try these free malware removers:



I prefer Avast, but AVG is just as great.



AVG AntiVirus

http://free.grisoft.com/doc/1



Avast Home Antivirus

http://www.avast.com/eng/download-avast-...



You may also want some other tools to run and use as well



SpywareBlaster

http://www.download.com/spywareblaster/3...



Spybot S&D

http://www.safer-networking.org/en/mirro...



AVG AntiSpyware

http://free.grisoft.com/doc/20/lng/us/tp...



Adaware (Lavasoft)

http://www.download.com/ad-aware-2007-fr...



If you are currently having a problem:



◙ Download and install AVG. Use it first and see if it finds any viruses or trojans.



☞ http://free.grisoft.com/doc/1



◙ After running AVG go here and run this virus scanner online. There is no need to install it on your computer.



http://housecall.trendmicro.com/...........



◙ Microsoft's New Live Safety Center. Download this scanner to check and remove spyware, viruses, get rid of obsolete files and junk off your computer, and improve your PCs performance.



☞ http://safety.live.com/site/en-us/defaul...



◙ The Microsoft Windows Malicious Software Removal Tool checks computers running Windows XP, Windows 2000, and Windows Server 2003 for infections by specific, prevalent malicious software—including Blaster, Sasser, and Mydoom—and helps remove any infection found. When the detection and removal process is complete, the tool displays a report describing the outcome, including which, if any, malicious software was detected and removed. You can run this tool online FREE.



http://www.microsoft.com/downloads/detai...



◙ Before downloading email attachments in Gmail and Yahoo Mail click on the link that says, "Scan With Norton Antivirus".



◙ Before downloading any software from the internet type it into http://groups.google.com/ to see if that title is known for spyware or viruses. Google Groups has over 1 billion posts spanning 25 years to help you. Even after checking it there ALWAYS scan it before opening it. You just can't be too careful. -- Smart Computing Magazine



◙ A lot of the download sites like http://www.download.com/ and http://www.tucows.com/ scan software before releasing it to the public. But just for safety sake you should still scan it yourself.



◙ Here is a really great article on browser hijacking. This will show you how to get rid of it. There is a tutorial and software to get rid of part of it. You'll need to make some changes to your computer's registry to get rid of the rest of it. Click on the chatroom link on their main page if you need help.



☞ http://www.spywareinfo.com/articles/hija...



◙ Here is Yahoo!'s Internet Security section.



☞ http://security.yahoo.com/



◙ Below is Mcafee's Site Adviser. Type in a URL in the form here and you will find out if the site you want to go to is known for phising (getting your personal info under false pretenses), viruses, spyware, and many other things. You can use the tool on their site or download an program to do that.



☞ http://www.siteadvisor.com/



◙ Get more information at these PC Magazine Web sites.



☞ http://www.pcmag.com/

☞ http://www.smartcomputing.com/



◙ Top 100 Computer & Software Magazines.



☞ http://netvalley.com/top100mag.html........



★★ TOOLS FOR SPECIFIC VIRUSES & TIPS ★★



◙ Sometimes you'll get a particularly nasty virus that cannot be removed with conventional tools. For times like these you can (quite often not always) download a removal tool for that specific virus. Below are some sites you should look at.



☞ http://www.grisoft.com/doc/utilities/ing...

☞ http://www.symantec.com/security_respons...

☞ http://www.bitdefender.com/site/download...



◙ Below is a tool called "Stinger" that Mcafee put together with all 54 of it's tools in it.



☞ http://vil.nai.com/vil/stinger/............



◙ GLOBAL VIRUS ALERT -- The latest virus outbreak alerts from F-Secure, Trend Micro, Panda, and Sophos. Each anti-virus fighter is reporting the state of the Virus Battles on its front, which reflects a unique customer and geographic profile.



☞ http://www.trimmail.com/news/tools/#glob...



◙ Add free virus alerts to your web site.



☞ http://www.trendmicro.com/syndication/vi...

For Trojans try these ( free to try),

http://www.ewido.net/en/

Or

http://www.misec.net/trojanhunter/.........

Or

http://www.agnitum.com/products/tauscan/...





And always scan once a week with these free and trusted scanners as well if you go to gaming sites and porn and etc.

http://housecall.trendmicro.com/...........

http://www.webroot.com/freescan............

http://www.kaspersky.com/virusscanner......

http://www.pandasoftware.com/products/ac...

http://www3.ca.com/securityadvisor/virus...

http://www.bitdefender.com/



First, you need anti-virus software - download, install and update AVG anti-virus (it's free for personal use) - you can find it here - http://free.grisoft.com/doc/1



Then remove your System Restore points (viruses love to hide in the System Restore files), but be aware that if you do remove your existing Restore Points you will not be able to "roll back" your computer to a previous configuration. To find out how to disable System Restore see this page - http://www.pchell.com/virus/systemrestor...



Just to be sure you don't have other malware on your computer I recommend that you download SpyBot Search & Destroy and Adware - both are free spyware/adware detection and removal software.



Next, start the computer in Safe Mode - (as the comptuer is starting up, keep tapping the F8 key on your keyboard until you see a special start-up menu) - more on how to start in Safe Mode here - http://www.microsoft.com/resources/docum...



Using AVG - run a full system virus scan while in Safe Mode



After the viruses have been detected and removed, run SpyBot and AdAware (full system scans) then restart the comptuer, enable System Restore again and enjoy a virus-free computing experience.



If the problems are still there, try using MSCONFIG to help figure out how to manually disable the Trojan from starting up - see more about MSCONFIG here - http://netsquirrel.com/msconfig/...........



To help protect against malware you should install a firewall, Zone Alarm works perfectly well and is free – http://www.zonealarm.com/store/content/c...



Also, don't forget to keep Windows up-to-date - using Microsoft Windows Update!



After following these instructions go to: http://www.geekstogo.com/forum/must-read... they will help you for free, no credit card or personal information needed, and they will analyze Hijack This logs for you, to make sure that your computer is safe. HijackThis helps If persistent spyware is bogging down your computer, you might need HijackThis. The tiny program examines vulnerable or suspect parts of your system, such as browser helper objects and certain types of Registry keys. Pressing the Scan button generates a log of dozens of items, most of which are just customizations. Don't check off an item and hit the Fix checked button unless you're sure it's malware. Clicking Info on selected item tells you why the entry was flagged as suspicious, but not whether it's actually malware. To find that out, search the Web for that item's name or go straight to a forum, such as SpywareInfo or Computer Cops. Saving the log creates a text document you can post to these forums.



The latest version adds powerful tools to the Config window. The process manager and hosts file editor help you excise virulent infections. The unique ADS Spy tool scans for alternate data streams, which some browser hijackers use to hide from spyware removers. The program still installs into whatever directory in which you unzip the file, which can make it hard to locate. HijackThis is a serious tool for any user who needs to root out a serious infestation, but wield it with caution. So, go to the site I gave you above, and they'll help you step by step.

Free registry cleaners:

CCleaner does not specialise in cleaning the registry, it's mostly used to speed up your computer by cleaning up your recycle bin, temp files/internet files, browsing history, application errors, log files and so on.. which frees up some space in your harddisk





I've tried these 10 free cleaners

http://www.regsofts.com/freeware/freereg...

I would recommend the following(click on the webpage and follow):



Free Windows Registry Repair(first one) - rather effective, the first scan i did after about a year showed over 500 problems with the registry, fixed them all



RegSeeker(2nd one) - fixed another 300 problems after using the previous one.



and like the two of them said, Eusing Free Registry Cleaner and Abexo Free Registry Cleaner(30 day trial)



Just run them all that'll fix most problems! But dont expect 100% fixes because programs might recreate registry entries when used and so a second scan might still show the same few errors. (ignore such errors)







those are all freeware, hope i'm of some help



P.S. First go to: http://onecare.live.com/site/en-us/defau... Choose full service scan and let it install any active x components



P.P.S. I have not used Nod32 myself, but it has a bad reputation, and is known as a worm by Symantec: http://searchg.symantec.com/search?q=NOD32&spell=1&access=p&output=xml_no_dtd&ie=UTF-8&client=symc_en_US&site=symc_en_US_vir&proxystylesheet=symc_en_US It also is marked as a red website in site advisor by McAffee, so I suggest you get rid of it. Leslie S. is an idiot, who doesn't know a dratted thing, if she thinks that S&D is adaware, IT IS NOT!


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...