I just started up my computer today and when I connected to Internet Explorer, I got a pop-up mentioning anti-spyware. I only get one pop-up every so often, but it has slowed my connection down a lot.
I quickly ran Malwarebytes Anti-Malware and it has picked up 32 threats of something called Trojan Vundo.H. I didn't want to fix or remove any files because I am a beginner with viruses and trojans and wanted to get help here, as I didn't want to make things worse.
Here I have posted the log file for Malwarebytes Anti-Malware:
Malwarebytes' Anti-Malware 1.31
Database version: 1461
Windows 5.1.2600 Service Pack 3
05/12/2008 05:53:31
mbam-log-2008-12-05 (05-53-24).txt
Scan type: Quick Scan
Objects scanned: 46972
Time elapsed: 3 minute(s), 19 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 5
Registry Keys Infected: 7
Registry Values Infected: 5
Registry Data Items Infected: 6
Folders Infected: 0
Files Infected: 9
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
C:\WINDOWS\system32\zujopuhe.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\raganapo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yebalino.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\hovolile.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\nevihezu.dll (Trojan.Vundo.H) -> No action taken.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2dea0c11-3327-4224-a6e7-d44b1b23e987} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2dea0c11-3327-4224-a6e7-d44b1b23e987} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2dea0c11-3327-4224-a6e7-d44b1b23e987} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1a26f07f-0d60-4835-91cf-1e1766a0ec56} (Trojan.Agent) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\b074622a (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\numerudina (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpmb34751b6 (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.Vundo.H) -> No action taken.
Registry Data Items Infected:
HKEY_CLASSES_ROOT\regfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("regedit.exe" "%1") Good: (regedit.exe "%1") -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\raganapo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\raganapo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\raganapo.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\nevihezu.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\nevihezu.dll -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\zujopuhe.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ehupojuz.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\yebalino.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\nevihezu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\hovolile.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\raganapo.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\bimuvoku.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\sosilore.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\~.exe (Trojan.Vundo.H) -> No action taken.