MBAM can be uninstalled via control panel add/remove but it may be a useful tool to keep. ComboFix is a very powerful tool.

Checking for Winlogon reference. [06/11/2007, 21:25:58] - Checking for HKLM\...\Winlogon\Notify\xympprwc [06/11/2007, 21:25:58] - Key not found: HKLM\...\Winlogon\Notify\xympprwc, continuing. [06/11/2007, 21:25:58] - Finished Searching Browser Helper Objects [06/11/2007, 21:25:58] - Finishing up... Checking for Winlogon reference. [06/11/2007, 21:25:58] - Checking for HKLM\...\Winlogon\Notify\pmnli [06/11/2007, 21:25:58] - Key not found: HKLM\...\Winlogon\Notify\pmnli, continuing. [06/11/2007, 21:25:58] - BHO 8: {E12BFF69-38A7-406e-A8EF-2738107A7831} () [06/11/2007, 21:25:58] - WARNING: BHO has Dynamic IP-addresses are temporary and assigned each time a computer accesses the Internet. You have used Malwarebytes before. https://forums.techguy.org/threads/help-removal-of-celldorado-wixamin-travian-us.807812/page-2

To help protect your computer in the future here are some free programs you can look at: If your Microsoft Update is not

One right after the other, just to make sure that all malware is gone.:Malwarebytes AntimalwareSUPERAntispyware Removal Tool

emeraldnzl, Mar 13, 2009 #24 nodie Thread Starter Joined: Nov 2, 2008 Messages: 23 Still getting the CiD popup nodie, Mar 14, 2009 #25 emeraldnzl Malware Specialist Joined: Nov 3, Help : Removal of Celldorado, wixamin, travian.us.... I know that I have Zlob and C2.Lop as Spybot S&D shows them when running the bot check, but I can't find the exact registry keys to delete them. Post the scan report back here.

scanning hidden files ... http://www.malwareremoval.com/forum/viewtopic.php?f=11&t=31850 OK ! --------------------\\ Checking the Hosts file Hosts file CLEAN --------------------\\ Searching for hidden files with Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-03-14 19:05:23 C:\DOCUME~1\Olivier\My Documents\Downloads\Grand Theft Auto Vice City - PC\Crack C:\DOCUME~1\Olivier\My Documents\Downloads\Grand Theft Auto Vice City - PC\Crack\gta-vc.exe C:\DOCUME~1\Olivier\My Documents\My Received Files\keygen.rar [F:110][D:8]-> C:\DOCUME~1\Olivier\LOCALS~1\Temp [F:30][D:0]-> C:\DOCUME~1\Olivier\Cookies [F:627][D:4]-> C:\DOCUME~1\Olivier\LOCALS~1\TEMPOR~1\conten NewsMalwareSoftwareFilesAsk Us Tweet Severity scale Use Control Panel > Add/Remove Programs to remove HijackThis v2.

With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. There is good reason for this as ComboFix can, and sometimes does, run into conflict on a computer and render it unusable. More information about Reimage 12 ❯ Vundo.Celldorado infects computers through web browser security exploits. And, please, do not post any more v2 BETA HijackThis logs!

Live [10/03/2009|05:05] C:\Program Files\ MétéoMédia [04/02/2008|12:14] C:\Program Files\ Microsoft CAPICOM [29/01/2008|08:32] C:\Program Files\ microsoft frontpage [01/03/2009|05:41] C:\Program Files\ Microsoft Office [26/02/2009|03:33] C:\Program Files\ Microsoft Silverlight [29/01/2008|11:44] C:\Program Files\ Microsoft Visual

Then please post [1] the VundoFix report, and [2] a new HijackThis log. Download Reimage - remover HappinessGuarantee Compatible with OS X Download Reimage - remover HappinessGuarantee Compatible with Microsoft Windows What to do if failed?#If you failed to remove infection using Reimage Reimage, To learn more about how to protect yourself while on the internet read this article by Tony Klein: So how did I get infected in the first place? Change the Files of type to Text file (.txt) before clicking on the Save button.

Discussion in 'Virus & Other Malware Removal' started by nodie, Mar 9, 2009. For ease of use, you might consider the following free program: ATF Cleaner

Copy and paste that information in your next post.