Dramatically slowing down your computer. We really appreciate all your help, including the additional information and links you have given. The TDSSpqlt.sys file is associated with malware only if found in the locations listed above. or read our Welcome Guide to learn how to use this site. Source

Here are my last two MBAM logs, as well as a fresh HijackThis log, also a copy of my virus chest contents: (One of the IT guys at work suggested unimmunizing Click Yes in the Confirm Value Delete dialog box.

Most of the important contents of this computer, mainly pictures and her music library, were already backed up, in one form or another.

Hijackthis går inte ens att starta. Most noticeably, there was this little red button in the bottom right, like one of those taskbar alerts, saying I had spyware and to click it to download the latest windows Notes: The deletion of TDSSpqlt.sys will fail if it is locked; that is, it is in use by some application (Windows will display a corresponding message). Spybot Search and destroy won't even install because you apparently need to download "additional" files from their server when it installs.

Many rootkits can hook into the Windows 32-bit kernel, and patch several APIs to hide new registry keys and files they install.

run this script:CODEbeginSetAVZGuardStatus(True);SearchRootkit(true, true); QuarantineFile('E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\winsvc.exe',''); QuarantineFile('E:\autorun.inf',''); QuarantineFile('crypts.dll',''); QuarantineFile('C:\WINDOWS\system32\crypts.dll',''); DeleteFile('C:\WINDOWS\system32\crypts.dll'); DeleteFile('crypts.dll'); DeleteFile('E:\autorun.inf'); DeleteFile('E:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\winsvc.exe');BC_ImportDeletedList;ExecuteSysClean;BC_Activate;RebootWindows(true);end.

afterwards post a combofix log:Download it here -> http://www.exterminate-it.com/malpedia/file/TDSSpqlt.sys I have run more scans, including an avast!

In the Tasks Manager window, click the Processes tab. Try to contact this nice Belgian Malware Fighter, the lady is Microsoft-MPV, and she might like to welcome you and train you,http://miekiemoes.blogspot.com/ & http://support.bluemedicine.be/mybb/user-1.html

The only thing I can think of is that I moved the log it created before I tried to uninstall it.

Attached are the logs.

C:\WINDOWS\system32\TDSScfum.dll (Rootkit.Agent) -> No action taken.

C:\WINDOWS\system32\TDSSnmxh.log (Trojan.TDSS) -> No action taken.

I've attached the log and would appretiate your comments on it.

For instructions on deleting locked files, see Deleting Locked Files.

Uninstall both Java versions, reboot, use CCleaner to empty all temporary folders and Java catche and then install the new version.In case you get any type of error please take a

Would it be wise to just delete everything and start fresh?-I uninstalled Combofix by deleting all the folders/files it created.

In some instances an infection may have caused so much damage to your system that it cannot be completely cleaned or repaired.

Using your file explorer, browse to the file using the paths listed in Location of TDSSpqlt.sys and Associated Malware. C:\WINDOWS\system32\brastk.exe (Trojan.FakeAlert) -> No action taken. Both disabled.

bmed Visa allmän profil Skicka ett privat meddelande till bmed Hitta fler inlägg av bmed Hitta alla inlägg av bmed i detta ämne Svara på ämne Svara Topp Dela Facebook Digg That seemed to have fixed most of the problems. I've tried safemode, I've shut off system restore. I've tried downloading and executing other files from other threads where people had similar problems, like SDFix.exe, gmer.exe and combofix (just to see if it would work), and none of them

Tech Support Guy is completely free -- paid for by advertisers and donations. More Search Options [X] My Assistant Loading. To avoid deleting a harmless file, ensure that the Value column for the registry value displays exactly one of the paths listed in Location of TDSSpqlt.sys and Associated Malware. This continued for a couple of days.

Make a scan with malwarebytes anti-malware and post it's log: http://www.malwarebytes.org/mbam.php don't remove anything it detected, yet.

Please start a New Thread if you're having a similar issue.

Then please zip up C:\qoobox\quarantine and upload both it and C:\quarantine.zip to a filehost such as http://rapidshare.com/ Then email the link to the uploaded file to [email protected]