Hi,
Your system is horribly infected with several nasties.
I notice you have Symantec
AND Avast installed. This is not recommended as it will cause conflicts and hog your system resources. Please uninstall one of them, preferably the norton crap.
(Nprotect is preventing items from being deleted and you have a lot of things there that ought to be deleted. Please delete those items permanently)
Another thing is, your AVG log displays 'No Action Taken' for all the files detected.
I suggest you run AVG again and quarantine the files. Pictorial instructions HERE.
Often times, an infection can occur again not due to the incompetence of programs, but because of user habits.
May I recommend that you read this article.
You may wish to copy and paste these instructions on notepad for easier reference later.
Download
Vundofix from
HERE.
Double click the Vundofix.exe to run it.
Right click in the vundofix window and click add files.
Enter the full file path/s to the files you want Vundofix to delete and click the add files button, followed by the close window button. Click the remove vundo button and let Vundofix do it`s stuff.
These are the following file path's you need to enter:
C:\WINDOWS\system32\cbxwwts.dll
C:\WINDOWS\system32\tuvwtsr.dll
C:\WINDOWS\system32\yayxvvt.dll.vir
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will shutdown your computer, click OK.
Turn your computer back on.
Boot into safe mode under your normal user name. See how
HERE
Next turn on "Show all files and folders, including hidden and system". See how
HERE
Open your task manager by pressing holding ctrl, alt and pressing del. Alternatively, use ctrl + shift + esc. Go to the processes tab, and end the following processes, if found:
aswboot.exe
lmllm.bak2
lmllm.bak1
mllml.dll.vir
ghhkj.bak1
vtsqq.dll
jkhhg.dll
awvts.dll
After that,
run HijackThis and fix the following entries, if found (do this by placing a tick in the check boxes beside these entries and clicking "Fix checked"):
O2 - BHO: (no name) - {6A373B7E-496E-424f-A9BE-486A5E9AB018} - (no file)
O3 - Toolbar: (no name) - {2E608F70-C430-4bc5-96F6-608E02EBA5B2} - (no file)
Close HJT.
Navigate in Windows Explorer and delete the following files and folders in bold.
C:\WINDOWS\system32\
lmllm.bak2
C:\WINDOWS\system32\
lmllm.bak1
C:\WINDOWS\system32\
mllml.dll.vir
C:\WINDOWS\system32\
ghhkj.bak1
C:\WINDOWS\system32\
vtsqq.dll
C:\WINDOWS\system32\
jkhhg.dll
C:\WINDOWS\system32\
awvts.dll
C:\WINDOWS\system32\
aswboot.exe
Reboot into normal mode and rehide your protected OS files.
Thereafter, please post a fresh HJT, ComboFix and AVG Antispyware log from normal mode as an attachment into this thread. I also need the C:\vundofix.txt file.
Also, do an indepth root kit scan again after you have dealt with norton and that nprotect folder, and let me know the results please. Thanks.
PS. I notice that you have been using cracks and key gens. This is against the principles and rules of this forum. Please remove them all. If not the next time you post and we see it, I shall inform the moderator to close your thread and no further replies for help entertained.
Regards,
Your friendly Momok =)