How to Remove BAGLE-AS

Trojans is one of the most wide-spread threat in the internet. They can spread in lot of ways (torrents, e-mail attachments, video codecs etc.). BAGLE-AS as well as any other trojan can harm your PC in different ways. Originally, trojans stole just your e-mail contacts and some personal data. Nowadays, they can steal any type of private information, being serious threat. In this tutorial we will show how to deal with BAGLE-AS detect and remove it from your PC.

Choose option :

* BAGLE-AS description and technical details.

* Manual removal of BAGLE-ASl.

* Professional support that will help you remove BAGLE-AS from our Security Support Team.

BAGLE-ASs require interplay with a computer hacker to fulfill their destination. BAGLE-AS can log keystrokes to monitor user action, so it's needful to remove BAGLE-ASs fast as can. Unknown programs can be installed on your PC if you don't remove BAGLE-AS or nothing less than perfect BAGLE-AS removal procedure. Without BAGLE-AS removal tool your PC can become a spamming channel. You consider that modern Windows will facilitate you to evade BAGLE-ASs so you'll be apt not to bother about BAGLE-AS removal dealing? Aren't you startled because the deed that you can drop momentous data because of non-existance of BAGLE-AS removal tool?


Threat indicator: HIGH

Trojan's detail table

Trojan alias:

Executable file:

Threat class:

Affected OS:

BAGLE-AS

wintems.exe

Trojan

Win32 (Windows 9x, Windows XP, Windows Vista, Windows Seven)



BAGLE-AS infiltration

As we already said there numerous ways trojan can get to your PC from the internet. BAGLE-AS copies its file(s) to your hard disk. File name typical to BAGLE-AS is wintems.exe. Then it runs itself and creates new startup key in registry with name BAGLE-AS and value wintems.exe. If you will look into running processes list you will see some extra process with name like wintems.exe or any random name that uses decent amount of your CPU.

If you would like to remove BAGLE-AS use Automatic Trojan Removal

So what is BAGLE-AS Removal Tool? Basically, it is the tool that will remove every file and registry key that was created by BAGLE-AS. It was created after analyzing all versions and types of this threat on test PCs and every file and key was added to the database. Removal Tool is updated regularly to make sure it can remove latest versions of BAGLE-AS. If you already our customer (purchased any product of ours previously) you can request this tool for free in the form below providing your orger number in description:

Download FREE BAGLE-AS Removal Tool

Please take 1 second to show that you like our solution - click on this Facebook button:

How to remove BAGLE-AS manually?

During all time since adding BAGLE-AS to our database we track it changes and add them in the list below, removing files mentioned from your hard drive and deleting them from starup list and also unregistering all corresponding DLLs will result cleaning your computer drom the trojan. But also, missing DLL's that can be removed or corrupted by BAGLE-AS should be restored from your Windows CD .

So, here is the simple process to remove BAGLE-AS:

1. Delete following processes form startup and files from your hard drive:

no information

2. Delete the following folders that are assosiated with BAGLE-AS:

no information

3. Finally, remove this registry keys:

no information

Warning: Sometimes, trojan can use system file names or randomly generated names for its executable. We recommend you to use Download FREE BAGLE-AS Removal Tool

If you are already our customer or you have additional questions ask our support team for help in removing BAGLE-AS!

Write a few words of how you got BAGLE-AS with all circunstances in the form below. Our support team open support ticket for you in an hour and we will start solving your problem with BAGLE-AS. Attach suspicious files that you see that possibly a part of BAGLE-AS.

Click to ask professional of BAGLE-AS solution

Describe your problem here and we'll contact you in several minutes:

We'll reply you in 10 minutes or less
* Your Name:
* Your E-mail:
* Problem summary:
* Detailed description:
Attach suspicious file:
Here you can attach file you suspect to be virus or source of problem. If you want to attach several files, put them into one archive and attach it instead.

Click on this button to submit request.

Solution guaranteed!

 

It is important:

  1. We hate spam as much as you do. We will not share your email with any third party or publish it anywhere. Your email is used only to contact you and give you BAGLE-AS removal solution.
  2. All fields of this form are obligatory.

Here are the descriptions of problems connected with BAGLE-AS and wintems.exe we received earlier:

Problem Summary: When playing a video, there is no audio; Audio Device out

Suspect pc is infected with a trojan called Srosa. Please help to get rid of it. Thank you.

Our support team contacted Cook with the solution of the problem described.

Problem Summary: winupgro.exe

Whenever I turn on my Laptop, appears a window with winupgro.exe

The problem of Borone was resolved by our support team.

Problem Summary: cannot install antivirus due to wintems.exe and flec006.exe

I noticed that my anitivrus had stopped working on my laptop. OS is Vista, have tried logging onto avast website to download again, cannot as browser is automatically closed. Have tried cleaning registry using Uniblue registry booster. have installed spyhunter which has identified wintems.exe and flec006.exe as the problem. have tried removing the files manually, but still no joy. Am now trying to use the BAGLEAS removal tool, but keep getting BSoD.

We examined this request and answered harri deo by email.

Problem Summary: wintem on my notebook

i have been given a notebook with wintem loose on it causing it to hit 100% and can\'t get rid of. please tell a soultion to ridding of it.

Reply of our support team was forwarded to chris whittome via email.

Problem Summary: I need remove a wintems.exe, winfilse.exe

C:\\Documents and Settings\\Administrador\\Dados de aplicativos\\m\\flec006.exe
C:\\Documents and Settings\\Administrador\\Dados de aplicativos\\hidires\\hidr.exe
C:\\Documents and Settings\\Administrador\\Dados de aplicativos\\hidires\\m_hook.sys
C:\\Documents and Settings\\Administrador\\Dados de aplicativos\\hidires\\srosa.sys
C:\\Documents and Settings\\Administrador\\Dados de aplicativos\\hidn\\hidn2.exe
C:\\WINDOWS\\SYSTEM32\\drivers\\hidr.exe
C:\\WINDOWS\\SYSTEM32\\drivers\\srosa.sys
C:\\WINDOWS\\SYSTEM32\\drivers\\winfilse.exe

C:\\WINDOWS\\SYSTEM32\\wintems.exe
C:\\WINDOWS\\SYSTEM32\\hldrrr.exe

We worked out the solution of descirbed problem and sent our suggestions to Elpidio Novaes Filho.

Problem Summary: Wintems.exe file

super slow computer

Tamir Fridman received email with possible solutions of his problem.

Problem Summary: *.exe file are missing -- like explore.exe

Will appreciate ur consideration.

Regards

imtiyaz ali
Abudhabi
UAE
+971507839650

Several possible methods of solving the problem mentioned by imtiyaz ali were sent to the provided email address.

Problem Summary: wintems causing cpu load to be 100%

i cant disable the process and its overheating my cpu. any help given will be greatly appreciated. thanks

Our support team answered the request of Mr . Liew by email.

Problem Summary: everything is \"not a valid Win32 application\"

can open some applications by right-clicking & using \"run as\". Norton AV won\'t run & any trojan/worm/keylogger tool will download but not install ie.\" not a valid....\" pc is pentium 3 desktop,Windows XP. Something in notepad referred to \" Win32SillyP2P \" Thank you.

Dean Gray, please check your email for our answer.

Problem Summary: Trojan

C:\\WINDOWS\\system32\\drivers\\hldrr.exe and C:\\WINDOWS\\system32\\drivers\\downld found on system

HB, we sent the solution of this problem to your mailbox.

Problem Summary: wintems.exe

I just can\'t get rid of this, what should i do?
i can\'t even install any antivirus program.
And i also installed Antivirus 2008, what i heared later, is a trojan too.
Totally crashed this time - help please?

Our support team contacted Jorma Tamm with the solution of the problem described.

Problem Summary: hldrr.exe or hldrrr.exe not sure which it is.

Cannot run antivirus. No matter what antivirus I try, it says it is not a valid win32 exe file.

The problem of poopypooh7 was resolved by our support team.

Problem Summary: cZCZAC

asZCASZCAZ

We examined this request and answered sadfSA by email.

Problem Summary: how can i get rid of wintems.exe

im infected with wintems.exe on my laptop (not this pc)

Reply of our support team was forwarded to lee thompson via email.

Problem Summary: High cpu usage,

The task Manager is consuming the cpu time

We worked out the solution of descirbed problem and sent our suggestions to alfredo_iguazu.

Problem Summary: no antivirus, trojan horse infection

my system is infected with a trojan horse (think it\'s bagel) which prevents any antivirus from running. it\'s sending out bulk emails and when i try to restart my pc it goes into a reboot cycle forcing me to hit F8 and using last known good settings.

Wayne Hall received email with possible solutions of his problem.

Problem Summary: how to get rid of wintems.exe

I got bagle virus, need solution

Several possible methods of solving the problem mentioned by Jess were sent to the provided email address.

Problem Summary: Trojan horse Downloader.Generic6.ALAN (I-Worm/Bagle)

Hi, every time I turn on my PC my AVG Anti-Virus detects this I-Worm in C:\\Windows\\system32\\wintems.exe

I remove it or move it to AVG\'s Virus Vault by means of this software but after using the PC for a while (couple of hours or so) it crashes, and I have to turn it on again, detecting the antivirus again the same I-Worm.
Please, could you help me?

I\'m downloading your exe file in order to try to remove it.

Thanks in advance for your answer.

Our support team answered the request of MarK by email.

Problem Summary: after removing w32.worm.bagle no sound

i removed the worm using SpyHunter. Ad-aware also found and removed traces of worm Bagle. I ran Registry Mechanic, too.
But now there\'s no sound and i still can\'t reinstall any antivirus programs...

Hüseyin Kocaman, please check your email for our answer.

Problem Summary: wintems.exe

my pc is infected with wintems.exe. It appeared after a get file dialog poped up with title \"Select file to crack\"

cesar lozada, we sent the solution of this problem to your mailbox.

Problem Summary: wintems.exe and hldrr.exe

Hi,

I got these 2 files, My McAfee on-access shield is disabled. I tried scanning the virus with McAfee and wintems.exe got deleted. I don\'t know the virus has gone or not. When I start in safe mode, it not letting me do that. Please suggest what to do and how to get my on-acess shield service running.

Regards
Deepak

Our support team contacted Deepak Verma with the solution of the problem described.

Problem Summary: W32 Bagle

No Sound, 100% CPU Usage, Disables anivirus and spyware removal tools, and can\'t afford to buy software to remove this stuff anyway

The problem of Andy Newman was resolved by our support team.

Problem Summary: Hdlrr and wintems

I don\'t know how to remove this antivirus is not working I tried manually killing the process but it appears again

We examined this request and answered Santosh Sarraf by email.

Problem Summary: wintems....

hello
i have noticed a wintem.exe in the task manager but it was too late :( my antivirus is disabled, my computers works horribly
my sound doesnt work at all :( I have win XP
please help me
thank you

Reply of our support team was forwarded to Saszet Szilard via email.

Problem Summary: Virus Trojan-Downloader.Win32.Bagle

Hi
I need help. I would like to remove this visus
Email-Worm.Win32.Bagle and Trojan-Downloader.Win32.Bagle

Thanks

We worked out the solution of descirbed problem and sent our suggestions to Sici.

Problem Summary: Can\'t remove Bagle virus

ZoneAlarm detected a file hldrrr.exe in system32 directory trying to access the internet. My system was having a lot of other problems. It was slow, my antivirus program wouldn\'t work and I couldn\'t reinstall any new ones, System Rstore wouldn\'t work and I couldn\'t start Windows in Safe Mode. What do I do? Please help.
NB there were no processes wintems.exe running in Task Manager.

Dean received email with possible solutions of his problem.

Problem Summary: wintems running

there\'s a strange file called wintems running and i cant eliminate it please help

Several possible methods of solving the problem mentioned by addie were sent to the provided email address.

Problem Summary: suspect wintems virus infected my system

sound card not working even after updating
system cpu is consumed at 100% maximum and its slow
my nortan antivirus is not updating or scanning
downloaded antiviruses are not allowed to run

Our support team answered the request of ata by email.

Problem Summary: hldrr.exe is hijacking my comp (Bagle-virus?)

The hldrr.exe is hijacking my comp. CPU is at 95% and up. This happened after I tried to install a downloaded file. I have an antivirus program on my comp.

Are Hegrand, please check your email for our answer.

Problem Summary: BAGLE-AS and wintems.exe

Due to wintems.exe my antivirus software has been disabled. System speed and performance infected deadly. I have Windows XP. My sound card is also disabled. I shall be greatly thankful to you for this favour.

Luiz Regis, we sent the solution of this problem to your mailbox.

Problem Summary: BAGLE-AS and wintems.exe

I have a lot of problems for the deactivatón of the protection

Our support team contacted Josep clau with the solution of the problem described.

Problem Summary: Wintems.exe has changed

In my McAfee Personal Firewall Plus dialogue box it reads, \" The application wintems.exe has changed since you first gave it access to the Internet. Do you still want to let it access the Internet?\" ....Path: C:\\WINDOWS\\system32\\wintems.exe

How can I fix this problem?

The problem of Jim Larche Jr was resolved by our support team.

Problem Summary: wintems

Due to wintems.exe my antivirus software has been disabled. System speed and performance infected deadly. I have Windows XP. My sound card is also disabled. I shall be greatly thankful to you for this favour.

We examined this request and answered oleg by email.

Problem Summary: slow system

after downloading a crack i\'m infected and please help me

Reply of our support team was forwarded to martin via email.

Problem Summary: My system is infected with wintems.exe, hldrrr.exe

Due to wintems.exe and hldrrr.exe my antivirus software has been disabled, spyware has also been disabled. System speed and performance infected deadly how can i remove this threat manually by removing various keys from registry editor. I have Windows XP and Windows 98 on my system. Windows 98 is not infected. Help me to solve out this problem. I shall be greatly thankful to you for this favour.

We worked out the solution of descirbed problem and sent our suggestions to Muhammad Tayyab.

Problem Summary: cant remove wintems.exe

i cant run any antivirys nothing is working the computer is really slow made online scan thats what i got

Total number of scanned objects 48325
Number of viruses found 33
Number of infected objects 114
Number of suspicious objects 0
Duration of the scan process 13:06:15

Infected Object Name Virus Name Last Action
C:\\Documents and Settings\\All Users\\Application Data\\Microsoft\\Network\\Downloader\\qmgr0.dat Object is locked skipped
C:\\Documents and Settings\\All Users\\Application Data\\Microsoft\\Network\\Downloader\\qmgr1.dat Object is locked skipped
C:\\Documents and Settings\\LocalService\\Cookies\\index.dat Object is locked skipped
C:\\Documents and Settings\\LocalService\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat Object is locked skipped
C:\\Documents and Settings\\LocalService\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat.LOG Object is locked skipped
C:\\Documents and Settings\\LocalService\\Local Settings\\History\\History.IE5\\index.dat Object is locked skipped
C:\\Documents and Settings\\LocalService\\Local Settings\\Temporary Internet Files\\Content.IE5\\index.dat Object is locked skipped
C:\\Documents and Settings\\LocalService\\NTUSER.DAT Object is locked skipped
C:\\Documents and Settings\\LocalService\\ntuser.dat.LOG Object is locked skipped
C:\\Documents and Settings\\NetworkService\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat Object is locked skipped
C:\\Documents and Settings\\NetworkService\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat.LOG Object is locked skipped
C:\\Documents and Settings\\NetworkService\\NTUSER.DAT Object is locked skipped
C:\\Documents and Settings\\NetworkService\\ntuser.dat.LOG Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\m\\data.oct Infected: Trojan-Downloader.Win32.Bagle.nk skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Microsoft\\Templates\\Normal.dot Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Microsoft\\Word\\AutoRecovery save of Document1.asd Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\cert8.db Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\extensions\\firebit@firebit\\components\\firebit.dll Infected: not-a-virus:AdWare.Win32.Kitsune.b skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\history.dat Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\key3.db Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\parent.lock Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\search.sqlite Object is locked skipped
C:\\Documents and Settings\\Администратор\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\urlclassifier2.sqlite Object is locked skipped
C:\\Documents and Settings\\Администратор\\Cookies\\index.dat Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Microsoft\\Windows\\UsrClass.dat.LOG Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\Cache\\_CACHE_001_ Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\Cache\\_CACHE_002_ Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\Cache\\_CACHE_003_ Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Application Data\\Mozilla\\Firefox\\Profiles\\73oywnkt.default\\Cache\\_CACHE_MAP_ Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\History\\History.IE5\\index.dat Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temp\\~DFCD36.tmp Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temp\\~DFEF76.tmp Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\4AOFKLAR\\b64_2[1].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\4AOFKLAR\\b64_2[2].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\4AOFKLAR\\b64_2[3].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\4AOFKLAR\\b64_2[4].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\9ETRYY59\\b64[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\9ETRYY59\\b64_1[1].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\9ETRYY59\\b64_1[2].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\9ETRYY59\\b64_2[1].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\9ETRYY59\\b64_2[2].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\index.dat Object is locked skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\UUG56KY6\\b64[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\UUG56KY6\\b64[5].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\UUG56KY6\\b64_1[1].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\UUG56KY6\\b64_2[1].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64[1].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64[2].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64[3].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64[4].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64[5].jpg Infected: Email-Worm.Win32.Bagle.of skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_1[1].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_1[2].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_1[3].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_1[4].jpg Infected: Trojan-Downloader.Win32.Bagle.ij skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_2[1].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\Local Settings\\Temporary Internet Files\\Content.IE5\\ZCSWZBX4\\b64_2[2].jpg Infected: Email-Worm.Win32.Bagle.vr skipped
C:\\Documents and Settings\\Администратор\\NTUSER.DAT Object is locked skipped
C:\\Documents and Settings\\Администратор\\ntuser.dat.LOG Object is locked skipped
C:\\Program Files\\MSN Messenger\\riched20.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\sti.log Object is locked skipped
C:\\System Volume Information\\MountPointManagerRemoteDatabase Object is locked skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1770\\A0556056.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1770\\A0556057.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556636.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.as skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556637.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556638.scr Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556639.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch.i skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556647.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.at skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556649.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.bc skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556650.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556651.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.l skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556652.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.af skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556653.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556654.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556655.SCR Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556656.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556657.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556658.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch.a skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556659.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.an skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556660.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.aq skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556661.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.bh skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556663.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.bc skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556664.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.ax skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556666.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.bc skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556668.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556669.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.as skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556670.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.ad skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556672.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556673.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.i skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556676.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556677.EXE Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556678.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556679.DLL Infected: not-a-virus:AdTool.Win32.MyWebSearch.bc skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556690.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556695.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0556700.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0557095.DLL Infected: not-a-virus:AdWare.Win32.Comet.ap skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0557689.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0557693.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0557694.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1776\\A0557716.exe Infected: Trojan-Downloader.Win32.Bagle.mk skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0558716.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0558717.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0558718.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0558733.exe Infected: Trojan-Downloader.Win32.Bagle.mk skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0559733.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0559736.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1777\\A0559737.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0559785.exe Infected: Worm.Win32.Fujack.aa skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0559786.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0560733.exe Infected: Trojan-Downloader.Win32.Bagle.mk skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0561733.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0561735.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0562733.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1778\\A0562735.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1780\\A0562759.exe Infected: Virus.Win32.Tenga.a skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1780\\A0563281.dll Infected: not-a-virus:AdWare.Win32.Mostofate.u skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1780\\A0563310.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563335.dll Infected: not-a-virus:AdTool.Win32.MyWebSearch.au skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563336.exe Infected: Trojan-Downloader.Win32.Bagle.mk skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563466.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563467.exe Infected: not-a-virus:AdWare.Win32.Chiem.a skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563468.dll Infected: not-a-virus:AdWare.Win32.Look2Me.ab skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563469.dll Infected: not-a-virus:AdWare.Win32.Look2Me.ab skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563470.exe Infected: not-a-virus:AdWare.Win32.EZula.bg skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1781\\A0563471.dll Infected: not-a-virus:AdWare.Win32.Look2Me.ab skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1784\\A0563543.dll Infected: Trojan.Win32.Obfuscated.tv skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1784\\A0563548.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1784\\A0563552.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1785\\A0563586.exe/mwsSetup.CommonCodebase.exe Infected: not-a-virus:AdTool.Win32.MyWebSearch.bc skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1785\\A0563586.exe CAB: infected - 1 skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1785\\A0563587.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1786\\A0564537.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1788\\A0565541.sys Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1789\\A0565550.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\System Volume Information\\_restore{B748B4FD-CB5C-4AAA-A03C-124C4F7DC4B6}\\RP1789\\change.log Object is locked skipped
C:\\WINDOWS\\$hf_mig$\\KB890859\\SP2QFE\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\$hf_mig$\\KB929338\\SP2QFE\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\$hf_mig$\\KB931784\\SP2QFE\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\$NtUninstallKB890859$\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\$NtUninstallKB929338$\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\$NtUninstallKB931784$\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\Debug\\PASSWD.LOG Object is locked skipped
C:\\WINDOWS\\Driver Cache\\i386\\ntoskrnl.exe Object is locked skipped
C:\\WINDOWS\\SchedLgU.Txt Object is locked skipped
C:\\WINDOWS\\Sti_Trace.log Object is locked skipped
C:\\WINDOWS\\system32\\1.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\WINDOWS\\system32\\AnalFTP2.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\WINDOWS\\system32\\CatRoot2\\edb.log Object is locked skipped
C:\\WINDOWS\\system32\\CatRoot2\\tmp.edb Object is locked skipped
C:\\WINDOWS\\system32\\ccapp.exe Infected: not-a-virus:AdWare.Win32.Chiem.a skipped
C:\\WINDOWS\\system32\\cheat_plugin.exe/data0001 Infected: Trojan-Downloader.Win32.IstBar.ja skipped
C:\\WINDOWS\\system32\\cheat_plugin.exe/data0003 Infected: Trojan-Downloader.Win32.IstBar.ny skipped
C:\\WINDOWS\\system32\\cheat_plugin.exe NSIS: infected - 2 skipped
C:\\WINDOWS\\system32\\config\\AppEvent.Evt Object is locked skipped
C:\\WINDOWS\\system32\\config\\default Object is locked skipped
C:\\WINDOWS\\system32\\config\\default.LOG Object is locked skipped
C:\\WINDOWS\\system32\\config\\Internet.evt Object is locked skipped
C:\\WINDOWS\\system32\\config\\SAM Object is locked skipped
C:\\WINDOWS\\system32\\config\\SAM.LOG Object is locked skipped
C:\\WINDOWS\\system32\\config\\SecEvent.Evt Object is locked skipped
C:\\WINDOWS\\system32\\config\\SECURITY Object is locked skipped
C:\\WINDOWS\\system32\\config\\SECURITY.LOG Object is locked skipped
C:\\WINDOWS\\system32\\config\\software Object is locked skipped
C:\\WINDOWS\\system32\\config\\software.LOG Object is locked skipped
C:\\WINDOWS\\system32\\config\\SysEvent.Evt Object is locked skipped
C:\\WINDOWS\\system32\\config\\system Object is locked skipped
C:\\WINDOWS\\system32\\config\\system.LOG Object is locked skipped
C:\\WINDOWS\\system32\\ctfmondll.dll Infected: not-a-virus:Monitor.Win32.KeyLogger.w skipped
C:\\WINDOWS\\system32\\drivers\\hldrrr.exe Infected: Trojan-Downloader.Win32.Bagle.mk skipped
C:\\WINDOWS\\system32\\drivers\\sptd.sys Object is locked skipped
C:\\WINDOWS\\system32\\drivers\\SROSA.SYS.del Infected: Trojan-Downloader.Win32.Bagle.mi skipped
C:\\WINDOWS\\system32\\h323log.txt Object is locked skipped
C:\\WINDOWS\\system32\\mdelk.exe Infected: Email-Worm.Win32.Bagle.of skipped
C:\\WINDOWS\\system32\\navshext.dll Infected: not-a-virus:AdWare.Win32.Chiem.a skipped
C:\\WINDOWS\\system32\\navshext1.dll Infected: not-a-virus:AdWare.Win32.Chiem.a skipped
C:\\WINDOWS\\system32\\Vic32.dll Infected: not-a-virus:Monitor.Win32.PCSpy.c skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\INDEX.BTR Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\INDEX.MAP Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\MAPPING.VER Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\MAPPING1.MAP Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\MAPPING2.MAP Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\OBJECTS.DATA Object is locked skipped
C:\\WINDOWS\\system32\\wbem\\Repository\\FS\\OBJECTS.MAP Object is locked skipped
C:\\WINDOWS\\wiadebug.log Object is locked skipped
C:\\WINDOWS\\wiaservc.log

what should i do...? please help me i dont want to reinstal my wondows.
i am using win xp.
please help

Dmitri received email with possible solutions of his problem.

Problem Summary: cannot remove wintems..cannot install removal software

my pc is swarmed with wintems..i cannot kill the process and i cannot install anti virus software..please help

Several possible methods of solving the problem mentioned by atil burak were sent to the provided email address.

Problem Summary: can\'t kill wintems.exe

i notice that my computer (running windows xp) was running much slower than usual, and then some of my frequently used programs (msn, winrar, musicmatch, msm, etc) stopped working completely. i\'d click to start them up and nothing would happen (error saying it wasn\'t a valid system32 file). foud i had a virus. tried to uninstall antivirus so i could reinstall... failed (access denied). tried to download and install different anti-virus programs... failed AGAIN. i then took a look in task manager and found wintems.exe. i can\'t remove it, along with all it\'s evil spawn. when i try to kill the process, it, of course, tells me that access is denied.
also noticed that sound card is disabled.
THANKS IN ADVANCE

Our support team answered the request of Cristian by email.

Problem Summary: wintems.exe

Yesterday I\'ve infected by a virus I think!
It disables my anti virus Nod 32 and it does\'t allow me to install another one.
In the processes in Task Manager I can see the wintems.exe process but I cannot kill it getting an access denied message.
I downloaded HiddenFinder and I tried to kill the process with it but when I press the kill button Firefox starts and the process does not get killed. Can\'t get to safe mode either.
(I don\'t know if it is coincidental but when I infected my wireless connection stopped. And the Windows Zero Configuration service does not start with an error 1068)
I tried to install GMER in order to kill the process but I get the following message (CreateFile \"C:\\WINDOWS\\gmer.dll\": The system cannot find the file specified)
I am know talking to you from another PC. Since I don\'t have Internet connection in the infected one.
Please help! I can\'t go through the painful format route again.
Thank you in advance
Nikolas

nikolas, please check your email for our answer.

Problem Summary: Bagle - activate windows security system

my vista was infected with bagle, i deleted wintems.exe,i think i remove bagle, i scan the pc and not found bagle, but i cant yet istall any antivirus or activate windows security system :/
can u help me?
i run regcure ccleaner...nothing

Fernando Gabriel, we sent the solution of this problem to your mailbox.

Problem Summary: wintems.exe found in tskmngr. antivirus was disabled

i notice that my computer (running windows xp) was running much slower than usual, and then some of my frequently used programs (msn, winrar, tuneup utilities, etc) stopped working completely. i\'d click to start them up and nothing would happen. i assumed i had a virus, but when i went to open up avast! from my system tray, it was gone. tried to start it manually.. and failed (error saying it wasn\'t a valid system32 file). tried to uninstall it so i could reinstall... failed (access denied). tried to download and install different anti-virus programs... failed AGAIN. i then took a look in task manager and found wintems.exe. looked that up on the internet and discovered that i was in a lot of trouble. i can\'t find any info on how to remove it, along with all it\'s evil spawn. when i try to kill the process, it, of course, tells me that access is denied.
also noticed that my volume control in the system tray keeps disappearing too.

Our support team contacted Jennifer with the solution of the problem described.

Problem Summary: wintems.exe

I have the problem of getting rid of this malicious trojan. I found it in the registry and deleted all of them - hldrr.exe, mdelk.exe, srosa.sys,ban_list.txt...
The new problem - i don\'t find them in the registry, only in MUICACHE and in the task manager. And my computer still doesn\'t work properly - my soundcard isn\'t functioning (bad directsound driver)
How to find and get rid ot this awful wintems.exe

The problem of Valeri Tsenkov was resolved by our support team.

Problem Summary: bagle.gen+wintems.exe on vista

i was given bagle.gen report by vista and also firewall blocked wintems.exe
windows defender and free avg are both blocked by the malware in normal and safe mode too. how can i remove these?
thx!

We examined this request and answered Andy by email.

Problem Summary: wintems.exe trojan

My problem is the same as from NYGEN TV

Unfortunately, I\'ve just infected this disturbing wintems.exe trojan.

I\'ve searched for some solutions on the internet but they donot work. It prevents me from installing other antivirus/spyware programs or even GMER from killing the process. I\'ve tried ProcessExplorer to kill wintems.exe but it doesnot work. I even cannot find the physical appearance of wintems.exe in \"C:\\Windows\\System32\" as ProcessExplorer informed. I really don\'t know what to do. Please help :(

thank you for any help and sory for my bad english

Reply of our support team was forwarded to zagi via email.

Problem Summary: Wintems.exe

Can\'t kill the process. My audio and other LAN card wasn\'t functional maybe because of this trojan.

We worked out the solution of descirbed problem and sent our suggestions to Reagan Senoron.

Problem Summary: New version of wintems.exe??

Unfortunately, I\'ve just infected this disturbing wintems.exe trojan.

I\'ve searched for some solutions on the internet but they donot work. It prevents me from installing other antivirus/spyware programs or even GMER from killing the process. I\'ve tried ProcessExplorer to kill wintems.exe but it doesnot work. I even cannot find the physical appearance of wintems.exe in \"C:\\Windows\\System32\" as ProcessExplorer informed. I really don\'t know what to do. Please help :(

Nguyen TV received email with possible solutions of his problem.

Problem Summary: wintems

Hi

I have the wintems virus - it is preventing me form installing any trojan removal software by blocking any .exe files - how do I remove this?

Several possible methods of solving the problem mentioned by Richard Haswell were sent to the provided email address.

 

Learn more about BAGLE-AS and wintems.exe »

« Back to catalog

Home | Partners | Shop | Support | Contact Us | Privacy Policy | Sitemap

Copyright © 2003-2012 Security Stronghold. All Rights Reserved.