↓
 

Computer Aid

Ph: 0402 133 866

  • Home
  • Blog
  • Contact
  • Web Services
    • Websites
    • SEO
    • Hosting
    • Domain Names
    • Portfolio
Home→Tags cmdline.dll

Tag Archives: cmdline.dll

cmdline.dll keeps reappearing

Computer Aid Posted on 19 September, 2007 by Luigi Martin19 September, 2007

Customer keeps getting a warning about an infected file (cmdline.dll), which seems to have significantly slowed down her PC.

Once I take a look, it appears that she is running the an aol antivirus… it tries to remove the infected file, but the warning keeps coming back.

I’ve never seen the aol antivirus before, so I take a quick look, and it looks like its just a re-badged kaspersky antivir… but its no longer supported.

OK, I uninstall the existing antivirus, and install (and update) antivir & windows defender.

But the real-time protection of antivir doesn’t pickup anything.

I scan using defender but that also detects nothing.

I use defender in safe mode, but it still detects nothing

In safe mode, I delete cmdline.dll, but after a restart, it reappears again… even after disabling all the obscure startup programs.

So I use bhodemon to disable anything suspicious, but at the end, I seem to have stopped it from from actually running, but it still keeps reappearing in the users temp folder

By this stage, I was running out of time (and customer is happy with the speed increase). I don’t feel comfortable leaving the PC like this, but I decide to take a closer look when I return. I reckon its effectively disabled, except for the part that re-created the cmdline.dll file.

I later heard about a program called “starter”

With it, I can see everything that wants to start automatically… it also picks up on hidden registry entries. What makes a big difference is that I can view all running processes and find out which process is locking cmdline.dll.

I’ll be using it the next time I discover difficult to stop processes.

Posted in Technical | Tagged cmdline.dll

Archives

Categories

Recent Comments

  • Sue Jones on outlook error 0X800ccc0e while sending emails
  • Blair Newmann on AdSmartMedia advertising
  • Private Investigator in GTA on Divorce, consent orders, and superannuation splits: getting the wording correct

Tags

802.11g ADSL amd android bigpond broadband bsod defender dell email exitjunction firefox firewall gmail Google google contacts ie7 infection internet connection ISP laptop Linux m1188a ntldr is missing office 2007 outlook outlook express password power supply problems ram registry repair install sata scam slow telstra thunderbird usb vista wifi windows 7 wireless wordpress xp
Copyright © 2005-2015 Computer Aid
↑