Re: downloader trojan

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance

From: ozzie (anonymous_at_discussions.microsoft.com)
Date: 04/05/04

  • Next message: Robert Moir: "Re: Virus affecting search engines"
    Date: Mon, 5 Apr 2004 13:41:14 -0700
    
    

    I had Trojan downloader.A & downloader.S that my anti-
    virus says was in my C:\RESTORE\TEMP file, I am using AVG
    free edition, I was able to put these viruses in the AVG
    virus vault.
    I disabled system restore and rebooted (didn't go into
    safe mode) ran AVG which showed 'no viruses found', I
    then deleted them from the virus vault.
    I was told that when you use this method, by disabling
    system restore and rebooting removes the infected file.
    It certainly worked in my case.
    I then enabled system restore and set a restore point.
    Haven't had any problems since.

    >-----Original Message-----
    >1) If you are using WinME or WinXP, disable System
    Restore
    >
    http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.ht
    m
    >2) Reboot your PC into Safe Mode
    >3) Using your AV software, perform a Full Scan of
    your platform and clean/delete any
    > infectors found
    >4) Restart your PC and perform a "final" Full Scan
    of your platform
    >5) If you are using WinME or WinXP,Re-enable System
    Restore and re-apply any
    > System Restore preferences, (e.g. HD space
    to use suggested 200 ~ 400MB),
    > reboot your PC.
    >6) If you are using WinME or WinXP, create a new
    Restore point
    >7) Please report back your results
    >
    >Dave
    >
    >
    >
    >"chris" <anonymous@discussions.microsoft.com> wrote in
    message
    >news:1806c01c41972$ffdb6130$a101280a@phx.gbl...
    >| any information please on how to get rid of downloader
    >| trojan? my antivirus software doesn't appear to be able
    >| to clear the infection and the instructions I found for
    >| removing it seemed terribly complicated.
    >
    >
    >.
    >


  • Next message: Robert Moir: "Re: Virus affecting search engines"

    Relevant Pages

    • Re: Backdoor.agent.ba
      ... >Restart computer & Turn System Restore On ... >> that says I have a VIRUS Trojan ... >> Norton initially told me I had a similiar virus and I ... >> than downloaded a free copy of software from AVG. ...
      (microsoft.public.security.virus)
    • Re: GONE! Trojan Horse Downloader.agent.2.BK
      ... I think the trojan is gone! ... disabled system restore according to the instructions, ... Lo and behold, AVG ... >updated antivirus, in safe mode if you want, you ...
      (microsoft.public.security.virus)
    • Re: I want to Format my Main Drive
      ... Unless you learn how to overcome virus and trojan issues, ... start by turning OFF the System Restore function.. ... First step is to run a one shot virus remover.. ... download and run them.. ...
      (microsoft.public.windowsxp.security_admin)
    • Re: deleting a start up program
      ... throw away that EZVirus trojan and use AVG from Grisoft. ... turn off system restore and run AVG again. ... I was having lots of trouble with my anti virus. ... > virus scan unless in safe mode. ...
      (microsoft.public.windowsxp.perform_maintain)
    • Re: Backdoor.agent.ba
      ... I am sorry, I am not sure if 2000 has a system restore I think it does, I am ... >>> that says I have a VIRUS Trojan ... >>> Norton initially told me I had a similiar virus and I ... >>> than downloaded a free copy of software from AVG. ...
      (microsoft.public.security.virus)