Trojan.Win32.Agent.akk Problem

Discussion in 'Malware Help (A Specialist Will Reply)' started by sammysanchez, Dec 8, 2007.

  1. sammysanchez

    sammysanchez Private E-2

    Hello, I am also having problems removing Trojan.Win.Agent.akk. What exactly does this trojan do?

    I read through the other posts but am unable to find the files to remove.

    Please help.

    Thank you.
     

    Attached Files:

  2. sammysanchez

    sammysanchez Private E-2

    Hi there - After reading the other posts more carefully, I ran FixIEDef and was able to kill the trojan. Thanks! MajorGeeks is GREAT!

    If anyone has any suggestions about my HijackThis log, please let me know. I am always looking to tweak my PC.
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Happy to hear it help. Are you still having any malware issues? if so, you should attach the other requested logs from the READ ME (ComboFix and AVG Antispyware) and you should also attach a new MGlogs.zip file which can be created by running the C:\MGtools\GetLogs.bat file.

    Consider uninstalling
    - Spyware Doctor if it is only a trial version
    - CounterSpy if it is a trial version

    By no means keep both of the above installed if both are paid versions.
     
  4. sammysanchez

    sammysanchez Private E-2

    Thank you! Great advice. Here are the new logs.:)
     

    Attached Files:

  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    I still see multiple antispyware blocking tools installed and running. You have the below installed:
    • AOL AntiSpyware
    • AVG Antispyware - but the blocking agent from this will expire after the 15 day trial and then it is only a scanner
    • Spybot's Teatimer
    • Spyware Doctor 5.1
    • Trend Micro Anti-Spyware
    All but one of these has to be uninstalled. Keep only one but make sure it is a paid version. Trial versions are not useful in the long run. You can keep AVG Antispyware around since it will not be a realtime blocker after the trial period.

    Also you have Spbot's Teatimer running which we specified in the READ & RUN ME that you should not use. If you truly feel you want to use Teatimer than you must uninstall both AOL Antispywre Spyware Doctor, and Trend Micro Anti-Spyware. Otherwise you need to disable Teatimer as give in the instructions in the READ ME. The same logic applies to all. You must only run one realtime antispyware blocking tool which is the same logic as running only one antivirus application.

    You must correct ALL of the above before continuing.

    Uninstall the below old versions of software:
    J2SE Runtime Environment 5.0 Update 6

    Make sure you reboot after uninstalling the above! Don't skip this reboot. Do it now.

    After reboot, now install the current version of Sun Java from: Sun Java Runtime Environment

    Run C:\MGtools\analyse.exe by double clicking on it. This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: Video - {15FEB658-AACC-412E-BC13-D54CFD74A8F6} - (no file)
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

    After clicking Fix, exit HJT.

    Now download The Avenger by Swandog46, and save it to your Desktop.
    • Extract avenger.exe from the Zip file and save it to your desktop
    • Run avenger.exe by double-clicking on it.
    • Check the 'Input script manually' box.
    • Click on the magnifying glass icon.
    • Copy everything in the Quote box below, and paste it in the box that opens:
    • Now click the 'Done' button.
    • Click on the traffic light icon and OK the prompt.
    • You will be prompted to restart, OK the prompt and your PC should reboot, if not, reboot it yourself.
    • A log file from Avenger will be produced at C:\avenger.txt
    After reboot look for all of the above files we had Avenger attempt to delete. If you still see them, delete them yourself.

    Also delete all files in the below folder except ones from the current date (Windows will not let you delete the files from the current day).
    C:\Documents and Settings\Sakura Komiyama\Local Settings\Temp
    Now run Ccleaner!

    Now run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file that will be created by running this and also attach the log from Avenger.

    Make sure you tell me how things are working now!
     
  6. sammysanchez

    sammysanchez Private E-2

    Thanks very much. I will follow all of these steps carefully. Your advice is so helpful. I will let you know how this goes.

    BTW, do you accept donations? I am so grateful for your help in saving my PC. I want to say thanks.
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Okay attach the new logs when you finish.

    No! You can purchase Geek-Wear if you desire from the main page. Also send an email of appreciation to the owners. ;)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds