Malwarebytes Anti-Malware found a trojan... do I need to...

Discussion in 'Malware Help (A Specialist Will Reply)' started by ladyharley99, Nov 1, 2009.

  1. ladyharley99

    ladyharley99 Private First Class

    Hello again.

    I was running a typical full scan today with the MB software & it found a Trojan.agent ... It seems to have removed it fine.

    Only thing is, do I need to go back & do all your steps in the Read & Run Me, since a Trojan was found :confused

    If you don't recall, I did this several months ago when I had some problems. Chaslang cleaned me all up & all has been going well... So I thought. :major

    This was just a result from a typical scan. I hadn't really noticed any problems... just a slowness... but then I defragged the computer yesterday and it seemed to be working ok... but I hadn't had much time on it since then.

    So, please let me know if I need to do anything else! Because now I'm worried!!! :banghead
    Thanks :cool
     
  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    If MBAM found and removed the virus, then if additional scans with SAS and MBAM as well as your AV program are not finding anything, I would surmise that you are clean. It is, after all, what those programs are supposed to do. :)
     
  3. ladyharley99

    ladyharley99 Private First Class


    I used AVG 9.0 (just upgraded) and it did not find anything. So, I'll run both AVG and MBAM again tonight to make sure I'm clean.

    What a relief! :) Thank you! :)
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome. :)
     
  5. ladyharley99

    ladyharley99 Private First Class

    by the way... I did get a clean scans from both MBAM and AVG 9.0.

    I still have some slow issues... but I think I know what it is now. Thanks to another thread... So, I'll work on it & post a thread in the appropriate spot... if needed. :)

    Thanks again! :)
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome. Safe surfing. :)
     
  7. ladyharley99

    ladyharley99 Private First Class

    Uh... I must still have a problem... MBAM found THREE more Trojan.agents... all in my Windows Temp file.
    Soooo... I went back through my internet history logs & did not find anything that was out of the ordinary at the time those temp files were created... Soooo... I am assuming there's something else on my computer.

    Should I go ahead & do the Read & Run steps again??

    Also, why would MBAM find these Trojans & AVG 9.0 isn't? Because I actually went to the file & right clicked on it & did the "scan with AVG" (a shell scan) & it didn't find anything.

    So any advice will be greatly appreciated.
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    MBAM is doing what it is supposed to do. That is why we ask you to keep it as a backup scanner. They have different definitions and of course, they may not be updated for those virus definitions.

    You probably picked it up while surfing the web. So just keep all your definitions updated and do regular scans. :)
     
  9. ladyharley99

    ladyharley99 Private First Class

    Thanks for the quick reply Tim...

    So, if I do the R&R... may I post it here in this thread... Since you know the history of what's been going on lately.

    I'm just concerned these Trojan.agents keep popping up. I'm wondering if something is hiding in the background.

    I would feel better at ease if I could have someone check out the logs for me... SO.. may I post here?

    Thanks :)
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Yes.
     
  11. ladyharley99

    ladyharley99 Private First Class

    Ok, over a month later, I have finally did the R&R again... Here are my logs... Please let me know if I'm still infected or not. Thanks, LH! :cool

    P.S. RootRepeal crashed, here's what the log said:


    ROOTREPEAL CRASH REPORT
    -------------------------
    Windows Version: Windows Vista SP2
    Exception Code: 0xc0000005
    Exception Address: 0x004cbf6b
    Attempt to read from address: 0x00000004
     

    Attached Files:

  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean.

    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no real-time protection. They are useful as backup scanners.They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /u, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    5. Go to add/remove programs and uninstall HijackThis.
    6. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    7. If you are running Vista, Windows XP or Windows ME, do the below:
      • Refer to the cleaning procedures in step 3 the READ ME for your Window version and see the instructions to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore ato create a new clean Restore Point.
    8. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds