download trojan OP

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by amanda, Aug 20, 2004.

  1. amanda

    amanda Private E-2

    Hi I'm a newbie. I have had loads of problems too many to mention. I have according to the panda active scan, trojan download op. I cannot find anything about this or how to remove this. Has anyone got any ideas please.

    This is my HJT log
     
    Last edited by a moderator: Aug 20, 2004
  2. amanda

    amanda Private E-2

    OOPs, really sorry. I always get asked to post my recent log so did it automatically. Many apologies, won'y happen again......
     
  3. Major Attitude

    Major Attitude Co-Owner MajorGeeks.Com Staff Member

    Did you do the basic removal tutorial in the top of this forum?

    http://forums.majorgeeks.com/showthread.php?t=35407
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  5. amanda

    amanda Private E-2

    Hi Chaslang
    Sorry to take time to reply. Originally on my laptop I kept getting a site called h4ckerz4u.com which turned into dannyboyjef69er.com and other similar names. When I connect on dial up there is always a message from my ISP saying I have requested a programme from....... and I havent, and do I want to connect. I went on spywareinfo forum and using their advice of panda and trendmicro scans and HJT and deleting and fixing what I need, installing spyware blaster, spy bot s&S and everything else recommended I managed to get rid. Following another scan trendmicro said I has TRJ/ISTBAR.FG, W and AGENT AE. and CN. Panda said TRJ downloader OP. I cant find info for this anywhere. I have tried to look at hidden files etc and checked the box but cant see anything (not that I know what Im looking for), and have downloaded latest updates as these are automatic on my pc.

    NAV cant detect anything and I did that with system restore turned off as well as panda and trend micro.
     
  6. amanda

    amanda Private E-2

    Hi Chaslang
    Here is the result of the Panda active scan

    Incident Status Location

    Virus:Trj/Downloader.OP Disinfected C:\Documents and Settings\Cara Jayne Owen\x.bat
    Virus:Trj/Downloader.OP Disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc26.exe
    Virus:Trj/Downloader.OP Disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc27.REG
    Virus:Trj/Downloader.OP Disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc29.bat
    Virus:Trj/Downloader.OP No disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc30.exe[mtu.bat]
    Virus:Trj/Downloader.OP No disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc31.exe[mtu.bat]
    Virus:Trj/Downloader.OP No disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc32.exe[mtu.bat]
    Virus:Trj/Downloader.OP No disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc33.exe[x.bat]
    Virus:Trj/Downloader.OP No disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc33.exe[YEA.REG]
    Virus:Trj/Downloader.OP Disinfected C:\RECYCLER\S-1-5-21-1960408961-436374069-854245398-1008\Dc34.exe
    Virus:Trj/Downloader.OP Disinfected C:\WINDOWS\mtu.bat
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Well the first thing you should do is empty your Recycle Bin and disable system restore and then reboot.

    Now delete these two files:
    C:\Documents and Settings\Cara Jayne Owen\x.bat
    C:\WINDOWS\mtu.bat

    Now run your various scans again including TrendMicro and PandaSoftware and see what you get.
     
  8. amanda

    amanda Private E-2

    hi Chaslang
    I have looked for the 2 files through the search as is only way I know how and can not find either file. Am I doing it wrong?
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Enable viewing of hidden file & folders for Windows Explorer: http://forums.majorgeeks.com/showthread.php?t=37650

    And then open Windows Explorer and locate the files manually navigating thru directories and files. You can use search but it requires enabling the ability to search hidden files, folders, and system file and folders too. But you never stated your OS so I'm not sure how to tell you to do that.
     
  10. amanda

    amanda Private E-2

    Chaslang
    Thanx for your help but I must be stupid...lol! I am on XP. I know how to enable hidden files but I don't know how to locate them. I have only ever found things using the search bar. I am not pc literate in this kind of stuff, I can use it for my uni course work and research and can download patches and now run a HJT but have needed help for anything else. Sorry to bug you with all this but can u help me please .......
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You can easily open Windows Explorer by right clicking on the Start button and select Explore. The left pane will show disk drives and directory tree while the right pane will show files. Just navigate your way thru by selecting the c: drive. Most like shows as Local Disk (c:)
    Then select C:\Documents and Settings
    Then select Cara Jayne Owen

    Then in the right pane see if you can locate the x.bat file.
    Do similar for the other file we are looking for. Again you must have viewing of hidden files & folders and system files enabled (and all do not hide extenstion for know file type).


    How to use windows XP search mechanism to look for hidden files:
    If you use Search, you need to do the following:
    Click Search and the Select "All files and folders"
    Enter the filename in the "All or part of the file name:" box, so enter x.bat or mtu.bat
    Now select "More advanced options"
    Make sure the following check boxes are checked:
    - Search system folders
    - Search hidden files and folders
    - Search subfolders
    Then click the Search button.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds