Downloader.Agent.3.AP

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by petron77, Oct 16, 2004.

  1. petron77

    petron77 Private E-2

    hi Guys.....glad i found you !...hopefully someone can help me with this problem.
    AVG scans and comes up with virus called "Downloader.Agent.3.AP" and can not heal it or move to virus vault, hence the damn thing is still on pc.

    I have read the "read only" file and followed the steps and tried to clean in safe mode....no luck.

    AVG tells me that the virus is in:

    C:\Documents and Settings\PETER\Application Data\j?pd.exe

    for the life of me i can not locate this file.

    Please help !

    Thanks in advance, Pete.
     
  2. jarcher

    jarcher I can't handle a title

  3. petron77

    petron77 Private E-2

    oops....yes...have read thru the Read This First thread.....followed it, but couldn't do the online tests in safe mode, could not log onto the net from safe.

    have run all the tests, but still no luck with finding or removing the Agent.3.AP virus.

    The Rav scan also found other viruses which AVG did not pick up.

    What's next?? Do i run HJT now and post a log?

    Thanks in advance once again, Pete
     
  4. petron77

    petron77 Private E-2

    me again .....just to let you know that Stinger also picked up the W32/Backdoor-CFB virus in C:\WINDOWS\Explorer.exe

    couldn't be repaired.

    Downloader.Agent.3.AP is still there too. Got rid of the others.....i think !!
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This is a real bad ass! We have been working on this one for awhile in another thread. See this thread: http://forums.majorgeeks.com/showthread.php?t=43376
     
    Last edited: Oct 18, 2004
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

  7. petron77

    petron77 Private E-2

    thanks for that Chas.....will give it a shot. Will report back soon.

    Out of curiosity, what does this virus do to your system ??
     
  8. petron77

    petron77 Private E-2

    just scanned C:\windows\explorer.exe with the RAV online scan....came up with nothing....says the file is ok .

    Could Stinger be wrong ??
     
  9. petron77

    petron77 Private E-2

    grrrrrr !!! RAV online scan found win32/urbin in C:\windows\system32\msvsres.dll

    can i delete this file ??
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Yes! But there may be an associated registry key to remove. See this:
    http://vil.nai.com/vil/content/v_125663.htm
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    It's possible that Stinger is wrong but it is just as possible that RAV does not detect the problem. If Stinger is wrong, why is it that very few people are seeing this problem. Something must be attaching itself to explorer.exe somehow.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds