JS/Downloader.Agent problem?

Discussion in 'Malware Help (A Specialist Will Reply)' started by Doughbroz, Jan 21, 2008.

  1. Doughbroz

    Doughbroz Private E-2

    Before posting this, I went down the list in the sticky thread "Read and run me first, malware removal guide". When I did the step using msconfig changing to "normal" startup and rebooted, I got the notice that my copy of Windows was not genuine. Tried several of the solutions in the links given in the taskbar icon with no luck. Could not change back to selective startup, so did a restore. That changed it back, but still got the counterfeit notice. After two hours with a Dell tech, finally resolved it by renaming the system 32 files wgalogon and wgatray from dll to old. Now to what prompted all this in the first place.

    I was browsing an innocent office furniture site which attempted to play a demo video. It said I needed some sort of player, at which point AVG free a/v popped up with this virus warning. JS/Downloader.Agent. I was able to move it to the virus vault. Now here's the odd thing. Under details, AVG said it was first detected on Jan. 5, over two weeks ago, but the AVG scan log for every date on record shows nothing. It also says it is healable, but when I try it says error in processing. Object path is C:\Documents and Settings\MY NAME\Local Settings\Temporary Internet Files\Content.IE5\XTB66UER\
    Object name is counter[1].htm
    I have emptied temp internet files and run an AVG scan which shows nothing. What to do next, if anything? Thanks
     
  2. Doughbroz

    Doughbroz Private E-2

    I wanted to edit the original post, but don't have that option for some reason. Just wanted to add that during the session with the Dell tech, I was unable to boot into safe mode, and still cannot, after repeated tries. Also, early today before the counterfeit notice appeared, I could not get Yahoo Messenger nor email to accept my password. I have since uninstalled both and tried to download Messenger from the Yahoo site. It says the download is complete, but no icon appears on the desktop. When I click on finish in the install box the run messenger now box is checked, but nothing happens. If i click on existing user, I get page cannot be displayed. If i select new user, it goes to a blank page and sits there forever with no further action. Hellllllllpppppppp!!!!!!
     
  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Nothing! When you emptied the TIF the file was removed. AVG may not have been able to remove it if you had a browser open because the TIF would be in use by the browser.
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You probably have a corrupted registry which is blocking safe boot mode. This is not necessarily a malware issue, but the only way we can no that is if you run the READ & RUN ME and attach the requested logs. I will however give you a registry patch at the bottom of this message to try which some time fixes the inability to boot in safe mode.

    Again we need logs from the READ ME inorder to determine if you are having malware issues. Right now, none of what you are posting really sounds like malware.

    Try the below for the inability to boot in Safe Mode.



    Copy the bold text below to notepad. Save it as fixSBM.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
     
  5. Doughbroz

    Doughbroz Private E-2

    Thanks for the reply. Tried the registry patch you provided with no luck. This thing has developed so many different problems, more blue screens, keyboard lockups, internet not connected at bootup, etc., that it appears a reformat will be quicker than trying to patch it up. Thanks again.
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You're welcome. Yes that is what I going with message # 4 when I said this does not sound like a malware issue. I was thinking your problems are within the OS and a format may be required.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds