Need Help bad tojan took over my life

Discussion in 'Malware Help (A Specialist Will Reply)' started by only-human, Jun 17, 2005.

  1. only-human

    only-human Private E-2

    Hi I have been working on this problem for days and someone sent me here.. I have a virus and or trojan I can't get rid of not even sure how I got it anyway I posted some results below...is there anything that can help or should I do a system restore I am not sure what to do...after over 7 years online I have never gotten anything like this before... and I am not great with fixing this either not real great in computer tech stuff..... hope someone can help thanks donna



    "C:\Documents and Settings\Rodonna\.jpi_cache\jar\1.0\f.jar-2415a895-34511fce.zip:\VerifierBug.class","Virus identified Java/ByteVerify","Infected, Embedded object"

    "C:\Documents and Settings\Rodonna\.jpi_cache\jar\1.0\f.jar-2415a895-34511fce.zip","Virus identified Java/ByteVerify","Infected, Archive"

    "C:\Documents and Settings\Rodonna\Local Settings\Temporary Internet Files\Content.IE5\VB9JBLGW\desktopdancer[1].exe:\setup.exe","Trojan horse Dropper.Agent.4.AG","Infected, Embedded object"

    "C:\Documents and Settings\Rodonna\Local Settings\Temporary Internet Files\Content.IE5\VB9JBLGW\desktopdancer[1].exe","Trojan horse Dropper.Agent.4.AG","Infected, Archive"

    "C:\WINDOWS\desktopdancer.exe:\setup.exe","Trojan horse Dropper.Agent.4.AG","Infected, Embedded object"

    "C:\WINDOWS\desktopdancer.exe","Trojan horse Dropper.Agent.4.AG","Infected, Archive"

    "C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\M0YBKXEJ\desktopdancer[1].exe:\setup.exe","Trojan horse Dropper.Agent.4.AG","Infected, Embedded object"

    "C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\M0YBKXEJ\desktopdancer[1].exe","Trojan horse Dropper.Agent.4.AG","Infected, Archive"

    "C:\Program Files\ddd.exe","","Deleted"

    "C:\WINDOWS\setup.exe","","Deleted"
     
  2. only-human

    only-human Private E-2

    Edit by bjgarrick: Unrequested, Inline HJT log removed!
     
    Last edited by a moderator: Jun 17, 2005
  3. craigharrison

    craigharrison Private First Class

    I saw the reply and I must say that I have no clue as to what is being communicated. I have no internet connection to this desktop and could not download anything directly to it. Just to complete anything I could do, Iran AntiVir which reported nothing. What can I do to download something to another desktop and run on the sick one??
     
  4. craigharrison

    craigharrison Private First Class

    It took a while but I understood the message. I downloaded the hijack this and ran it on the other desktop and it worked really well. Thank you so much. You made my miserable day into a bright one. Thanks again.
     
  5. bjgarrick

    bjgarrick MajorGeeks Admin - Malware Expert

    only-human,

    Please read annoucements and follow forum guidelines!

    First, please follow ALL the steps in this Sticky thread READ ME FIRST BEFORE ASKING FOR SUPPORT: Basic Spyware, Trojan And Virus Removal

    After doing ALL of the steps in the READ ME, procede with the below online scans:

    TrendMicro Online Scan
    Bitdefender online scan
    RavAntivirus online scan <-- select Auto Clean then click Scan My PC
    TrojanScan online scan
    Panda Online Scan


    After you complete the online scans listed above, reboot and procede with the below.


    http://www.majorgeeks.com/images/grenade.gif Download HijackThis 1.99.1

    http://www.majorgeeks.com/images/grenade.gif Unzip the hijackthis.exe file to a folder you create named C:\Program Files\HJT

    http://www.majorgeeks.com/images/grenade.gif Do NOT run Hijack This from the Desktop, a temp folder, or a sub-folder of C:\Documents and Settings, or choose to run it directly from the ZIP file as your backups will not be safely stored.

    http://www.majorgeeks.com/images/grenade.gifBefore running HijackThis: You must close each of the following:your web browser, e-mail client, instant messenger, and programs like notepad, wordpad, MS Word etc. And any other unnecessary running programs.

    http://www.majorgeeks.com/images/grenade.gifRun HijackThis and save your log file.

    http://www.majorgeeks.com/images/grenade.gif Post your log as an ATTACHMENT to your next post. (Do NOT copy/paste the log into your post as it will be removed).

    http://www.majorgeeks.com/images/grenade.gifNeed help with HJT? See this thread: NO HIJACK THIS LOG FILES BEFORE READING THIS: HJT Tutorial & LOG File Posting
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds