Need Help Removing Trojan!

Discussion in 'Malware Help (A Specialist Will Reply)' started by djangostar, Jul 2, 2007.

  1. djangostar

    djangostar Private E-2

    My pc is infected by a Trojan horse called Downloader.agent. and I keep removing it using avg but keeps coming back!! I went trought READ & RUN ME FIRST. Malware Removal Guide. Still have the same problem, Please help, I am new to this!
     

    Attached Files:

  2. djangostar

    djangostar Private E-2

    by the way now when I am scanning with avg, the PC will reboot itself, even in safe mode.
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Why didn't you run CounterSpy as requested and attach a log from it? If you could not run CounterSpy, then you were supposed to run AVG Antispyware and attach a log from it. Please run one of these now and fix what it finds. Then attach the log.


    Now Copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    Then delete the below three files if the above scan does not remove them:
    C:\WINDOWS\b122.exe
    C:\WINDOWS\b128.exe
    C:\WINDOWS\b136.exe


    Are you still having problems? If so please describe them in detail.
     
  4. djangostar

    djangostar Private E-2

    Thanks for the reply!!

    I have been AVG, and now it does not detect any viruses, did it 3 times now!!
    I cannot get a log. And yes I still have a problem, I keep getting a pop up from avg resident shield, saying that there is a treat in c/system volume, I did add a log of all the pop ups, and since I removed the 3 viruses, and the fix me file, my pc has stoped rebooting. I thik my only problem is those damn pop ups!
     
  5. djangostar

    djangostar Private E-2

    here is a history of the pop ups I get from avg, I just scanned again and no virus was detected, I ran bitdefender again, here is the log
     

    Attached Files:

  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    You only had AVG antivirus installed not AVG Antispyware which is what we requested. But I asked you to run CounterSpy first and then only run AVG Antispyware if you could not run CounterSpy.

    System Volume Information is just System Restore and that will be cleaned during our final steps which will be posted in my next message.
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    That is a log from PandaActiveScan not BitDefender and there is nothing in it except cookies which are not problems.



    If you are not having any other malware problems, it is time to do our final steps:
    1. If we used Pocket Killbox during your cleanup, do the below
      • Run Pocket Killbox and select File, Cleanup, Delete All Backups
    2. If we used ComboFix, you can delete the ComboFix.exe file, C:\ComboFix folder, C:\QooBox folder, C:\WINDOWS\nircmd.exe, and the C:\combofix.txt log that was created.
    3. If we user SDFix you can delete all the SDFix related files and folders from your Desktop or whereever you installed it.
    4. If we used VundoFix, you can delete the VundoFix.exe file and the C:\VundoFix Backups folder and C:\vundofix.txt log that was created.
    5. If we had your run FixWareOut, you can delete the Fixwareout.exe file and the C:\fixwareout folder.
    6. If we had you run Avenger, you can delete all files related to Avenger now.
    7. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    8. You can delete the ShowNew.Zip and GetRunkey.Zip files and the files that you extracted from the ZIP files. You can also delete the C:\newfiles.txt and C:\runkeys.txt logs that were created
    9. If you are running Windows XP or Windows ME, do the below:
      • go back to step 8 of the READ & RUN ME to Disable System Restore which will flush your Restore Points.
      • Then reboot and Enable System Restore to create a new clean Restore Point.
    10. After doing the above, you should work thru the below link:
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds