TR/Dldr.Startpage

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by stewart, Jul 8, 2004.

  1. stewart

    stewart Private E-2

    Hello Forum,

    I have been using the excellent AntiVir version 6 from majorgeeks.com website for a few weeks now and it keeps picking up a virus called Tr/Dldr.Startpage.

    I delete it or quarentine it every time AntiVir finds it, but everytime I scan its there again. It doesn't seem to have adversly affected my PC as far as I can tell, but I am a bit concerned that it is there evreytime. Is there a way of finding out where it is coming from, so that it doesn't come back?

    Has anyone else encountered this virus?

    Thanks very much in advance for you help.
     
  2. stewart

    stewart Private E-2

    Hi again,

    I have updated AntiVir and it still keeps on picking up the same virus a Trojan called Dldr.Startpage. It says that it has infected a .BIN file or a .dll file the most recent one was called IFGDC.DLL.

    any ideas why it keeps coming back?
     
  3. stewart

    stewart Private E-2

    Thanks xflat I'll try that and let you know the result.

    Many Thanks
     
  4. stewart

    stewart Private E-2

    Right....

    I turned off system restore and then did another virus scan. It came back with no virus detected :). Now I have restarted once or twice since doing this, and I have the AntiVir Guard constantly running too and its been ok until about five minutes ago when I opened Outlook Express and immediately I get the warning that TR/Dldr.Startpage is back in two different locations :-

    7/13/2004,22:30:15 WARNING: The Trojan horse TR/Dldr.Startpage!
    C:\DOCUMENTS AND SETTINGS\FRANK\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\0J4BQPSN\M[1].BIN
    File has been deleted!
    7/13/2004,22:30:23 WARNING: The Trojan horse TR/Dldr.Startpage!
    C:\WINDOWS\SYSTEM32\HJCFI.DLL
    File has been deleted!


    I did not open any emails or infact have any new ones arrive, so is it just coincidence that they came at the same time that I opened Outlook?
     
  5. stewart

    stewart Private E-2

    I've tried restarting in safe mode and running scans but the virus is still there, I'm am getting desparate :mad:
     
  6. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Open up Internet Explorer, click Tools, Internet Options, make sure you are on the General tab. Click Delete Cookies, the click Delete Files and check delete off line content too.
    See if that helps. And what OS are you running.
     
  7. stewart

    stewart Private E-2

    Thanks Chaslang,

    Should I do what you suggested when in safe mode? or with system restore off etc.? I'm not sure if that will help as I have used CCleaner and HD Cleaner to remove such content recently too and have safexp installed whih is set to delete temp internet files.

    I am using XP pro
     
  8. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    It should not matter. Apparently you scans are not finding everything of someplace you go brings them back. How about trying a couple online scans:

    http://housecall.trendmicro.com/housecall/start_corp.asp
    http://www.pandasoftware.com/activescan/com/activescan_principal.htm

    Also download and run this:
    a² anti virus: http://www.majorgeeks.com/download4281.html
     
    Last edited: Jul 15, 2004
  9. stewart

    stewart Private E-2

    Thanks for the info.

    I tried this one:-

    http://housecall.trendmicro.com/hou.../start_corp.asp

    It made Explorer crash each time I tried to download it...

    This one :-
    http://www.pandasoftware.com/activescan/com/activescan_principal.htm

    detected no virus
     
  10. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Well that's strange! It's not downloading though. It's running a scan while online.
    Never saw that problem before.

    Are you up to data with Microsoft's Critical updates? Double check by going to Windows Update: http://v4.windowsupdate.microsoft.com/en/default.asp
    Then click scan for updates.
    Download ALL of the critical updates.
     
  11. stewart

    stewart Private E-2

    Hi,

    I tried going to the windows update site but it said:

    ''Network policy settings prevent you from using Windows Update to download and install updates on your computer.

    If you believe you have received this message in error, please check with your system administrator.

    You can also get online support if you are having problems with Windows Update.''


    How do I make it so I am allowed to update myself?

    regards

    Stewart
     
  12. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Are you the Administrator of the PC? You need to logged in with Administrator priviledges.
     
  13. stewart

    stewart Private E-2

    Thanks Chaslang,

    I have just found out why I could not do the windows update. I had a box ticked in the safexp program that prevented updates.
    Anyway I have done most of the updates, but not the service packs. I hear that if your copy of xp is not legitimate that downloading the service pack screws up the os.

    Is that true?
     
  14. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Are you saying you do not have a valid license for WinXP????
    Do not ask questions here for issues like that. We will not discuss anything to resolve issues with illegal software.
     
  15. Shaima

    Shaima Private E-2

    hi all

    i think i have the same problem that stewart is strugling with

    i did wtever i could and i think ma final solution is to format ma whole pc :rolleyes:

    dont know wt to do ? :eek:
     
  16. Shaima

    Shaima Private E-2

    hi stewart :)

    go to

    C:\WINDOWS\Temp

    and if u found any thing just delete it

    i think that will solve the problem ;)
     
  17. Atheen

    Atheen Private E-2

    I am having the same problem, seems i cant get rid of that one. It deletes it and yet it keeps coming back. Any real solutions to perma get rid of it ?

    Thanks


    Atheen
     
  18. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    It would be better if you started your own thread. Describe your problem in detail and you can reference this thread (http://forums.majorgeeks.com/showthread.php?t=36701 )by stewart in yours.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds