Trojan Generic10.ARGJ & MGTools PT 1

Discussion in 'Malware Help (A Specialist Will Reply)' started by Anjistar, Jan 17, 2010.

  1. Anjistar

    Anjistar Private E-2

    Hi,
    AVG found this Trojan earlier today in its daily scan.

    I have followed the instructions in this post:
    http://forums.majorgeeks.com/showthread.php?t=139313

    But MG Tools, although it seems to download ok, when I click the .exe to run it I get the usual Security warning, click run, there's a brief flash of a command prompt - not enough to see what's on it - and then nothing.

    I have run all the other scans with no problems.

    I have attached the other logs, in case they're of any use.

    Many thanks in advance for your help.
     

    Attached Files:

  2. Anjistar

    Anjistar Private E-2

    Trojan Generic10.ARGJ & MGTools PT 2

    Here's a HijackThis log as well
    Thankyou
    Angie
     

    Attached Files:

  3. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    Shutdown Ad-Aware's Ad-Watch and also AVG and try again. If that does not work then do the below.

    Please click Start, Run, and enter cmd and click OK. This will open a command prompt window. Enter the below commands at the command prompt each followed by the enter key. The bold black are commands. The purple is merely informational.

    cd \MGtools <-- this changes to the MGtools folder and the prompt should change to C:\MGtools>
    GetRunKey <-- this will try to run all one scan from MGtools. Tell me what error messages, if any, you see.
    ShowNew <-- this will try to run all another scan from MGtools. Tell me what error messages, if any, you see.
     
  4. Anjistar

    Anjistar Private E-2

    Hi,
    Thanks for looking.

    I assume you meant cmd \MGtools, not cd \MGtools
    But anyway, it can't be found.

    I think I have managed to clear this up without it.

    Thanks for your suggestions
    Regards
    Angie
     
  5. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    No! I meant exactly what I wrote. ;) First you open the command prompt and then you use cd to "change directory" to \MGtools

    So are you saying you no longer need any help?
     
  6. Anjistar

    Anjistar Private E-2

    Sorry, I didn´t realise.
    Thankyou for bothering to reply to me!

    I think I´m ok now - I ran all the tools from the post I found on this forum earlier, and then posted it in a couple of places to augment my chances of getting the assorted logs checked quickly. I was about to transfer all my files from my creaky 6 yr old PC to a new laptop, and then go away on hols taking it with me, so I needed it clean!

    I think it´s clean now, but thanks again.

    Angie
     
  7. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    This is highly frowned upon. There are limited resources doing this and you are wasting time of multiple sites/people when you do this. This detracts from our ability to help other people. In the future, please only post on one forum and just wait your turn in the queue like others.


    If you are not having any other malware problems, it is time to do our final steps:
    1. We recommend you keep SUPERAntiSpyware and Malwarebytes Anti-Malware for scanning/removal of malware. Unless you purchase them, they provide no protection. They do not use any significant amount of resources ( except a little disk space ) until you run a scan.
    2. If we had you use ComboFix, uninstall ComboFix (This uninstall will only work as written if you installed ComboFix on your Desktop like we requested.)
      • Click START then RUN and enter the below into the run box and then click OK. Note the quotes are required
      • "%userprofile%\Desktop\combofix" /uninstall
        • Notes: The space between the combofix" and the /uninstall, it must be there.
        • This will uninstall ComboFix and also reset hidden files and folders settings back to Windows defaults.
    3. Any other miscellaneous tools we may have had you install or download can be uninstalled and deleted.
    4. If we had you download any registry patches like fixme.reg or fixWLK.reg (or any others), you can delete these files now.
    5. If running Vista, it is time to make sure you have reenabled UAC by double clicking on the C:\MGtools\enableUAC.reg file and allowing it to be added to the registry.
    6. Go to add/remove programs and uninstall HijackThis.
    7. Goto the C:\MGtools folder and find the MGclean.bat file. Double click on this file to run this cleanup program that will remove files and folders related to MGtools and some other items from our cleaning procedures.
    8. After doing the above, you should work thru the below link:
     
  8. Anjistar

    Anjistar Private E-2

    My sincere apologies. I won´t do that again.:-o
    I was really worried about going away and leaving the only computer unsafe at the mercy of the rest of the family who are not really able to deal with such problems but would find it hard to manage for long without the use of it for any length of time.

    Thankyou for your continued help. I am away in another country at the moment but will continue with your instructions when I get back next week.

    Angie
     
  9. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Everyone posting here and at other forums has the same concerns. That is why we have queue order in which we work. You actually posted during a time where we managed to get the wait time down to 1.5 to 2 days. Frequently the waiting time can be 4 to 6 days since there are hundreds of new requests for help each day and we still have many other threads already in progress. And with only a small number of people working up fixes in their spare time, it can take a while to get back to you. This is way we cannot afford to have limited resources wasted.
     
  10. Anjistar

    Anjistar Private E-2

    What can I say? It was meant to be an explanation, not an excuse. I know everyone who needs help is a desperate as I was.

    I do sincerely apologise, and will not repeat the bad behaviour.

    I value this web site, trust it and recomment it to friends, so I hope you will forgive me this once.

    I appreciate the time you have taken to sort out the problem.

    Regards
    Angie
     
  11. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Not a problem! It was meant more as an FYI so you understand for the future.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds