Trojan horse Downloader.Generic7.ACGM

Discussion in 'Malware Help (A Specialist Will Reply)' started by simonf72, Jul 30, 2008.

  1. simonf72

    simonf72 Private E-2

    Hi there!
    Many thanks for your very informative page on malware removal
    I've been through all the steps listed on your site but to no avail.
    Unfortunately AVG keeps finding this trojan at some stage after I re-start the computer
    I'm using XP Pro and have attached the logs as requested. Apologies if I've left anything important out
    Thanks in advance
     

    Attached Files:

  2. simonf72

    simonf72 Private E-2

    Sorry about this but I wasn't sure where to add the final log, so here it is!!
     

    Attached Files:

  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please use windows explorer to find and delete:
    C:\WINDOWS\system32\msudf.exe

    Open notepad and copy and paste the following text in the quote box into the window:
    Save this as fix.bat
    Choose to save as all files.
    Doubleclick fix.bat and let the program run.
    A small black dos window will flash, this is normal.

    Now download and install:
    Java Runtime 6

    Tell me where exactly AVG is reporting the malware.
     
  4. simonf72

    simonf72 Private E-2

    Many thanks for your response
    Since I have had this probelm, I've been searching for the file using windows explorer and it is only there intermittently (AVG is also only detecting it intermittently)
    C:\WINDOWS\system32\msudf.exe is not there at the moment. Should I carry out the rest of your instructions now or wait till the problem re-appears?
    Do I need to re-post after doing it or will that be the end of the issue?
    Should I post my response on this thread or start a new one?

    Thanks again!!
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please carry out the rest of the fix .....then to be sure, run the C:\MGtools\GetLogs.bat file by double clicking on it. Then attach the new C:\MGlogs.zip file.

    If we do a final cleaning, and then you have an issue later, just come back to this thread.
     
  6. simonf72

    simonf72 Private E-2

    Windows explorer didn't find msudf.exe on this occassion but I have attached the repeat MGtools log as requested and have also downloaded Java
    AVG hasn't detected the trojan since yesterday but it had deleted it a few times before that without success. In the 'virus vault', it lists the path as C:\WINDOWS\system32\msudf.exe
    Hope this is all OK
     

    Attached Files:

  7. simonf72

    simonf72 Private E-2

    Shortly after sending you my last post and log file, AVG detected the Donloader.Generic7 trojan again. The path to file is:
    C:\System Volume Information\_restore{BFF27B3C-CA4E-4DD1-907A-39DB4E67D086}\RP63\A0014050.exe
    I've made AVG delete it but will await your analysis of the log in my previous post
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your logs are clean. What AVG is reporting is the file in your system restore folder which we will clear with the following:

     
  9. simonf72

    simonf72 Private E-2

    Many thanks for all of your help!!
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    You are most welcome.....safe surfing. :)
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds