lesser-equity

Magazine
Go Back   Computer Juice > Computer Software > Virus, Spyware & Security

Register


 Default 

Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM




Reply
 
Thread Tools
  #11  
Old 15th Apr 2009, 09:03
New Member Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

It let me know that the key was deleted successfully. Although last night after doing all those procedures I noticed when i'm searching google my computer still seems to be re-directed to another page when I click on a link.
  #12  
Old 15th Apr 2009, 15:53
Malware Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

Hi there

Download DrWeb CureIt & save it to your desktop. Scan with DrWeb-CureIt as follows:

  • Double-click on drweb-cureit.exe and then click Start
  • An information notice will appear, click OK.
  • This starts a short scan that will scan the files currently running in memory.
  • If you get a prompt to buy the full version just exit out of the window. The scanner will still work without buying the full version
  • If or when something is found, click the Yes button when it asks you if you want to cure it.
  • Once the short scan has finished, Click Settings > Change Settings
  • Under the Scanning tab UNcheck Heuristic analysis and click OK
  • Back at the main window, select the Complete scan button and then click the Green Arrow Start Scanning button on the right and the scan will start.
  • Click Yes to all if it asks if you want to cure/move any file(s).
  • When the scan is done.
  • In the Dr.Web CureIt menu on top left, click File and choose Save report list.
  • Save the DrWeb.csv report to your Desktop.
  • Exit Dr.Web Cureit.
  • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
* After reboot, Right-click the Dr.Web log on the desktop and choose Open With > Notepad
* Copy and paste that log in the next reply
__________________
Proud member of ASAP & UNITE
__________________

My System: Steves Rig

Processor(s):
AMD Athlon 64x2 6000+
Motherboard:
ASUS M3N78 Pro
RAM Memory:
Corsair 4GB Dual Channel
Graphics Card(s):
NVIDIA GeForce 8400 GS
Sound Card:
Onboard
Hard Drive(s):
640GB Western Digital HD
Optical Drive(s):
LG Lightscribe
Case / PSU:
Cooling:
Stock HSF
Network / Internet:
20Mb Virgin Media Broadband
Monitor(s):
Hanns-G 19" Widescreen
Operating System(s):
Vista Premium 64x
  #13  
Old 16th Apr 2009, 18:21
New Member Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

here is what it found

RegUBP2b-Caleb Brandt.reg;C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2;Trojan.StartPage.1505;Deleted.;

A0000146.reg;C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP2;Trojan.StartPage.1505;Deleted.;
  #14  
Old 17th Apr 2009, 01:11
Malware Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

Still having redirect problems?

Please delete the version of combofix that you currently have on your computer

Next, download an updated version Combofix from any of the links below. Save the file under the name of Combo-Fix

** You must rename it before saving it. You must also ensure sure it is saved to the desktop.**

Link 1
Link 2
Link 3





Double click combofix and allow it to run, post back with the resulting log
__________________
Proud member of ASAP & UNITE
  #15  
Old 17th Apr 2009, 08:35
New Member Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

I attempted to run ComboFix and saved it as you said..but for some reason that updated version wont run. It just comes up as a small blue dos screen and has the text bar blinking.
  #16  
Old 17th Apr 2009, 15:43
Malware Group
 
Default Computer is Infected with Trojan.downloader and Will Not Delete Via MBAM

Hi there

I want you to manually check and locate to see if a file is present or not within firefox, if it is I want you to delete it...

1) Shut down firefox.
2) Navigate to C:/Program Files/Mozilla/Firefox/extentions/{xxxxxxxxxx}/chrome/content/ and check for this file -> overlay.xul
(where xxxxxxxxxx will represent random letters and numbers. The exact letters and numbers vary from one computer to another)
3) delete the directory which has the overlay.xul file
4) restart your computer

Let me know if things improve...
__________________
Proud member of ASAP & UNITE
Reply

Register

Bookmarks

Similar Threads
Thread Thread Starter Forum Replies Last Post
Problem with Trojan Horse Downloader Generic 9 ogb Virus, Spyware & Security 7 21st Nov 2009 13:06
Trojan.DNSchanger Wont Delete on Reboot with MBAM or SUPERantispyware nor Combofix Annapelle Virus, Spyware & Security 10 20th Jul 2009 18:05
For the Life of Me I Cannot Get Rid of VUNDO, Trojan Downloader -Crew brunester Virus, Spyware & Security 5 5th May 2009 09:58
Vundo Trojan Won't Delete AceNguyen Virus, Spyware & Security 13 23rd Dec 2008 05:40
Infected With Heur.trojan.generic Please Help ruffryder2k7 Virus, Spyware & Security 17 6th Nov 2008 10:39
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright ©2006 - 2009 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2009 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.