Go Back   Computer Juice > Computer Software > Virus, Spyware & Security
Register Members New Posts Donate Unanswered Posts Site Spy Search


Reply
 
Thread Tools
  #1  
Old 01-10-2007, 11:32 PM
guccijana's Avatar
CJ Donator
 
guccijana is offline
 
Join Date: Sep 2007
Last Online: 10-04-2008 06:26 PM
Posts: 143
iTrader: (0)
guccijana is on a distinguished road
Default Help again evilfantasy!! avast found TROJAN HORSE!

Hello again, after all the trouble with smitfraud, I downloaded avast 4.0 anti virus, and it alarmed me of having 2 trojan horses!!!

one in this folder


C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP2\A0000119.dll

and the other one in this

C:\qoovox\C\Windows\msmdev.dll.vir

Last edited by guccijana : 01-10-2007 at 11:33 PM.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #2  
Old 01-10-2007, 11:40 PM
evilfantasy's Avatar
CJ Moderator
Intel ATi
evilfantasy is offline
Send a message via Yahoo to evilfantasy
 
Join Date: Jul 2007
Last Online: Today 12:57 AM
Posts: 4,601
iTrader: (0)
evilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond repute
Default Help again evilfantasy!! avast found TROJAN HORSE!

No worries.

Go to C:\qoovox\C\Windows\msmdev.dll.vir and delete the entire folder.
That is the backups from Combofix. Sorry, should have had you delete that when we were done.

================

C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP2\A0000119.dll

This is your system restore files. We can get rid of this by toggling System Restore.

System Restore
1: Right click on the My Computer icon on your desktop and select properties.
2: Click on the system restore tab.
3: Check the box that says "Turn off system restore on all drives". Click OK.
4: Click Yes when you are prompted to restart the computer
5: To re-enable System Restore, follow steps 1-3, but in step 3, click to clear the Disable System Restore check box.

Be sure to re-enable system restore (step 5) when done.
===============

Let me know if there are any problems.
__________________
.
.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #3  
Old 01-10-2007, 11:42 PM
evilfantasy's Avatar
CJ Moderator
Intel ATi
evilfantasy is offline
Send a message via Yahoo to evilfantasy
 
Join Date: Jul 2007
Last Online: Today 12:57 AM
Posts: 4,601
iTrader: (0)
evilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond repute
Default Help again evilfantasy!! avast found TROJAN HORSE!

Delete C\qoovox <the entire folder.
__________________
.
.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #4  
Old 01-10-2007, 11:49 PM
guccijana's Avatar
CJ Donator
 
guccijana is offline
 
Join Date: Sep 2007
Last Online: 10-04-2008 06:26 PM
Posts: 143
iTrader: (0)
guccijana is on a distinguished road
Default Help again evilfantasy!! avast found TROJAN HORSE!

Ohh okay, i was worried the old virus came back!!!

Anyway i deleted the folder, but when i clicked the Turn off system restore on all drives".
It did not ask me to restart my computer. it just said this
"you have chosen to turn off system restore. If you continue all existing points will be deleted ..Do you want to turn of system restore?
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #5  
Old 01-10-2007, 11:53 PM
evilfantasy's Avatar
CJ Moderator
Intel ATi
evilfantasy is offline
Send a message via Yahoo to evilfantasy
 
Join Date: Jul 2007
Last Online: Today 12:57 AM
Posts: 4,601
iTrader: (0)
evilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond repute
Default Help again evilfantasy!! avast found TROJAN HORSE!

Yes, you should then be prompted to re-boot. If not then re-boot manually.
Then turn system restore back on.
__________________
.
.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #6  
Old 01-10-2007, 11:56 PM
guccijana's Avatar
CJ Donator
 
guccijana is offline
 
Join Date: Sep 2007
Last Online: 10-04-2008 06:26 PM
Posts: 143
iTrader: (0)
guccijana is on a distinguished road
Default Help again evilfantasy!! avast found TROJAN HORSE!

Oh okay, ill reboot then.. another thing, avast left the two "trojans" in the virus chest program-should i delete them from there?
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #7  
Old 02-10-2007, 12:00 AM
evilfantasy's Avatar
CJ Moderator
Intel ATi
evilfantasy is offline
Send a message via Yahoo to evilfantasy
 
Join Date: Jul 2007
Last Online: Today 12:57 AM
Posts: 4,601
iTrader: (0)
evilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond repute
Default Help again evilfantasy!! avast found TROJAN HORSE!

Absolutely. They are doing no good to have.

Be sure to empty the recycle bin. CCleaner would not be a bad idea to run also.
__________________
.
.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #8  
Old 02-10-2007, 12:10 AM
guccijana's Avatar
CJ Donator
 
guccijana is offline
 
Join Date: Sep 2007
Last Online: 10-04-2008 06:26 PM
Posts: 143
iTrader: (0)
guccijana is on a distinguished road
Default Help again evilfantasy!! avast found TROJAN HORSE!

-Deleted the files from avast chest
-deleted the C:\qoovox folder
-emptied recycling bin
and i'm about to reboot~~
Ill run-ccleaner and avast- and let you know if it finds anything (thats probably gonna take a while)

THXXX AGAIN! and sorry to bother ya!!
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #9  
Old 02-10-2007, 12:19 AM
evilfantasy's Avatar
CJ Moderator
Intel ATi
evilfantasy is offline
Send a message via Yahoo to evilfantasy
 
Join Date: Jul 2007
Last Online: Today 12:57 AM
Posts: 4,601
iTrader: (0)
evilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond reputeevilfantasy has a reputation beyond repute
Default Help again evilfantasy!! avast found TROJAN HORSE!

No bother.

Everything should be OK now.

Let me know.
__________________
.
.
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote
  #10  
Old 02-10-2007, 03:00 PM
guccijana's Avatar
CJ Donator
 
guccijana is offline
 
Join Date: Sep 2007
Last Online: 10-04-2008 06:26 PM
Posts: 143
iTrader: (0)
guccijana is on a distinguished road
Default Help again evilfantasy!! avast found TROJAN HORSE!

Gooood morning! I went to sleep and left Avast run, and in the morning (Now) i got a windows message saying windows device timeout-the specifies I/O operation on device/Harddisk2/DR8 was not completed before the time-out..

thats probably because my computer went to sleep mode and the avast hasn't finished scanning??

I'll have to scan again!!
Digg this postDel.icio.us this postTechnorati this postNetscape this postStumble this post
Reply With Quote

Please support this forum, donate towards our running costs.


Reply


Thread Tools

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
TROJAN HORSE iana Virus, Spyware & Security 11 29-05-2008 07:40 AM
Trojan Horse; Help!! Phil1706 Virus, Spyware & Security 4 17-03-2008 02:39 PM
trojan horse BHO.CVX has stolen my computer !!!!! slime Virus, Spyware & Security 34 28-12-2007 03:05 PM
AVG reporting trojan horse BHO.CVX - Help please chrisleech11 Virus, Spyware & Security 24 20-12-2007 05:17 PM
Trojan Horse and AVG chuckeruk Virus, Spyware & Security 8 02-07-2007 05:02 PM


Copyright ©2006 - 2008 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2008 Jelsoft Enterprises Ltd. SEO by vBSEO ©2008, Crawlability, Inc.

Page copy protected against web site content infringement by Copyscape