We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Can't get rid of Trojan...

Options
MORPH3US
MORPH3US Posts: 4,906 Forumite
1,000 Posts Combo Breaker
Hi folks,

My home PC seems to be infected with a trojan downloader that Windows Defender keeps flagging up as shown below:

Capture.jpg

Problem is whenever I click "Remove All" it seems to indicate that the problem has been removed but then half an hour later it will pop up with the same message again.

Also left my PC on overnight and this morning there were about 10 webpages open with selling anything from lipstick to sponsor an orangutan.

Have done a full scan with AVG and it didn't find anything.

Tried to install Spybot but for some reason that won't install.

Downloaded and run a full scan on Ad-Aware but that gets stuck on a certain file and looks like its still running but doesn't move off the one file....

Tried to do an online Kapersky virus scan but for some reason the page was loading funny....

Can anyone help me get rid of this POS from my PC please :o

Comments

  • MORPH3US
    MORPH3US Posts: 4,906 Forumite
    1,000 Posts Combo Breaker
    Just also tried to download Malwarebytes' Anti-Malware but that page won't load also....

    Is there such a thing as an intelligent virus / malware that could see I was trying to get rid of it so block my attempts to download software to kill it?
  • GunJack
    GunJack Posts: 11,840 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    in a word....YES !! :(

    can you download the MBAM installer and Combofix onto a memory stick from another pc and then install/run on your infected one ??

    Also, AVG and Defender aren't much good in all honesty..need to bring in the big guns ;)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
  • MORPH3US
    MORPH3US Posts: 4,906 Forumite
    1,000 Posts Combo Breaker
    Cheers GunJack...

    Will do as you suggest - download those programmes to memory stick and take them home tonight.

    Interestingly just doing the Microsoft Onecare Safety Scanner for Vista now and so far "9 items detected, 4 issues found" on the virus and spyware scan and only done 5%.

    Will report back more later on what it finds.

    Cheers
  • artbaron
    artbaron Posts: 7,285 Forumite
    Have you looked at this (I can't post links so change Xttp to http and paste into browser)
    Xttp://support.microsoft.com/kb/890830
  • Browntoa
    Browntoa Posts: 49,602 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    you may need to change the name of combofix to get it to run , may also need to boot into safe mode to get it to run , even after renaming
    Ex forum ambassador

    Long term forum member
  • MORPH3US
    MORPH3US Posts: 4,906 Forumite
    1,000 Posts Combo Breaker
    Update as promised guys:

    Binned off AVG in the end (after trumpeting it for many many years) and got Avira instead. Avira kept seeing the virus but it was it advised me not to continue running the PC with this trojan there, to restart and run a boot scan (i.e. where it scans before windows even starts). Did that and deleted about five problems but when I got past that stage and got back into windows the pop up kept telling me the main virus / torjan was still there and it wasn't safe to keep running, restart and do the boot scan ad infinitum.....

    After much troubles, I finally managed to get MBAM working (think that was the virus making things difficult not the software) and must say that it seemed very good. Picked up a load of dodgy stuff and quickly got rid of all of it. From what I can see my computer is now fixed, it certainly isn't showing any symptoms or signs of being infected.

    Thanks for the help guys.
  • GunJack
    GunJack Posts: 11,840 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    edited 29 May 2009 at 10:50AM
    morph3us - justb as a belt'n'braces, get superantispyware, update and full scan.....if that's clear, sounds like you're good to go :)

    p.s. jackie, the sas updates recently have had LOTS of vundo & variants additions..getting better against it :)
    ......Gettin' There, Wherever There is......

    I have a dodgy "i" key, so ignore spelling errors due to "i" issues, ...I blame Apple :D
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.6K Spending & Discounts
  • 244K Work, Benefits & Business
  • 598.9K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.3K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.