Trojan horse dialer

Trojan horse dialer.15.AX

AVG anti-virus found the above on friday and deleted it, today it has found it again, why has it come back and now I'm using AVG how has it got in, can I stop it returning,

please help I'm a bit of a tech newbie but a quick learner :confused:

not a newbie now: but still be gentle with me ;)
«1

Comments

  • -TangleFoot-
    -TangleFoot- Posts: 4,673 Forumite
    Part of the Furniture Combo Breaker
    Well, first thing to do would be to check whether Windows Firewall/ICF is enabled. Secondly, disable System Restore. Assuming that nothing else is amiss, that should be all that is necessary to allow your anti-virus software to remove this little annoyance without it springing up again; some viruses and their ilk hide a copy of themselves in System Restore as backup.
  • jennyjo_2
    jennyjo_2 Posts: 1,812 Forumite
    it does say file path: C:\System Volume Information\_restore{348F7407-C88E-4815-8..

    if that's any help

    not a newbie now: but still be gentle with me ;)
  • jennyjo_2
    jennyjo_2 Posts: 1,812 Forumite
    the windows firewall is enabled already, won't disabling system restore be a problem though if I need to use it??

    not a newbie now: but still be gentle with me ;)
  • -TangleFoot-
    -TangleFoot- Posts: 4,673 Forumite
    Part of the Furniture Combo Breaker
    Disabling System Restore will delete any restore points made, yes, but I have found that its propensity to harbour viruses makes it somewhat less useful than it could otherwise be.
  • bokkie7975
    bokkie7975 Posts: 163 Forumite
    disable system restore , run avg, then enable system restore again.
    when you disable system restore all previous restore files are deleted, a new one is made when you re-enable it.
    you wont be able to restore back further than the new file, but shouldn't be too much of a loss.
  • Rex_Mundi
    Rex_Mundi Posts: 6,312 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    virii

    Don't mean to be picky, but the plural of virus is viruses. Most definately not virii.
    How many surrealists does it take to change a lightbulb?
    ...
    ...
    ...
    ...
    Fish
  • jennyjo_2
    jennyjo_2 Posts: 1,812 Forumite
    thanks for help so far, sorry if I sem a little slow taking it in.

    Also I've just run Spyware Doctor and it is showing 277 infections but saying that to remove them I have to purchase the full programme from them

    not a newbie now: but still be gentle with me ;)
  • -TangleFoot-
    -TangleFoot- Posts: 4,673 Forumite
    Part of the Furniture Combo Breaker
    Rex_Mundi wrote:
    Don't mean to be picky, but the plural of virus is viruses. Most definately not virii.
    By gum, you're right!

    ---
    jennyjo wrote:
    I have to purchase the full programme from them
    You'll be better off with a freeware alternative then.

    Take your pick :)

    I heartily recommend either Spybot Search & Destroy or Microsoft AntiSpyware. SpywareBlaster is also an excellent tool with which to complement any do-it-yourself security package.
  • Paul_Varjak
    Paul_Varjak Posts: 4,627 Forumite
    Part of the Furniture 1,000 Posts Photogenic Combo Breaker
    My AVG anti-virus detected a trojan dialler yesterday and the same trojan dialler appeared again today in the system restore files. I used AVG to delete both of them, so I do not think it is necesary to delete system restores (but I may be wrong).

    I was actually browsing MSE when AVG detected these files - the only time I have ever had a warning from AVG! The dialler was called ACONTI.EXE which I determined (by using Google) is an Adult Content dialler!

    I think one problem with using the Microsoft firewall is that it can only stop unwanted incoming internet connections - it does not stop outgoing ones - which is what trojan dialler rely on! Better to get a better firewall that does do this - I use ZoneAlarm. So, if your anti-virus does not recognise a rogue dialler as a virus, the firewall with outgoing connection protection should trap it!

    As for your query on spyware detection/removal, Microsoft has a beta product that both detects and removes spyware - and it is free!
  • Fran
    Fran Posts: 11,280 Forumite
    Part of the Furniture 10,000 Posts Photogenic Combo Breaker
    jennyjo wrote:
    Trojan horse dialer.15.AX

    AVG anti-virus found the above on friday and deleted it, today it has found it again, why has it come back and now I'm using AVG how has it got in, can I stop it returning,

    please help I'm a bit of a tech newbie but a quick learner :confused:

    Have you had a look at FAQ's which is a sticky at the top of this board?

    AVG won't stop a virus or trojan getting in, it will detect it and remove it. A firewall prevents it getting there in the first place by alerting you when it spots something suspect. Also they can get in through email attachments that you open.
    Torgwen.......... :) ...........
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 349.9K Banking & Borrowing
  • 252.6K Reduce Debt & Boost Income
  • 453K Spending & Discounts
  • 242.8K Work, Benefits & Business
  • 619.6K Mortgages, Homes & Bills
  • 176.4K Life & Family
  • 255.7K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 15.1K Coronavirus Support Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.