User User name Password  
   
Wednesday 4.12.2024 / 14:04
Search AfterDawn Forums:        In English   Suomeksi   På svenska
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > desktop infected with trojans
Show topics
 
Forums
Forums
Desktop infected with Trojans
  Jump to:
 
Posted Message
Member
_
6. April 2011 @ 06:01 _ Link to this message    Send private message to this user   
Hi guys,

Just been at my friend's house and his desktop is infected with three different Trojans.

He was complaining about his pc being slower than usual; so I immediately installed Anti-Malwarebytes Anti-Malware, and then also VIPRE AV & AS.

After updating both programs, I disconnected his pc from the internet.


So scanning with AMAM(full scan), it found 30-40 pieces of malware, and I followed AMAM guidance and removed all of them.

Then I performed a "deep scan" with VIPRE AV & AS. Which is where it gets interesting...

Up comes the following:

Trojan.JS.Generic(v)
Trojan.Win32.Generic!BT
PSWTool.Win32.Pdfcracker.GeN (Password Cracker/Stealer)

All of them rated Risk level "high".


So VIPRE suggests quarantine, and I change it to clean, and confirm. Then I reboot, rescan and they pop up again.


Except this time, when the scan completes, the results disappear and consequently I can't remove/quarantine or do anything. It appears as if the scan picked up nothing (the table is blank), but the values in the table at the top (No of threats detected etc) all say "x100000".




If anyone could tell me how to remove these Trojans and password stealer, I would really appreciate it.


Thanks

Ezy
Advertisement
_
__
tech_slave
Newbie
_
11. May 2011 @ 22:50 _ Link to this message    Send private message to this user   
im not sure but if i were u i would try to remember the program's name tht has the trogan on it and see if it's running from task manager and try to end it and track it's source and manually delete it and if it's with a certain program remove it and re-install it if you need it but if not....since removing it is not working i would back up the really important files that u cant get again like docs,pics, music...etc. and do a clean install of the windows or watever OS and start from scratch and watch ur steps from a clean begining and try scans after installing ur programs again and after restoring ur back-up and re-scan the enitre hard drive and make sure to use several anit-virus programs to make sure and i hope i helped and plz reply back with the results :))
ddp
Moderator
_
12. May 2011 @ 14:17 _ Link to this message    Send private message to this user   
try a system restore to before they appeared if possible.
Mez
AfterDawn Addict
_
22. July 2011 @ 15:08 _ Link to this message    Send private message to this user   
I never save or type passwords for any site that involves money ect. Most stealers are either key loggers or steal saved passwords. The loggers are smart enough to work only while you are in a browser. Type the passwords in note pad and cut and paste them into the browser as a habbit. I also use a keyscrambler.
jantanik
Newbie
_
3. August 2011 @ 03:20 _ Link to this message    Send private message to this user   
Originally posted by EzyDuzIt:
Hi guys,

Just been at my friend's house and his desktop is infected with three different Trojans.

He was complaining about his pc being slower than usual; so I immediately installed Anti-Malwarebytes Anti-Malware, and then also VIPRE AV & AS.

After updating both programs, I disconnected his pc from the internet.


So scanning with AMAM(full scan), it found 30-40 pieces of malware, and I followed AMAM guidance and removed all of them.

Then I performed a "deep scan" with VIPRE AV & AS. Which is where it gets interesting...

Up comes the following:

Trojan.JS.Generic(v)
Trojan.Win32.Generic!BT
PSWTool.Win32.Pdfcracker.GeN (Password Cracker/Stealer)

All of them rated Risk level "high".


So VIPRE suggests quarantine, and I change it to clean, and confirm. Then I reboot, rescan and they pop up again.


Except this time, when the scan completes, the results disappear and consequently I can't remove/quarantine or do anything. It appears as if the scan picked up nothing (the table is blank), but the values in the table at the top (No of threats detected etc) all say "x100000".

Thanks

Ezy
First backup your data to flash drive.Then reinstall windows by formatting, or do factory restore.
Then install the anti-virus from avast.com. Then do all the windows update manually forcing it.
Then scan the flash drive,then copy the data back to the computer.Your computer will be faster and safe.

This message has been edited since posting. Last time this message was edited on 5. April 2012 @ 06:17

Mez
AfterDawn Addict
_
3. August 2011 @ 08:22 _ Link to this message    Send private message to this user   
Hopefully all the data can fit on a flash drive. My C: is 1.5 T. However you can copy your info to a different disk and do the exact same thing. I had to do something like that last weekend. You might even wish to clone C: viruses and all. I get the clean drive up and running with AV then plug in the old C: as a USB drive. Your new C: will be safe because the AV is up and running before you connect. Then you can scan the disk. I would use several different scanners before I deemed the old C: save to copy over all your files. Then keep the old C: as a back up C:. They come in handy. If you have problems like this ever again just swap drives.
ps355528
Senior Member
_
3. August 2011 @ 11:55 _ Link to this message    Send private message to this user   
hehehe.. copy data to stick.. clean reinstall (it's crapdoze remember) .. bring data back from stick.. back come baddies..

nobody understands my "hidden partition" setups these days.. clean install of everything "stock".. copy to little stashed away "*" partition (fat32) ..puppy is fantastic.. when sleepdoze screws up just copy everything back either with puppy or with dd.. for data just "move" instead of "copy".. doesn't move anything, just shifts the file listing down a level.. it's almost instant. lmfao!!



ARR! Them pesky Navy! Get out of my sea!
irc://irc.villageirc.net/afterdawn http://www.pirateparty.org.uk/
Mez
AfterDawn Addict
_
3. August 2011 @ 14:30 _ Link to this message    Send private message to this user   
I beg to differ, with a healthy virus scanner up and running with orders to scan anything on a USB connection the bad guys don't have a chance if the scanner knows the malware's signature.

I have seen malware hide in places far outside where the core functionality resides. Still, if there was a crapdoz version of Puppy I would check it out.

Since I have a few 500g disks not really doing much I can afford to keep a clean one and a 'dirty' one. The clean disk has minimumal software, a browser and some malware scanners. I only use the browser to get more virus scanners ect.

The dirty has my darker utilities that I only use occasionally that I don?t want Big Brother to find on my computer. I figure all firewalls have back doors so they are useless against big brother. With persons stealing into wireless networks so often big brother can?t be sure what is going on if it finds something on your IP every few months.
Mez
AfterDawn Addict
_
17. August 2011 @ 10:37 _ Link to this message    Send private message to this user   
fannyy what does your post have to do with this? Do you believe that a data or flow is being intercepted and viruses are added?

That is a million times harder than the usual and very effect ways to infect the unsuspecting.

DDP deleted the post. It was a less than obvious free add for a VPN that would keep you free of viruses, I guess. That point was not clear. I am happy to see AD taking such an agressive stand against spammers. I think the word is going out that AD is not fertil ground for spam. If you want an add, pay for it. Maybe a year ago the spamming was too much. Now I don't see many and like the one deleted, the ones that are posted are not so obvious any more.

This message has been edited since posting. Last time this message was edited on 18. August 2011 @ 11:22

Advertisement
_
__
 
_
ddp
Moderator
_
17. August 2011 @ 17:52 _ Link to this message    Send private message to this user   
spammer spammed
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > desktop infected with trojans
 

Digital video: AfterDawn.com | AfterDawn Forums
Music: MP3Lizard.com
Gaming: Blasteroids.com | Blasteroids Forums | Compare game prices
Software: Software downloads
Blogs: User profile pages
RSS feeds: AfterDawn.com News | Software updates | AfterDawn Forums
International: AfterDawn in Finnish | AfterDawn in Swedish | AfterDawn in Norwegian | download.fi
Navigate: Search | Site map
About us: About AfterDawn Ltd | Advertise on our sites | Rules, Restrictions, Legal disclaimer & Privacy policy
Contact us: Send feedback | Contact our media sales team
 
  © 1999-2024 by AfterDawn Ltd.

  IDG TechNetwork