Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Virus, Spyware, and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Want a New HP LaserJet MFP? Trade in your old printer and receive $1,000 in savings!
Trade in your old printer and receive up to $1,000 in saving on a new HP LaserJet Multifunction Printer. Click here for savings!
MalwareBytes Anti-Malware Download

> Forum Rules

When posting your problem, do not run and post a ComboFix log. ComboFix is a tool that should only be run under the supervision of someone who has been trained in its use. Using it on your own can cause problems with your computer. Any posts containing CF Logs will be ignored.

To receive help, you should instead provide a detailed description of your problem, detailed word-for-word error messages that you are receiving, screenshots of strange behaviour, and your operating system. This information is much more useful to our helpers than a ComboFix log.

2 Pages V  < 1 2  
Reply to this topicStart new topic
> A trojan that i cannot remove
abezdjian
post May 23 2009, 09:10 AM
Post #16


Member
**

Group: Members
Posts: 30
Joined: 14-November 08
Member No.: 256,601



If i can get it clean here, i would appreciate it alot.

But if there are no more means i would have no choice to reformat
Go to the top of the page
 
+Quote Post
xblindx
post May 23 2009, 09:19 AM
Post #17


Forum Addict
Group Icon

Group: Banned
Posts: 1,923
Joined: 21-September 08
From: NeverLand
Member No.: 240,362



Please run a BitDefender Online Scan
  • Click I Agree to agree to the EULA.
  • Allow the ActiveX control to install when prompted.
  • Click Click here to scan to begin the scan.
  • Please refrain from using the computer until the scan is finished. This might take a while to run, but it is important that nothing else is running while you scan.
  • When the scan is finished, click on Click here to export the scan results.
  • Save the report to your desktop so you can post it in your next reply.
Go to the top of the page
 
+Quote Post
abezdjian
post May 23 2009, 08:38 PM
Post #18


Member
**

Group: Members
Posts: 30
Joined: 14-November 08
Member No.: 256,601



BitDefender Online Scanner



Scan report generated at: Sat, May 23, 2009 - 20:05:29





Scan path: C:\Documents and Settings\Alex\My Documents;C:\Documents and Settings\david\My Documents;C:\Documents and Settings\All Users\Documents;C:\;







Statistics

Time
01:12:01

Files
264262

Folders
13851

Boot Sectors
0

Archives
5992

Packed Files
10722




Results

Identified Viruses
1

Infected Files
1

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
1




Engines Info

Virus Definitions
3095428

Engine build
AVCORE v1.7 (build 8314.19) (i386) (Sep 29 2008 17:19:14)

Scan plugins
17

Archive plugins
45

Unpack plugins
7

E-mail plugins
6

System plugins
4




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Documents and Settings\Alex\Application Data\Move Networks\MoveMediaPlayer_07103010.exe
Infected with: Backdoor.Generic.121567

C:\Documents and Settings\Alex\Application Data\Move Networks\MoveMediaPlayer_07103010.exe
Deleted


this is the log from bitdefender

Go to the top of the page
 
+Quote Post
xblindx
post May 24 2009, 06:28 AM
Post #19


Forum Addict
Group Icon

Group: Banned
Posts: 1,923
Joined: 21-September 08
From: NeverLand
Member No.: 240,362



Are you still having issues?

Please update Malwarebytes Anti-Malware and run a quick scan
Go to the top of the page
 
+Quote Post
abezdjian
post May 24 2009, 04:11 PM
Post #20


Member
**

Group: Members
Posts: 30
Joined: 14-November 08
Member No.: 256,601



My pc seams working normally again,
I ran another scan
here is the log

Malwarebytes' Anti-Malware 1.36
Database version: 2175
Windows 5.1.2600 Service Pack 2

24/05/2009 5:09:55 PM
mbam-log-2009-05-24 (17-09-55).txt

Scan type: Quick Scan
Objects scanned: 111211
Time elapsed: 9 minute(s), 58 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\uacinit.dll (Trojan.Agent) -> Delete on reboot.


THANKS A MILLION XBLINDX. REALLY APPRECIATE UR EXPERTISE.
Go to the top of the page
 
+Quote Post
xblindx
post May 24 2009, 04:24 PM
Post #21


Forum Addict
Group Icon

Group: Banned
Posts: 1,923
Joined: 21-September 08
From: NeverLand
Member No.: 240,362



Please restart your computer and then run 1 more quick scan with MBAM and see if you come up clean.

This post has been edited by xblindx: May 24 2009, 04:25 PM
Go to the top of the page
 
+Quote Post
BugsleyClown
post Jun 12 2009, 05:32 PM
Post #22


New Member
*

Group: Members
Posts: 1
Joined: 11-June 09
Member No.: 341,181



xblindx,

A trojan that i cannot remove

I have a very similar problem removing Trojan.Packed.365 from my daughter's computer.
I have followed all the steps up to posting - SUPERAntiSpyWare Scan Log.
I have not posted before so I will read about how its done.

Any help will be appreciated.


The SUPERAntiSpyWare would not run so i used the Alternate Start Shortcut.
I ran ATF-Cleaner.exe & SUPERAntiSpyWare.exe in the safe mode rebooted back to normal mode.
I had previously tried to run DRWeb-CureIt in safe mode it would stop about half way through "BSofDeath"
I used Autoruns but the Reg Keys with UAC were hidden.(I had moved/deleted them several time before using AdAware.

Bugsley
Shaun Thorpe
Go to the top of the page
 
+Quote Post

2 Pages V  < 1 2
Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 9th September 2010 - 05:51 AM


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Virus Removal Guides

© 2003-2010 All Rights Reserved Bleeping Computer LLC.