Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.



  • Please log in to reply
1 reply to this topic

#1 ahmer


  • Members
  • 1 posts
  • Local time:09:43 PM

Posted 17 July 2016 - 09:55 AM

We have Kaspersky Endpoint Protection solution installed in our environment and clients are running on WinXPSP3 and Windows7SP1.


Many of our systems on same IP subnet often get infected with the below two virus/trojan infections.


1) Net-Worm.Win32.Kido.ih - aka Conflicker    I found this guide for Conflicker


2) Trojan.Win32.Runner.amo  - Did not find any solution for this trojan.

Object: C:\ Windows\ Tasks\ At2775.job

Path: file:_C:\WINDOWS\system32\awpzio.ia;file:_C:\WINDOWS\Tasks\At655.job;taskscheduler:_C:\WINDOWS\Tasks\At655.job


Please tell what tools/software are recommended to eradicate the infected machines. 

Edited by ahmer, 17 July 2016 - 09:59 AM.

BC AdBot (Login to Remove)



#2 InadequateInfirmity


    I Gots Me A Certified Edumication

  • Banned
  • 5,180 posts
  • Gender:Male
  • Local time:11:43 AM

Posted 17 July 2016 - 03:24 PM

Would you like individual help for each machine? How many are infected?


Running through these scans should help, but individual threads may need to be created for each machine.


Adware Cleaner Scan.


Please download AdwCleaner by Xplode onto your desktop.

  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Scan button.
  • When the scan has finished click on Clean button.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.


JRT Scan.

Please download Junkware Removal Tool and save it on your desktop.


  • Shut down your anti-virus, anti-spyware, and firewall software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Windows 7, right-click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log is saved to your desktop and will automatically open.
  • Please post the JRT log.

Adware Removal Tool Scan.


Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.





Hit Ok.




Hit next make sure to leave all items checked, for removal.





The Program will close all open programs to complete the removal, so save any work and hit OK. Then hit OK after the removal process is complete, thenOK again to finish up. Post log generated by tool.


ZHP Scan.

Please download Zhp Cleaner  to your desktop.  Right Click the icon and select run as administrator.




2. Once you have started the program, you will need to click the scanner button.


The program will close all open browsers!

3. Once the scan is completed, the you will want to click the Repair button.


At the end of the process you may be asked to reboot your machine. After you reboot a report will open on your desktop.

Copy and paste the report here in your next reply.

 Zemana Scan



Run a full scan with Zemana AntiMalware!

Install and select deep scan.


Remove any infections found.

Then click on the icon in the pic below.


Double click on the scan log, copy and paste here in your reply

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users