Author Topic: Avast Free cant remove JS:Redirector-AJU Trojan  (Read 2784 times)

0 Members and 1 Guest are viewing this topic.

ypokkinen

  • Guest
Avast Free cant remove JS:Redirector-AJU Trojan
« on: September 02, 2013, 10:19:27 AM »
I have windows 7 and avast free antivirus installed. When I scan with Avast it finds the trojan virus, but it cant delete it completely. I have scanned all the harddrives many times. Virus gets in new places and pops up in alarm window every second.
What can I do to get it out of my system?

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #1 on: September 02, 2013, 10:23:40 AM »
Please attach your logs. (AdwCleaner, MBAM, OTL and aswMBR..!!)
Instructions: http://forum.avast.com/index.php?topic=53253.0
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

ypokkinen

  • Guest
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #2 on: September 02, 2013, 01:53:24 PM »
Here is my OTL logs attached.

ypokkinen

  • Guest
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #3 on: September 02, 2013, 02:16:13 PM »
 My RoqueKiller reports are here.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #4 on: September 02, 2013, 02:58:57 PM »
Please reread my post and the instructions..!!

Edit: Seems Essexboy is happy with the provided logs. ;D
« Last Edit: September 02, 2013, 03:36:53 PM by Asyn »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #5 on: September 02, 2013, 03:07:41 PM »
What location and file name does Avast give ?

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

Run OTL
  • Under the Custom Scans/Fixes box at the bottom, paste in the following


Code: [Select]
:Commands
[CREATERESTOREPOINT]

:OTL
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2504091&SearchSource=3&q={searchTerms}"
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
[2010/10/01 15:20:34 | 000,000,903 | ---- | M] () -- C:\Users\Yrjö\AppData\Roaming\mozilla\firefox\profiles\qivq7z81.default\searchplugins\conduit.xml
@Alternate Data Stream - 971 bytes -> C:\ProgramData:$SS_DESCRIPTOR_LBP6VPVFLVGVTFB84LTSUTB92PFNPC7BPV4XFJDMNGTFB5V5NBJ5TBBJMT9Y0N96GV6PYM54U3M96HFNXH553Y8VPHKL606FVGEG1P6ERPVRDVT8JL9JJMPYV0PRUEF39P8XHH0TCFUL44FTBX4MLSWPBXRTF6VEKLFEJK35PNX0WHNGT9LSVEVV1VTVVTVMVV7
@Alternate Data Stream - 936 bytes -> C:\Users\Yrjö\AppData\Local\Temp:lkYM2E1ZHwTaXNK3vpIm17aY
@Alternate Data Stream - 196 bytes -> C:\ProgramData\TEMP:036B9593
@Alternate Data Stream - 171 bytes -> C:\ProgramData\TEMP:2388C2C5
@Alternate Data Stream - 1150 bytes -> C:\ProgramData\Microsoft:yAMIBQBCOOmNFITTaK2w
@Alternate Data Stream - 1130 bytes -> C:\Users\Yrjö\AppData\Local\Temp:6SwzHoyRdu4YpWcnU7vhrDQftWow
@Alternate Data Stream - 1097 bytes -> C:\Users\Yrjö\AppData\Local\Temp:LK7nzsbHW8CCFs0p8ALr0HcSRg
@Alternate Data Stream - 1032 bytes -> C:\ProgramData\Microsoft:lD2t45QsppljvRaHz4yf
@Alternate Data Stream - 1003 bytes -> C:\ProgramData\Microsoft:PYdAi2WBEH8faZLgGa9pf
@Alternate Data Stream - 1001 bytes -> C:\ProgramData\Microsoft:XDzypBQCOtfTDdORiW7mDb7U7

:Commands
[resethosts]
[emptytemp]
[Reboot]
  • Then click the Run Fix button at the top
  • Let the program run unhindered, reboot the PC when it is done
  • Open OTL again and click the Quick Scan button. Post the log it produces in your next reply.

ypokkinen

  • Guest
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #6 on: September 02, 2013, 05:05:10 PM »
Here is my OTL2.log and Extras2.log(after FIX IT prosedure)  with Quick scan.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #7 on: September 02, 2013, 07:26:36 PM »
Have you uninstalled Avast and installed Norton, is the alert still happening

ypokkinen

  • Guest
Re: Avast Free cant remove JS:Redirector-AJU Trojan
« Reply #8 on: September 03, 2013, 08:06:14 AM »
Yes I installed Norton and uninstalled Avast.. Bye the way before that I removed bitecoin and litecoin refences from register, because I dont mine any more bitecoins. After that windows firewall bumped on again. So I think mining has brought me this trojan virus. The alert is not happening any more.
« Last Edit: September 03, 2013, 08:10:32 AM by ypokkinen »