Author Topic: I Need Help JS:Downloader-GAI[trj] ?  (Read 4090 times)

0 Members and 1 Guest are viewing this topic.

Offline tasuhstorm

  • Newbie
  • *
  • Posts: 2
I Need Help JS:Downloader-GAI[trj] ?
« on: November 08, 2019, 04:45:08 AM »
Avast found a threat called JS:Downloader-GAI[trj] infected file isuspm.ini location in the Installshield\update can anyone confirm if this is a actual virus or a false? Any help will be appreciated Thank you
« Last Edit: November 08, 2019, 11:48:01 AM by tasuhstorm »

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33913
  • malware fighter
Re: I Need Help JS:Downloader-GAI[trj] ?
« Reply #1 on: November 08, 2019, 12:05:20 PM »
Good article on a way to check potentially infested ini files is to be found here:
https://kc.mcafee.com/corporate/index?page=content&id=KB53094

Take the info in the link given for general Windows platform related information.
The specific McAfee related information should NOT be regarded and omitted here.
(pol).

Quote
Possible symptoms include:
Suspicious computer behavior such as high CPU usage on unrecognized processes
Significantly increased network traffic or bandwidth usage
New services added or existing services removed
Unable to access network resources such as shared drives
Applications cease to function or files cannot be accessed
Unexpected registry keys added
Internet Explorer home page changed without permission

Do an avast full-scan (establish whether PUB-mode is being set).
 
This article includes references to some third-party tools. For instructions on using them, we recommend here that you use the Help files for the third-party products. (pol.)

Go over it as sketched.  Then report here: https://www.avast.com/false-positive-file-form.php

polonus
« Last Edit: November 08, 2019, 03:43:48 PM by polonus »
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: I Need Help JS:Downloader-GAI[trj] ?
« Reply #2 on: November 08, 2019, 02:15:12 PM »
Quote
can anyone confirm if this is a actual virus or a false?
Not possible to say from the info given. You can upload and check file(s) here  www.virustotal.com

And it is not a virus but a trojan   JS:Downloader-GAI[trj] = Trojan  / JS = Java Script  / Downloader = It download stuff



Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: I Need Help JS:Downloader-GAI[trj] ?
« Reply #3 on: November 08, 2019, 03:16:05 PM »
Quote
can anyone confirm if this is a actual virus or a false?
Not possible to say from the info given. You can upload and check file(s) here  www.virustotal.com
...and post the link to the VT result here.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline tasuhstorm

  • Newbie
  • *
  • Posts: 2
Re: I Need Help JS:Downloader-GAI[trj] ?
« Reply #4 on: November 09, 2019, 08:53:11 AM »
Here's the results from virustool https://www.virustotal.com/gui/file/8e3d23d99cb19bebac2347695b610cecb2aecaf90fe347582cb00b27274b7f1f/details
they don't really say what it is other Thank you all for the help :)

I opened it in notepad++ and it had a website googling it it showed it's adware didn't dig too deep in the links though
« Last Edit: November 09, 2019, 08:59:51 AM by tasuhstorm »

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: I Need Help JS:Downloader-GAI[trj] ?
« Reply #5 on: November 09, 2019, 09:05:52 AM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0