Author Topic: [b]Help to remove win32:Trojan-gen (other)[/b]  (Read 12097 times)

0 Members and 1 Guest are viewing this topic.

wyrmrider

  • Guest
Re: [b]Help to remove win32:Trojan-gen (other)[/b]
« Reply #15 on: September 12, 2008, 08:43:46 PM »
Best to start a new thread  post all answers in new thread  thanks

Someone else can advise on rootkit but I would certainly fix it and then run one in #5 below
Polonus may advise us on this

I have to run to lunch but here's a start
here is a copy of Tech's standard procedure which works very well if followed completely

I'm a little Dyslexic so I am going to spread it out a little and add a few comments

1. Disable System Restore and then reenable it again.

2. Clean your temporary files. Use ATF cleaner or Ccleaner- but post up any relevant AV logs first


3. Schedule a boot time scanning with avast with archive scanning turned on.
rt click on the ball and update>programs
then open avast and schedule boot time scan- reboot and send any hits to chest, do not remove/delete
did you quarantine or send to chest previos AV scans? what was there (ignore cookies)

If avast does not detect it, you can try DrWeb CureIT! instead.
http://www.freedrweb.com/cureit/
(not a bad idea for a second opinion anyway but you said you had already run some other scans)

4. Use SUPERantispyware,
http://www.superantispyware.com/
update  quarantine post logs

MBAM
http://malwarebytes.org/mbam.php
put a check mark next to any baddies and the click REMOVE CHECKED- a backup will be made

5. Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.

6. Make a NEW HijackThis log after the above scans to post here

7. Immunize your system with SpywareBlaster or Windows Advanced Care.

8. Check if you have insecure applications with Secunia Software Inspector.
http://secunia.com/software_inspector/