Author Topic: XTJI.bak malware generater  (Read 1506 times)

0 Members and 1 Guest are viewing this topic.

Offline ravindrankotiath

  • Newbie
  • *
  • Posts: 2
XTJI.bak malware generater
« on: January 06, 2010, 01:39:47 PM »
in my machine avast showing freaquently that C:\DOCUME~1\Datamate\LOCALS~1\Temp\xtji.bak contains a win32:malware generater. but after it moved to chest or removed it again and again it is showing the same message please help me to solve the problem
« Last Edit: January 06, 2010, 01:41:24 PM by ravindrankotiath »

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67255
Re: XTJI.bak malware generater
« Reply #1 on: January 06, 2010, 02:11:10 PM »
I suggest:

1. Clean your temporary files.
2. Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! instead.
3. Use MBAM (or SUPERantispyware or even Spyware Terminator) to scan for spywares and trojans. If any infection is detected, better and safer is send the file to Quarantine than to simple delete them.
4. Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.
5. Make a HijackThis log to post here or this analysis site. Or even submit the RunScanner log to to on-line analysis.
6. Clean your Hosts file (replacing it) with HostsMan tool.
7. Disable System Restore and then reenable it again.
8. Immunize your system with SpywareBlaster.
9. Check if you have insecure applications with Secunia Software Inspector.
The best things in life are free.