Trojan Removal - How to/Best software for removal

Pages: 1, 2
free web hosting

Read Latest Entries..: (Post #11) by Becca on Mar 27 2005, 05:19 PM. (Line Breaks Removed)
Thanks Carsten but like half a dozen of people have already said that. I have that trojan thing on my comp... I'm just going to leave it in my computer unti it *BLEEP*s up so I can get a new one... mines getting incredibaly stupid.. if you know what i mean
Read the FIRST post of this Topic. - Express your Opinion! Contribute Knowledge :-).

Open Discussion > CONTRIBUTE > Computers > Computer Security Issues & Exploits

Trojan Removal - How to/Best software for removal

gunbound
On this topic:
http://www.trap17.com/forums/Help-Running-...mize-t8569.html

I was told that I have a Trojan.

I downloaded a program called ScanSpyware and am scanning for Trojans.

Is this a good program for me to keep, or is there something better?

Reply

RGPHNX
Hi gunbound,
The info you recieved in the previous thread of posts is accurate. (ie. re: the processess Id's running on your computer). It appears that you MAY have a trojan pgm named "system" (the one without a .exe extension). Before you do anything manually you should identify the offending critter first using a scanner program. The one I've found to be absolutely the best is called "Trojan Hunter" . It isn't free but there is a free trial available.
If you can't find the offending critter using a scanner, then you can always go to a friends (clean) computer & printout the processes running & then compare it to yours. Then very carefully (do backups of your msconfig file to floppy disc first) test by disabling one "suspect" process (see the previous list for which ones are essential to be left alone) at a time.
In the event you make a mistake & your Windows crashes, you can always restore/copy of the msconfig file using DOS commands.
Hope this Helps.
RGPHNX

Reply

gunbound
That program didn't find anything related to this "System" process. I'm skeptical if it is actually a Trojan, but if it is I want to figure it out and get rid of it. I have searched the internet for a while trying to learn about this, but I couldn't find out about a Trojan that has this exact name.

Since I don't know much about Trojans in general, can someone help me to figure out what this actually is?

I can't end the process. I can't find it by searching my C: drive. I looked in Registry Editor and under HKEY_LOCAL_MACHINE there is a SYSTEM folder... but could this be normal?

Could someone maybe tell me what possible file extentions is could have or what folders a Trojan could be in?

Reply

whyme
It's quite likely that the trojan is still in your computer, i highly recommend that you get a Virus Removal Tool such as Norton or McAfee, the spyware removal program you downloaded isn't liekly to have found the trojan, as it only has a spyware definition list, and not a virus one. If you don't want to go into the burden of buying an anti-virus program, a good free anti-virus program called Avast Anit-Virus, they're really reliable and should be able to find the trojan (assuming that there is one). download it at http://www.download.com/Avast-Home-Edition...ml?tag=lst-0-11

Reply

gunbound
I have Norton Anti-Virus and have had it for a long while. I updated everything and still cannot find anything. So I guess that there's no virus? I dunno, but it's agravating. My computer has had these occasional moments every once and a while where it hangs, and that keeps bothering me. So when I was told that this Support thing is a Trojan, I figured that that was the problem... but I can't find it! Ugh.

Hopefully someone will eventually read this post who will be able to offer some different solutions, but I still appreciate the help so far.

Reply

whyme
Well, in this case, there's only two possible points, either

a) there is no trojan

cool.gif this is a really evasive trojan that even Norton can't find.

I'm pretty sure it's a) wink.gif

Reply

Forsaken
For some reason I was under the impression that norton didnt find trojans...... Guess so.

Reply

Becca
Maybe thats why they are called Trojans? They get into your comp disguised as something else, maybe that is why you can't find it I mean the virus scans might think its something else that isn't harmful because it's well a Trojan.. lol

Reply

mahesh2k
yeah norton is worst antivirus and it makes your system much slower and slower and i dont recommend it anyway.
try pc cillin 2005 it is good antivirus and its internet security is good to fight with spyware.

Reply

RGPHNX
Hi gunbound,
The reason a trojan is called a trojan is that it's HIDDEN from normal viewing methods( thanks Becca). That INCLUDES some anti-virus & remover programs. Also if it is a brand new trojan, even the best anti-virus/scanner programs may not be able to pick it up at all untill they're updated. Some virusus/trojans etc. are out there for many months before the anti-virus programmers catch up with them.
If you've tried this program & that program that have all failed to find the problem, then the time to do some manual investigating is NOW- before more potential damage is done to your system.
First, the HKEY_LOCAL_MACHINE registry folder and the SYSTEM folder in the registry is a normal windows OS folder - DO NOT DELETE OR MODIFY IT IN ANY WAY !!! << IF YOU DO WINDOWS WILL CRASH.
Second, the only way you're going to find out if a malicious "bug"/trojan (that the scanners can't find) has installed itself at this point is to MANUALLY COMPARE the registry on your machine to the registry on a known "clean" machine using the same Windows OS as yours.
This is a slow, pain in the B*TT process- just do it. Check(compare) the registry entrys- go line by line & folder by folder.
Make sure that you have set windows to show all files (even the "hidden" ones) & extensions before you go looking.
The only other option you might have is to boot into "safe" mode & use a DOS based anti-virus program to attempt to identify the potential bug. This sometimes works because some bugs depend on Windows to hide themselves.
If All else fails, the last option you have is to re-format & re-install Windows to "clean" the system. sad.gif sad.gif
Hope this helps,
RGPHNX

 

 

 


Reply

Latest Entries

Becca
Thanks Carsten but like half a dozen of people have already said that.

I have that trojan thing on my comp... I'm just going to leave it in my computer unti it *BLEEP*s up so I can get a new one... mines getting incredibaly stupid.. if you know what i mean

Reply



Got an Opinion! Express your Views! (no registration):-
Add your Reply/ Opinion/ Views/ Comments/ Suggestion/ Questions/ Queries etc.
Posts with decent grammar & English will be accepted and please refrain from profanities.
For asking a Question, We recommend you to sign-up (for free) so that you can track the topic easily.

Nature of your Post*: Opinion/ Reply/ Comments
Question/Query
Feedback to us.
       
Name   Email
Title/Question*

(Maximum characters: 10,000)
You have characters left.

Pages: 1, 2
Recent Queries:-
  1. trojan - 637.31 hr back. (1)
Similar Topics

Keywords : trojan, removal, software, removal

  1. [ Aef ] Security Update For Aef Forum Software
    Highly recommended (1)
  2. Antivirus Xp 2008 - Recent Trojan Threat
    find symptoms and fix (13)
    I've been meaning to write this post for days but the days just got away from me. Recently
    I've subjected my personal laptop for this malware which was downloaded to my clients email. The
    email client was Google Apps (Gmail) and the sender was from a known contact. However the beginning,
    the issue is that this Trojan was downloaded even through FireFox 2.0.0.16 and passed Google Apps
    filter. I was also told that some websites contain scripts to disable firewall and download malware
    without the computer user's knowledge. The final product is called Antiviru....
  3. Bogus Grand Theft Auto Iv Contains Trojan
    (7)
    Well not really surprise that hackers are targeting this game after scoring $310 million
    dollars in the first day, and what gets me is that people were downloading the pc version days
    before it came out, So either complete stupidity on the fact people though it came out early or the
    fact they didn't know that these games would loaded with malware goodies. Nonetheless, I think
    its time gaming companies start taking cheat codes out of games and write protect files and that way
    they can't be over written. SOURCE ....
  4. Pop-up Virus / Trojan Problem
    Constant pop-up, won't go away (10)
    Hi Guys, Lately I have had this same annoying pop-up dialog box pop up that says: QUOTE NOTICE:
    If your computer has been running slower than normal, it may be infected with Viruses, Adware, or
    Spyware. Adwareremover2007 will perform a quick and completely FREE scan of your system for
    malicious programs. Download AdwareRemover2007 for FREE now! I have scanned it with Avira
    AntiVirus and ad-aware2007. They both returned infected files, which i deleted, but i still have the
    pop-ups. Any ideas?....
  5. New Rootkit Uses Old Trick To Hide
    Info on Trojan.Mebroot (2)
    Well it seems Trojans and root kits are making a deadly combination this especially with a technique
    thats pretty darn old. QUOTE The malware, called Trojan.Mebroot by Symantec, installs itself on
    the first part of the computer's hard drive to be read on startup, then makes changes to the
    Windows kernel, making it hard for security software to detect it. Well at least I understand
    how or where root kits become effective a bit more, but really you think if everyone is aware of it
    they would have found a way to patch that hole. I guess not since 5000 computer....
  6. New Aim 6.5 Has Trojan- Win32.tibz.ez
    (1)
    I just recently redid me computer and installed a new OS and i went to install AIM ( I HATE AIM BUT
    I KNOW A LOT OF PEOPLE THAT USE IT ) I installed it as normal and my anti-virus went off showing {
    win32.tibz.ez } trojan theres no way i could have got a virus that fast. I installed my OS and
    updated and then installed and update my zonealarm suite. Then i when to install AIM and my
    anti-virus went off and the AIM installer got a error "installation of a component has failed (error
    code: IS-2008 ). But the funny thing is after I get the error I can still use AIM and it ....
  7. New Twist On An Old Backdoor Trojan
    Suspect this trojan infects or changes BIOS settings (2)
    Seems, there is a variant of backdoor.Sdbot family of worms and IRC backdoor Trojans that is
    disguised as Microsoft Security Adviser. This is quite nasty because it infects system files and is
    very difficult to remove. Trend Micro has a nice online tool called House Call but this trojan
    survived that so you have to look elsewhere to remove it. No telling what the triggers are but I
    simply removed the files and the registry keys pointing to them and now I can't even get into my
    BIOS. Search for msscan.exe if you have it then find RegRun on the net and they claim it r....
  8. Could You Be Infected With Hidden Trojan?
    continuation of DNS hijack (9)
    This post is the continuation of my previous post DNS Hijack SearchAtHand.com Browser Result
    Removal but deserves its own topic. This trojan, not new but something that's been going
    around the web for few years, seems to be quite strong and hard to get rid of. The reason is that it
    randomly changes its full file name when a weak anti-spyware attempts to remove it improperly. I
    have been using Spybot Search & Destroy and Norton Anti-Virus Corporate Edition for many years and
    have never seen such a resilient torjan. Recently I have tried AVG Anti-Spyware but it too....
  9. Trojan /spyware Protection---best---low Resource Util.
    PROTECTION LOW RECURSES UTIL . (5)
    My eyes have been completely opened to all this spyware/Trojan junk... /ph34r.gif"
    style="vertical-align:middle" emoid=":ph34r:" border="0" alt="ph34r.gif" /> I'm behind a
    hardware firewall in my Router----running Windows firewall----using the very latest Nortons AV....
    I seem very secure against "viruses" /blink.gif" style="vertical-align:middle" emoid=":blink:"
    border="0" alt="blink.gif" /> But this spyware/trojan thing..... /tongue.gif"
    style="vertical-align:middle" emoid=":P" border="0" alt="tongue.gif" /> Oh my! /ohmy.gif"
    style="vertical-a....
  10. Question About Trojan Horse
    how to remove them? (14)
    hi this is the 1st time i am here, so sorry if i posted in the wrong section i received a url thru
    msn messenger, i clicked on it and i got trojan horse on my pc i cant remove it with AVG virus scan
    this is the report: http://i88.photobucket.com/albums/k199/jinwun/viruss.jpg can anyone help me?
    thanks in advance. Welcome to the Trap. I will move it for you. ....
  11. How Do I Completely Remove Trojan Viruses
    anti-virus put them in virus vault (32)
    I have AVG anti-virus on my PC, and a few weeks back it found a trojan virus on my pc. It put it
    into the virus vault but could not heal it. How do I completly remove a trojan virus? Or even can
    I? Do I have to download specific software to remove it, or is there some more complexe way of
    going in to the system?....
  12. Adware Still Resides In My Computer After Removal Tool
    (6)
    I have picked up 13,856 adware infections on my computer, and I got them from erm... Downloading
    photoshop off limewire. At first, I got pop-upss like mad. Then I uninstalled the adware with the
    tool they gave ne. I am still getting popups. I need help badly, what should I do.....
  13. Spyware / Virus Removal Help Needed
    (10)
    Hey guys all of a sudden in the last two days my computer has just been attacked by all types of
    malicous software! and im not even kidding when almost instantly it went from running with out a
    hitch to so much slow down and so many pop ups i had to run avg. 648 virus and trojans! All
    deleted or moved to the vault, thought i was out of the woods than i ran adaware 202 Critical and
    malicous objects I deleted them then i ran adaware again got over a hundred bad things again after
    the restart and then ran adaware as well and after deleting over 1000 bad things I wa....
  14. DNS Hijack SearchAtHand.com Browser Result Removal
    this is a browser hijack and method of removing (6)
    Recently, I don't know when, I realized that my browser was opening some weird pages. It would
    either open to what it seemed to be a valid webpage but it always looked the same. But the contents
    will be text only but always with adult related links... so I was curious but never paid any
    attention since these pages were coming up only when I mistyped an URL address. But the pages
    popped up were always the same and it got me curious. So I started to click on refersh and see how
    far it will lead. At the end, it led to a site called "SearchAtHand.com" After few minutes ....
  15. Why Do People Trojan?
    (14)
    It is so retarded how people will send files with trojans attached, lucky for me, my antivirus is a
    king at detecting. But anyways, like 40% of averything i download has a trojan or keylogger, i mean
    come on. Why do you have to steal peoples accounts and know info about people, why cant they get
    there own lives? Just a warning, use caution, people attach trojans to alot of things. Get a good
    antivirus if you like to go on downloading sprees like me =P. I was looking one up online and it
    showed that you can look at the saved internet exploror passwords too. My Norton prot....
  16. Trojan Emits Bogus Google Adsense Ads
    Trojan Emits Bogus Google AdSense Ads (5)
    Trojan Emits Bogus; Google AdSense Ads A Trojan horse program is churning out bogus Google ads
    promoting products Google eschews—gambling, cheap Viagra, girlie photos and adult dating. The
    ads, being targeted at small publishers, are identical to Google AdSense ads except that referral
    graphic buttons are being converted to text, apparently due to a bug in the Trojan, according to the
    publisher who reportedly discovered the Trojan. That publisher, Raoul Bangera, told Techshout.com
    that the non-contextual and risqué content of the ads are what set them apart from....
  17. Sony Virus
    sony xcp software on cds (10)
    sony have been putting software ( called xcp ) on some of their audio cds. if you play these cds on
    your pc it automaticallyinstalls software on your pc. this software uses "rootkit" to hide the file
    from the user. here is a list of cds with the xcp software. QUOTE Trey Anastasio, Shine
    (Columbia) Celine Dion, On ne Change Pas (Epic) Neil Diamond, 12 Songs (Columbia) Our Lady Peace,
    Healthy in Paranoid Times (Columbia) Chris Botti, To Love Again (Columbia) Van Zant, Get Right with
    the Man (Columbia) Switchfoot, Nothing is Sound (Columbia) The Coral, The Invisible In....
  18. Install Two Anti-virus Software In 1 System
    Is it ok? (37)
    I found out that AVG Free version isn't eliminating even trojan viruses. I only have this free
    version from protecting my system. Is it okay to install one more anti-virus software on top of this
    AVG Free version which is already installed and updated to the latest version? I have the option of
    installing Norton Anti-virus 2005. Will it cause any problem since the two softwares may use the
    same source from the computer, if I install this one? Do you recommend that I should uninstall
    first the existing software and install the new one? Will Norton Anti-virus 2005 ....
  19. Get Rid Of Trojan Horse
    Think I got one.. (16)
    Hi everyone! I think I got the virus Trojan Horse, I have a Norton Anti-virus, and he
    detected the thing!!! He says its in the system32 directory, but he couldn't delete
    it. Does anybody knows how to get rid of this sh*t cause think it lowers my inet speed! and
    comp. performance. Thanks alot! xxx Moved to Security Issues area. Original post did not
    belong in tutorials section. ....
  20. Fastest Antivirus & Firewall Software
    (45)
    I did a clean install of Windows XP some time ago.. It returned to the fast speed and all
    animations were sleek... Only after I installed Norton AntiVirus and Norton Internet Security, my
    computer became slower then before... Startup now takes longer time and the computer seems to
    process something even the computer just boot into the desktop... Task Manager shows a jump of
    additional processes in the background... I understand that it's all normal to have Norton
    AntiVirus to run applications in the background to track virus every micro-second.. so does Norton
    Int....

    1. Looking for trojan, removal, software, removal

*RANDOM STUFF*





*SIMILAR VIDEOS*
Searching Video's for trojan, removal, software, removal

*MORE FROM TRAP17.COM*
advertisement



Trojan Removal - How to/Best software for removal



 

 

 

 

ADD REPLY / Got an Opinion! a humble request :-) RAPID SEARCH! Free Hosting [X]
Express your Opinions, Thoughts or Contribute your information that might help someone here.
Ask your Doubts & Queries to get answers.. "Together, We enlight each other!"
Register FREE for AD-FREE forum, Create your own topics, Ask Questions, track topics, setup subscriptions & notifications and Get a Free Website w/ Email and FTP.
500MB Space *No Ads*, CPanel, FTP, PHP, MySQL, EMails - 100% FREE