Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old July 18th, 2004, 03:14 PM
raluka's Avatar
raluka raluka is offline
Infrequent Poster
 
Join Date: Apr 2004
Location: bucharest
Posts: 1
Default i`m having prob with trojan.bookmaker.gen

I`m having this trojans and i don`t know how to get off..i try with norton but he coudn`t fix or delete him..pls helpundefinedundefined
__________________
raluka
  #2  
Old July 19th, 2004, 05:51 AM
TonyKlein's Avatar
TonyKlein TonyKlein is offline
Security Expert
 
Join Date: Feb 2002
Location: The Netherlands
Posts: 3,947
Default Re: i`m having prob with trojan.bookmaker.gen

I suggest you start by doing the following:

Download the latest version of Ad-Aware at http://www.lavasoftusa.com/support/download/

After installing AAW, and before running the program, you NEED to FIRST update the reference file following these instructions.

Now do the following:

- Under Ad-aware 6 > Settings (Gear at the top) > Tweak > Scanning Engine:
check: "Unload recognized processes during scanning."

- Under Ad-aware 6 > Settings (Gear at the top) > Tweak > Cleaning Engine:
Check: "Let Windows remove files in use after reboot."

Press "Scan Now"

- Check option "Use Custom scanning options"
- Check option "Activate In-Depth Scan"
- Press "Select drives\folders to scan"
- Select the active partition which is usually C:

Now press "Next" to let Ad-aware scan your drives...
It will find a number of "bad" files and registry keys.
Right-click in that pane and choose "select all"

Now press "Next" again.
It will ask you whether you'd like to remove all checked items. Click OK.

Finally, close Ad-Aware, and reboot.
That ought to get rid of most of your spyware.

When you've done all that, go to http://www.wilderssecurity.com/showthread.php?t=12516 and download Hijack This.

Unzip to a folder other than your Desktop or the Temp folder, doubleclick HijackThis.exe, and hit "Scan".

When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, save the log somewhere, and please show us its contents.

Most of what it lists will be harmless or even required, so do NOT fix anything yet.
Someone here will be happy to help you analyze the results.
__________________
Tony < > CLSID List - A Collection of Autostart Locations
  #3  
Old July 19th, 2004, 10:35 PM
clueless clueless is offline
Infrequent Poster
 
Join Date: Jul 2004
Posts: 1
Default Re: i`m having prob with trojan.bookmaker.gen

To TonyKlein, I had a bunch of viruses on my PC, I have an up to date Window XP Professional w/Service Pack 1, all Symantec updates, Spybot (that’s how I found my first problem – DSO Exploit in registry key 1004). Now on you advice I got Ad aware 6, that found 23 other problems, 2 registry viruses and one folder. Got rid of the 23 files but kept the registries in tact for now (so I’ll know what I had on my PC before I delete them).

I have a simple question. I keep getting a live warning from Symantec that I have a Trojan.backdoor virus in the file C:\WINDOWS\SYSTEM32\COMJ.DLL What do I do?
  #4  
Old July 20th, 2004, 06:31 AM
TonyKlein's Avatar
TonyKlein TonyKlein is offline
Security Expert
 
Join Date: Feb 2002
Location: The Netherlands
Posts: 3,947
Default Re: i`m having prob with trojan.bookmaker.gen

Quote:
Originally Posted by clueless
I have a simple question. I keep getting a live warning from Symantec that I have a Trojan.backdoor virus in the file C:\WINDOWS\SYSTEM32\COMJ.DLL What do I do?

Would you please start a topic of your own, instead of 'piggybacking' on this one?

It's impossible to help two people within the same topic....
__________________
Tony < > CLSID List - A Collection of Autostart Locations
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 11:03 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums