Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old September 17th, 2004, 01:44 PM
beerman765 beerman765 is offline
Infrequent Poster
 
Join Date: Aug 2004
Posts: 6
Question i got trogans. damn

i need help to get rid of
downloader.gk
downloader.jh
  #2  
Old September 17th, 2004, 01:59 PM
bigc73542's Avatar
bigc73542 bigc73542 is offline
Retired Moderator
 
Join Date: Sep 2003
Location: SW. Oklahoma 28.360USB, 27.385LSB, 147.255+
Posts: 23,602
Default Re: i got trogans. damn

you might find some useful info here or here you should be able to disenfect useing the panda active scan panda
__________________
The Only Safe Computer Is Unplugged
MEMBER ASAP since 2004
Alliance of Security Analysis Professionals
  #3  
Old September 18th, 2004, 03:52 PM
beerman765 beerman765 is offline
Infrequent Poster
 
Join Date: Aug 2004
Posts: 6
Default Re: i got trogans. damn

i tried panda scan but it didnt get rid of them.
  #4  
Old September 18th, 2004, 05:59 PM
Blackspear's Avatar
Blackspear Blackspear is offline
Global Moderator
 
Join Date: Dec 2002
Location: Gold Coast, Queensland, Australia
Posts: 15,114
Default Re: i got trogans. damn

Hi Beerman765, try the following:

Step 1. Install Zone Alarm (free) – Firewall with visual outgoing alerts to see what is trying to access the internet.
http://www.zonelabs.com


Step 2. Download Stinger: do NOT run this YET.
http://vil.nai.com/vil/stinger/


Step 3. Download Ewido – Anti-Trojan Software, Install and update it. do NOT run this YET.
http://www.ewido.net/en/


Step 4. Turn OFF System Restore, this process depends on your operating system:


Windows XP Instructions

1. Right click on the "My Computer" icon on the Windows desktop
2. Click "Properties"
3. Click on the "System Restore"
4. Place a tick in "Turn off System Restore on all Drives"
5. Click OK
6. Close and restart your system.


OR


Windows ME Instructions

1. Right click on the "My Computer" icon on the Windows desktop
2. Click "Properties"
3. Click on "Performance"
4. Click "File system"
5. Click "Troubleshooting"
6. Check "Disable system restore"
7. Click on OK
8. Close and restart your system.


Step 5. Delete your TEMP files by doing the following: open up Internet Explorer> Tools> Internet Options> General TAB> Temporary Internet Files> Delete Files> Delete All Offline Content.


Step 6. Restart your system again in “SAFE MODE” by pressing/tapping F8 while booting up


Step 7. Run a scan with your current Anti-virus program – MAKE SURE IT IS FULLY UP TO DATE with the latest virus signatures.


Step 8. Run a scan with “Stinger” the program you downloaded above.


Step 9. Run a scan with “Ewido” the program you downloaded above.


Step 10. Reboot your system into normal mode.


Step 11. Run a further online scan found here: http://housecall.trendmicro.com/


When everything is clean, it is recommended that you turn System Restore back on.


Step 12. Install update and run the LATEST Spybot Search and Destroy (free) – Spyware removal and protection, with registry monitor.
http://beam.to/spybotsd


Step 13. Install update and run the LATEST Adaware (free) – Spyware removal. What Spybot Search and Destroy doesn’t pick up, this will.
http://www.lavasoftusa.com


Step 14. Install and run CWShredder available here:
http://www.wilderssecurity.com/showthread.php?t=14086


Step 15. Make sure your Windows is FULLY up-to-date by doing the following: While on the Internet, Click on Internet Explorer (the Blue “e”), Click on Tools (on the bar at the top of your screen in Internet Explorer), Click on Windows Update. This will take you to the Microsoft Windows Update page where you need to follow the on screen prompts, starting with “Scan for Updates”. Install ALL “Critical Updates” and “Service Packs”.

WEEKLY – check this is “Up to Date”.



REPEAT ALL THE ABOVE STEPS, this time EVERYTHING should come up clean…



IF the above does NOT fix your problem please download and run Hijack This found here:

http://www.wilderssecurity.com/showthread.php?t=12516


and post your log at one of the forums found here:

http://a-sap.org/


Keep in mind the following quote:

Quote:
Originally Posted by LowWaterMark
The two bigger forums for HijackThis log processing, (meaning they process more log threads each day than most others) are: SpywareInfo.Com and ComputerCops.Biz. Be sure to read their posting policy in the links at their log review forum sections prior to posting.


For the most part what I have suggested fixes the greater majority of problems out there...


When your system is clean you may want to take a look here:

http://www.wilderssecurity.com/showt...4&page=1&pp=25

for further discussion on security and how to make your system that much stronger.


and here for more discussions:

http://www.wilderssecurity.com/showthread.php?t=43117


Hope this helps…

Let us know how you go…

Cheers
__________________
"Illegitimis non carborundum"
translation:
"Don't let the bastards grind you down"
U.S. General Joseph W. "Vinegar Joe" Stilwell (1883-1946)
Two Photographers
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 05:11 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums