Question:

I have a trojen on my laptop what can i do??

by  |  earlier

0 LIKES UnLike

OMG my friend just put a memory stick onto my laptop and avast just tolt me i have a trojun, i have no other anti virus on it, what can i do, im so worried now...can someone please tell me what i have to do to get rid of it?

im not really good at this sort of thing as you can tell, is my laptop in severe trouble now if i dont yet have an inti virus to shift it?

feel free to mail direct if you need any more info

thanks.

 Tags:

   Report

13 ANSWERS


  1. Run anti-malware to bomb the trojan


  2. System restore

  3. try and use avast to delete it, if not use download avg and use that, and then if all else fails restore/repair and/or reinstall

  4. if your laptop appears any information about the advertisement, whatever.. maybe it`s a virus. Need to reinstall window is ONE the best way than using Antivirus!

  5. if avast caught it you should be ok, run a scan in safe mode to see if it picks anything up

  6. Download AVG 8.

  7. download AVG free edition and do a scan then it will remove it for you  

  8. Avast is one of the better systems,

    however if you want to double check that it has gone,

    do an on-line scan,

    it will deal with anything it finds you do not need to download any other anti virus system..

    click on the link below to take you to it...

    http://www.bitdefender.com/scan8/ie.html

    .


  9. you have been infected with some kind of malware. Unfortunately, if you find one infection, it is highly likely you have another one. A virus, trojan or worm are all different types of infections/malware and there are some great FREE programs that can help you.

    First, clean up (delete) your cookies, temp files and temporary internet files. I prefer to use Ccleaner (available at www.filehippo.com) to do this, rather than the built-in DISK CLEANUP, as I feel it does a much more thorough job - for example, it will clean out the index files on your next reboot.

    If you want to use Disk Cleanup, you can find it if you:

    - Double-Click on My Computer to open it up

    - RIGHT-click on your C: drive

    - Choose PROPERTIES and then click on the DISK CLEANUP button

    - When done, reboot your computer.

    Delete these files daily or run Ccleaner every day right before you shut your computer down.

    2 - You should also have a good anti-virus program to help protect your computer. AVG FREE is an excellent anti-virus program, which can be downloaded from www.download.com. You might also choose Avast or Avira, both also free programs from www.download.com.

    3 -Since NONE of the anti-spyware/anti-adware programs are 100% accurate in finding and removing spyware, you need at least two programs which you will run one after the other, not at the same time.

    There are three excellent free ones:

    --Spybot, Search and Destroy

    --Ad-Aware

    --Spyware Blaster

    All are available FREE from www.download.com

    You will need to download, install, update (and IMMUNIZE in Spybot) and run them, one at a time. Be careful with the NAME of these programs - there are "look-alikes" with very similar names, that are in fact spyware themselves! Reboot after you install each one!

    After this current infection is cleared up, be sure to run both of the above programs at least once a week if you are on the internet frequently and/or like to download music or files.

    NOTE: Some infections prevent your from downloading the above programs. You may have to use a clean computer to download the programs and copy them to a thumb drive or CD. Then transfer the install files to the infected computer and run.

    --Occasionally you will not be able to run these programs without being in SAFE MODE. To get there, reboot your computer and tap the F8 key, repeatedly until a menu comes up. You want to choose SAFE MODE WITH NETWORKING.

    4 -You should also have a good firewall to help protect your computer. Zone Alarm makes a totally free version (watch you don't download the 30-day free trial of the paid version). You can download this from the manufacturer at www.zonelabs.com

  10. 1) Download SDFix and save it to your Desktop.

    Double click SDFix.exe and choose Install to extract it to its own folder on the Desktop. Please then reboot your computer in Safe Mode by doing the following :

        * Restart your computer

        * After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;

        * Instead of Windows loading as normal, the Advanced Options Menu should appear;

        * Select the first option, to run Windows in Safe Mode, then press Enter.

        * Choose your usual account.

        * Open the extracted SDFix folder and double click RunThis.bat to start the script.

        * Type Y to begin the cleanup process.

        * It will remove any Trojan Services or Registry Entries found then prompt you to press any key to Reboot.

        * Press any Key and it will restart the PC.

        * When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.

        * Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt.

        * Finally copy and paste the contents of the results file Report.txt back onto the forum with a new HijackThis log

    2) Careful that you get the correct service:

    Disable the Service

    Click Start > Run and type services.msc

    Scroll down to Command Service and right click on it.

    Click Properties and under Service Status click Stop, then under Startup Type change it to Disabled.

    Delete the offending Service

    Open HijackThis and click Config -> Misc Tools -> Delete an NT service.

    In the Delete window, type (cmdService) and press OK.

    OK any prompts, close HijackThis, and restart your computer.

    3) Turn off TeaTimer, it will black changes we must make:

    http://russelltexas.com/malware/teatimer...

    4) Start > Control Panel > Add Remove programs and uninstall DeluxeCommunications if there. Please uninstall any other programs you know do not belong there, if you are unsure let me know and I will look.

    5) Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.c...

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.c...

    R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll

    O2 - BHO: (no name) - {6DC25841-9CD6-E455-80FB-B6693F8CDCB3} - C:\WINDOWS\system32\dsozhfmd.dll

    O2 - BHO: DeskbarBHO - {A8B28872-3324-4CD2-8AA3-7D555C872D96} - C:\Program Files\Deskbar\deskbar.dll

    O4 - HKLM\..\Run: [keyboard] C:\\kybrdff_e48.exe

    O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe

    O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe

    (you can remove the next two restrictions if you wish)

    O6 - HKCU\Software\Policies\Microsoft\Interne... Explorer\Restrictions present

    O6 - HKCU\Software\Policies\Microsoft\Interne... Explorer\Control Panel present

    (if you did not set the advanced option, you can remove it)

    O11 - Options group: [INTERNATIONAL] International*

    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcaploader...

    O20 - AppInit_DLLs: dxclib303562752.dll

    O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\TW9uaWNhIEdyZWdvcnk\command.e...

    O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe

    Close all programs but HJT and all browser windows, then click on "Fix Checked"

    RIGHT Click on Start then click on Explore. Locate and delete these items:

    c:\nwnmff_e48.exe <<< delete the file

    C:\\kybrdff_e48.exe <<< delete the file

    C:\WINDOWS\TW9uaWNhIEdyZWdvcnk <<< delete that folder

    C:\Program Files\DeluxeCommunications\ <<< delete that folder

    Run ATF-Cleaner again, you can skip Prefetch this time, see this tutorial:

    http://forums.security-central.us/showth...

    Follow the instruction in this link: http://www.virusvault.co.uk/fusionbb...i...

    Restart the computer and post the Report from SD fix, the results of the spyware scan and a new HJT log.

    If you still face the same then please PM me I will help you to sort that problem

  11. Do not worry about it ,a trojan is only an info miner,it won,t spread and any decent  anti virus will remove it.HOWEVER!!!! It could be a false positive,is the AVAST your own program in your laptop ?This is why you never use free registry cleaners and anti spy scans off the internet websites,almost every one will show an infection or a whole alarming raft of them,which were not there before to con you into buying the program.

  12. the best thing to do is to get a kaspersky antivirus soon it will eliminate any viruses that you have

    good luck in getting rid of it

  13. If you have Avast - then you have anti virus - that is what Avast is - follow the instructions for removal

Question Stats

Latest activity: earlier.
This question has 13 answers.

BECOME A GUIDE

Share your knowledge and help people by answering questions.
Unanswered Questions