Help...Finding trojan-gen's on my computer?! What to do? :(

I’ve been using avast to try and fix my virus/worm problems for a few days now. It scanned a number of times and read as clear for about one day, and now it’s finding more trojans & says they have been deleted, but they seem to keep returning some how. I’m not sure how to get rid of them once and for all. Do I need to reformat or something?

Here’s what it came up with most recently when I did a virus scan w/ avast:

C:\system volume information.…\A0067500.dll Infection:win32:Trojan-gen {other} File was successfully deleted…
C:windows\system32\iaiktvim.dll Infection:win32:Trojan-gen {other} File was successfully deleted…

What do I need to do to get rid of these things? It claims they’re gone, but they seem to return again and again…hmmmm?

Also, on my desktop, it’ll scan until clear and then come up later on saying this from windows security center :

Security center alert:

To help protect your computer, windows firewall has blocked some features of this program

Name: win32.Zafi.B
risk level: high
Description: zafi.b is a worm trojan program that records keystrokes & takes screenshots of the computer, stealing personal financial information.

Windows firewall has detected unauthorized activity, but unfortunately it cannot help you to remove viruses, keyloggers and other spyware threats that steal your personal information from your computer.

(then beneath it says click here to download and activate protection)

Then it takes me to a page, but I don’t know what it is because I think I tried clicking before and it didn’t do anything to help me and didn’t seem like it was correct, I’m wondering if this popup is a virus itself somehow?? I have no idea.

I could reallyyyyyy use some help, as I don’t know what to do or how to stop either of these problems…I tried avast and apparently things keep coming, and I’ve tried some other programs as well…but still things like this are coming up.

Any help would be greattttlyyyy appreciated! Thank you! :slight_smile: :-\ :-X ??? >:(


Welcome to the forums, Jenn. :slight_smile:

Please download HijackThis from the link below. Do not download HJT to the desktop but instead download it into it’s own folder on the hard drive.

Run the program but do not make any fixes and then post the log results using the “copy & paste” method. It will probably take more than one post to be able to get the complete log posted.

OR, you can post it as an attachment to your post by clicking on “Additional Options…” below left of the posting box. Someone will review your log and then offer help.

http://filehippo.com/download_hijackthis/


Ok, I’ve installed it into c drive…ran the scan, I’ve attached the log results. :slight_smile:

Aaand thank you for helping me out. :slight_smile:

Oh, I forgot to mention I’m on my laptop now, so the posted log is only the log from scanning my lalptop. My desktop is the one with the win security center popup junk…but I’ll have to make that into it’s own project later on & focus on this one first I suppose.

Please also note that I have done the boot time scan on both my laptop and desktop, and the laptop is the one coming up with whatever is on the log I just attached on my post above…and that was still coming up with the trojan-gens, so for now I’m only talking about that log attached for the lap top, lol!

Arghh. :S

The HJT logs shows you have Antivirus 2009,bfoe you fix anything using HJT, it might be a good idea to download MalwareBytes Antimalware and SuperAntispyware, update and scan.

http://www.bleepingcomputer.com/malware-removal/uninstall-antivirus-2009

http://www.malwarebytes.org/mbam.php

http://www.gt500.org/malwarebytes/database.jsp

http://www.superantispyware.com/

Please post the logs from MBAM SAS and another HJT

http://www.superantispyware.com/definitions.html

If the malware blocks you from downloading/ installing, you could use another pc to download programs and updates.MBAM can be installed in safe mode ( f 8 key )

Please post the logs from MBAM SAS and lastly HJT


Thanks for stepping in, Micky. I was away for a while.

Hopefully, Jenn will post the new logs soon.


I did feel i was jumping in a bit ( sorry ). Either you stay up very late, or get up very early. ;D ;D