JS:fakewarn-D

Can someone please help me with this , my laptop have been infested with JS:fakewarn-D , i had the avast allready installed and running and all the sudden i started to get this messages that this Trojan had invaded my laptop , wont allow me to move it tho the chest or either delete it , can’t open any browser IE,Firefox or Googlechrome , can someone help me with this please

Why won’t it allow moving to the chest or delete, e.g. what is the error message ?

What Operating System are you using ?
If not win9.x or winME or 64bit OS, then I would suggest running a boot-time scan.

What avast version are you using 4.8 or 5.0 ?

If you haven’t already got this software (freeware), download, install, update and run it and report the findings (it should product a log file).

Don’t worry about reported tracking cookies they are a minor issue and not one of security, allow SAS to deal with them though. - See http://en.wikipedia.org/wiki/HTTP_cookie.
Also available a portable version of SAS, http://www.superantispyware.com/portablescanner.html, no installation required.

You obviously would have to download these on another system and save to a CD or USB and transfer to your laptop.

Hi thanks for your time David, and I’m sorry for the late reply and the bad IT skills and to top all that up the infected notebook is a Samsung NC10 but Polish version and all is software is also polish versions and my girlfriend English is not the best specially technical stuff therefore i do apologise for it allready

It opens the intrusion message and says that a Trojan horse been found ,

File: C:\Documents and settings.…\local settings/tempora

Name of parasite: JS:FakeWarn-D [trj]

Type of parasite: Con Trojan

Version VPS: 100801-0,2010-08-01

When i do click to move it to the chest or to delete it just nothing happens

The avast is the 4.8

I have just downloaded and copied the MBAM to a flash drive to install it but it wont allow me to do so , also wont let me access the control panel and other menus , as this keeps popping up with a security warning saying, that comes from this Antivir green icon that appeared at some time as i got the virus.

Application cannot be executed.The file wuauclt.es is infected.do you want to activate your antivirus software now?

What about if i do try to reformat the hard drive? is there any chance to erase the virus that way?

I’m running a scan boot now and will update results asap

Thanks for the time and attention

A format would erase it yes, but it really is an option of last resort and we are not there yet by some way. A format is a huge task as you would have to backup your important files, reinstall windows (and all the security updates) and all programs.

After the avast boot-time scan we will see if it was able to remove that rogue security application (fake alerts), it should be able to but there may be other underlying hidden (possible rootkit) or undetected malware.

Try downloading the portable version of SAS that I gave the link for as that doesn’t have to be fires installed.