TROJ_DLOADER.WAP

hi,

currently my desktop was detected TROJ_DLOADER.WAP that cannot remove. this virus always cause my web browser point to others advertisement web that i not prefer to go. i try to use avast to scanned but result get nothing. so i tried to use Trendmicro house call and doing online scanning. it detected fews viruses, which is TROJ_DLOADER.WAP, ADWARE_FUNWEBPRODUCTS and HTTP COOKIES. all i was able to remove, but only TROJ_DLOADER.WAP, i still unable to clean it. please help…

Thanks.

Try bitdefender its another online scanner that removes viruses for free, also if you can submit the file to avast so they can add a definition for it

www.bitdefender.com/scan8/ie.html - this is the online scanner (double check you meet its requirements first though)

If you can download stuff try an anti-spyware like superantispyware to clean it

If that doesnt work let me know

edit: also http://support.f-secure.com/enu/home/ols.shtml - F-secure online scanner (appears to know this malware)

Why were you unable to clean it, e.g. what errors or warnings were given ?

If it was file in use by another program, etc.
If you have XP or Win2k, you could enable a boot time scan. Right click the avast icon, select Start avast! Antivirus, Menu, ‘Schedule boot-time scan…’ Or see http://www.digitalred.com/avast-boot-time.php

Or if it keeps coming back we have to find what is restoring or downloading it again.
What is your firewall ?

If you haven’t already got this software (freeware), download, install, update and run it, preferably in safe mode.

  1. If using winXP SUPERantispyware On-Demand only in free version. Or AVG anti-spyware (formerly Ewido) Resident scanner during trial On-Demand after trial ends. Or Spyware Terminator Resident scanner. Or a-Squared free On-Demand only with free version(if using win98/ME).

I suggest:

  1. Disable System Restore and reenable it after step 3.
  2. Clean your temporary files.
  3. Schedule a boot time scanning with avast with archive scanning turned on.
  4. Use AVG Antispyware; SUPERantispyware and/or Spyware Terminator to scan for spywares and trojans. If any infection is detected, better and safer is send the file to Quarantine than to simple delete than.
  5. Test your machine with anti-rootkit applications. I suggest AVG or Trend Micro RootkitBuster.
  6. Make a HijackThis log to post here or, better, submit the RunScanner log to to on-line analysis.
  7. Immunize your system with SpywareBlaster or Windows Advanced Care.
  8. Check if you have insecure applications with Secunia Software Inspector.