Hello
My Avast scanner has detected 2 viruses Trojano-079(tri)
and Daemonize B (tri)
How are they “transmitted”, what damage do they do and how do I remove them?/
All help appreciated
i googled them and did not find anything. scan with trend and give me the names of the viruses it finds. i can look them up in the trend virus encyclopedia
Hi,
what WIN do you have ? Are all ServicePacks and Windowsupdates applied ?
Please give the FULL & EXACT virusnames as told by avast … &
where exactly was the infected File found (full path/folder/filename, e.g. c:\Windows\system32\virusfile.exe) ?
(see avast’S report/log)
Sometimes it’s enough to
- clear all TEMP-folders (via drive CleanUp AND best also manually)
- empty Temp.Int.Files folder(s) (via IE->Extras-Internetoptions->Delete files, including OFFLINE files) and
- empty java-Cache or
- disable system restore on Win ME/XP ( http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.htm )
to get rid of it…
test the file with OnlineScanners e.g. from Trend, RAV & KAV (see below) to get a more specific name
(you need to temporarily pause AV-Resident Shield/Monitor/Guard to be able to scan the file online)
(If they all don’t show it as infected, please send it in a password-protected zip-file to
virus@free-av.de/virus (at) asw (dot) cz
Include the Zip-password and a link to this posting in the mailtext)
spybot, ad-aware and cwshredder might also help
see www.lurkhere.com ->nicefiles and www.lavasoft.de
-remove the Virus/Malware and it’s system modifications according to VirusInfos
from Avast, VGREP, TrendMicro, Kaspersky;
you might also try searching for the virus name or filename with google
general removal procedure:
- disable system restore on Win ME/XP
- kill respective Backdoor/Trojan process with task manager
- search for the file/process names in the registry; remove the malware’s startup entries in the registry
- disinfect or (if disinfection is not possible) delete the file; this may be possible only after a reboot
if you still can’t remove it, you could post a logfile of Hijackthis here
-Secure your system:
change passwords, secure shares, install patches/updates for WIN&IE;
disable ActiveX and Scripting in IE except for know secure sites - and better use a secure browser like Opera or Mozilla
- scan your whole system with updated avast and maybe a 2nd scanner ,e.g. TrendMicro/RAV to check whether your PC is clean
- If needed, reenable system restore on Win ME/XP
Further Details and Links via the board search above
Dear Summoner Yuna and whocares
Thanx for your replies
I will follow your tips and get back to you
stan1962
Scanned with trend which detected Troj-Daemoz.a
Downloaded lots of removal tools and eventually got rid of it
One removal tool mentioned Shorty trojan dropper
and I also think some spyware had also been left as part of the trojan
so I think this was probably for spamming purposes
Thanx for advice