I keep getting threat has been detected. I am infected with this and it won’t remove… Please Help. I don’t know what to do… The win32:DNSChanger-vj, Windows\assembly\temp\u keeps popping up. I need help, tell me what to do please
I suggest:
- Clean your temporary files.
- Schedule a boot time scanning with avast with archive scanning turned on. If avast does not detect it, you can try DrWeb CureIT! instead.
- Use Comodo Cleaning Essentials (CCE), or MBAM, or SUPERantispyware to scan for spywares and trojans. If any infection is detected, it is better and safer to send the infected file(s) to quarantine (Chest), rather than simply deleting them.
- Test your machine with anti-rootkit applications. I suggest avast! antirootkit or Trend Micro RootkitBuster.
- Read these instructions and provide more info with the logs generated. But, please, do NOT post there, open a NEW thread for your specific problem and help us to help you.
- Clean your Hosts file (replacing it) with HostsMan tool.
- Disable System Restore and then reenable it again.
- Immunize your system with SpywareBlaster.
- Check if you have insecure applications with Secunia Software Inspector.
If the infection avoids booting the computer, take a look here http://forum.avast.com/index.php?topic=79107.0
I wouldn’t start using other tools with this, except under qualified guidance, as with some variants of this malware, incorrect removal could harm your system:
- This needs further analysis by a malware removal specialist:
Go to this topic http://forum.avast.com/index.php?topic=53253.0 for information on Logs to assist in cleaning malware. Use the information about getting and using the logs attach the logs here, not in the LOGS topic.