Forum Home
Press F1
 
Thread ID: 57024 2005-04-21 10:48:00 Trojan wont go away. music_man (5482) Press F1
Post ID Timestamp Content User
347326 2005-04-21 10:48:00 Hi

I am running windows xp pro and I somehow got this trojan: Trojan horse collected.5.L.

It leaves msdirectx.sys in my documents and settings each time I boot up (I delete it each time). Avg won't update and msconfig and regedit wont start either. I think I saw (when I could) systeminfos.exe in startup in msconfig and in task manager (which also doesn't go) running services.exe.

It now won't launch test center for AVG Free so maybe it is getting worse. I think I had another virus but I can't check what the name of it was.

Kerio pops up asking for something to connect to my computer..

Sigh, time for a macintosh.

Any help please?

Thanks
music_man (5482)
347327 2005-04-21 11:04:00 You've run all your spyware removers?
How about Hijackthis?
pctek (84)
347328 2005-04-21 12:12:00 I downloaded it. But, would you believe, it didn't open!? :O. Sigh. I had a look at Kerio and systeminfos is connecting to some place; so that doesn't look too good. music_man (5482)
347329 2005-04-21 12:44:00 This is a very nasty worm by all accounts. Have you tried googling for it? This reference may help. discussions.virtualdr.com

You may have more luck trying to delete its files in safe mode.

Best of luck.
linw (53)
347330 2005-04-21 12:45:00 Try Stinger, it may help:

vil.nai.com
zqwerty (97)
347331 2005-04-21 12:57:00 Maybe one of these will help:

www.ramsinks.com
zqwerty (97)
347332 2005-04-21 19:26:00 YOU could also get a little prog called 'move on boot' and 'restrict app' the first deletes files before they get up an running during the boot process and the second is very useful cause you use it to stop files from running...... drcspy (146)
347333 2005-04-21 21:43:00 music man i think you found your own solution to your problem "sigh time for mac". plod (107)
347334 2005-04-21 23:33:00 Hi

Hijack this won't open. Thanks for your replies. It looks like quite a long task to delete this trojan. I don't fancy having someone browsing my computer with me... I suppose I should do an online scan on my dialup though I don't like to think how long it will take.

These companies must make a fortune by having the internet so insecure for windows users.
music_man (5482)
347335 2005-04-22 00:04:00 These companies must make a fortune by having the internet so insecure for windows users.

I'll re-phrase that.

"These companies must make a fortune by having Windows so insecure for internet users"

Remember the internet is just like streets and motorways, some houses you visit are of questionable nature, like the internet some web sites are also. You wouldn't leave your house unlocked and not alarmed these days, don't leave your "windows" open and insecure.
KiwiTT_NZ (233)
1 2