| Forum Home | ||||
| Press F1 | ||||
| Thread ID: 52018 | 2004-12-07 05:37:00 | Removing Katien.backdoor from computer | Vikt (6510) | Press F1 |
| Post ID | Timestamp | Content | User | ||
| 300417 | 2004-12-07 05:37:00 | Kia ora, I have katien.backdoor on my computer , according to AVG which is updated and i check frequently to see the state of things. I have microsoft ME operating system. I have followed instructions once before to remove a virus while in safe mode however my efforts so far have been fruitless as the other instructions I have found don't seem to fit with ME. Help please. Vikt |
Vikt (6510) | ||
| 300418 | 2004-12-07 06:06:00 | easiest way would be to utlise another scan/clean program called A2 here (www.emsisoft.com) They were known as anti-trojan, but changed to emsisoft last year. They list that trojan as one it cleans. | Pheonix (280) | ||
| 300419 | 2004-12-07 06:16:00 | Hi Vikt - I found this (www.trendmicro.com) on the Trend micro site - looks like it may help - incl the automatic removal option via the Damage Cleanup Engine - pls remember to disable system restore as is refered to in the FAQ on removing virii/ spyware . Good luck and post back about how you get on . | KatiMike (242) | ||
| 300420 | 2004-12-07 06:27:00 | Pest Patrol Katien.n (pestpatrol.com), Katien.c (www.pestpatrol.com), and a couple of others. So, looks like there are a few variants of this beastie, the removal instructions from Symantic differ a bit from Pest Patrol's. Does AVG identify the the variant? If so follow the removal for your particular one. Where is AVG finding it? |
Murray P (44) | ||
| 300421 | 2004-12-08 07:59:00 | Kia ora Murray, Thanks for your reply. AVG calls it Trojan horse Backdoor Katien.A and offers to heal it or move it to the virus vault. For this Katien it recommends virus vault , but then it sends the message box saying that the file cannot be removed. In subsequent scans it always comes up as still infected. The file AVG identifies is C:\_RESTORE\TEMP\A044959.CPY Iwill check symantecs ideas. Pest Patrols' didn't help too much. Your information is appreciated. Vikt |
Vikt (6510) | ||
| 300422 | 2004-12-08 08:03:00 | >The file AVG > identifies is C:\_RESTORE\TEMP\A044959.CPY > Iwill check symantecs ideas. Pest Patrols' didn't > help too much. This shows that the virus is trapped in a System Restore point on ME. You need to purge all your previous restore points by turning off System Restore, rebooting the machine, and then re-enabling System Restore. This doesn't show that you are currently actively infected, but if you roll you system back you can reintroduce the virus. |
Jen C (20) | ||
| 300423 | 2004-12-08 08:03:00 | Kia ora Pheonix, I'm checking out the a2 site, heres hoping. Thanks. Vikt |
Vikt (6510) | ||
| 300424 | 2004-12-08 08:26:00 | Well that worked a treat Jen C. Thankyou for that good advice. My AVG scan comes up clean. I'm happy. Cheers, Vikt |
Vikt (6510) | ||
| 1 | |||||