Member Panel


Sponsors and Ads

Join the Team

Live Tag Cloud

PC Forum PC Help Forum » Security & Safety » [Fixed] Hijackthis! Logs » Got a trojan notification yesterday

[Fixed] Hijackthis! Logs - Got a trojan notification yesterday posted in the Security & Safety forums; Hi, I'm new to this forum and it seems like quite a God sent for me at the moment. Here is my issue. After AVG scanned yesterday it located 12 ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 01-14-2008
Bronze Member
 
Join Date: Jan 2008
Posts: 15
PC Experience: Some Experience
crazyman - See this Members User comments on their Profile page
Default Got a trojan notification yesterday

Hi,
I'm new to this forum and it seems like quite a God sent for me at the moment. Here is my issue.
After AVG scanned yesterday it located 12 trojan horses in my old exe files (AVG logfile calls it - trojan horse PSW.generic5.agop).
The file was named editor_loader.exe which is located in directories where a 3rd party software is located ( a number of copies and different versions of this 3rd party software which allows me to reprogram my car's engine - LT1Edit )

AVG seemed to take care of the issue by putting these files in the virus vault, but today on startup these 12 trojans came back again along with more.

Attached is aHiJackThis! logfile.

Here are system specs:
AMD Athalon 3200
Asus A8N SLI motherboard
ATI 300SE 256M graphics card
Hapauge 1600 PVR (TV) card
Maxtor 200G HD
1G Ram
LaCie 500G backup drive (was turned off during all above)

I have not expereinced any different performance in my PC since seeing the trojan appear in AVG but I have been seeing ongoing issues since I put this PC together about 2 years ago.
Since 2 years ago on start-up I sometimes get a very long delay at the load XP screen and also randomly my maxtor HD does not get recognized at startup. Takes many reboots for the HD to be recognized eventually.
If any known solutions exist for that HD issue also, let me know.

Any help is greatly appreciated!

Thx in advance
Attached Files
File Type: log hijackthis.log (9.1 KB, 3 views)


  #2  
Old 01-14-2008
Bronze Member
 
Join Date: Jan 2008
Posts: 15
PC Experience: Some Experience
crazyman - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Oh yeah,
1)Please advise on how to scan my backup drive also
and
2)The editor_loader.exe file will be needed for any future installs. Is there a way to fix this file?


  #3  
Old 01-14-2008
Senior Security Analyst
 
Join Date: Dec 2006
Location: In a van, down by the river
Posts: 547
PC Experience: Experienced
dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Hello crazyman,

There may be a variety of issues here. If you have had issues since building the system, there may be some hardware compatibility issues.

Click Start>Control Panel>Add/Remove Programs
Uninstall MyWebSearch

Where did you get the program "editor_loader.exe"?

What are you trying to scan your backup drive with?

Thanks.


__________________
Steve
  #4  
Old 01-14-2008
Bronze Member
 
Join Date: Jan 2008
Posts: 15
PC Experience: Some Experience
crazyman - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Hi Steve,
I just removed MyWebSearch toolbar

Editor_loader.exe was a program I downloaded many years ago from a website. not sure who the author is. It has been run a few time in the past without issue.

I have the free version of AVG and was thinking of running a scan of the backup drive with it after I sort out the main drive.

Is there anything else I can do to ensure the virus is removed and files fixed?


  #5  
Old 01-14-2008
Senior Security Analyst
 
Join Date: Dec 2006
Location: In a van, down by the river
Posts: 547
PC Experience: Experienced
dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Could you please "zip" and email a copy of the program? I can submit it to other anti-virus companies to determine if it is indeed infected or if it is a false detection by AVG, I can then notify them to correct it. You should be able to select the drive or the "whole computer" to be scanned by AVG (I would have to look at the actual steps to do it)

Download SilentRunners.vbs
Unzip it to a permanent folder.
Read here how to unzip/extract properly:
Help removing and preventing spyware - Compressed folders XP
Start SilentRunners.vbs
When your antivirus is giving an alert, do not block this. Allow the script.
When the scan is done, notepad will open with a log in it. Please close this again.
I'll need that log later.
Normally that log is saved automatically in your silent runners-folder.
Attach the log it created.

Thanks.


__________________
Steve
  #6  
Old 01-15-2008
Bronze Member
 
Join Date: Jan 2008
Posts: 15
PC Experience: Some Experience
crazyman - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Here is the silent runners log.
But,
I can't seem to access the infected file to zip as AVG keeps saying it is infected and shuts me down from even locating it?
Even when I go to my backup drive that has not been scanned AVG shuts me down as soon as I open the folder where it resides.
Any ideas?

On a positive note when AVG did a scan today it found no viruses?
Can I believe this or should I investigate more?

Shawn


  #7  
Old 01-16-2008
Senior Security Analyst
 
Join Date: Dec 2006
Location: In a van, down by the river
Posts: 547
PC Experience: Experienced
dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page dahli - See this Members User comments on their Profile page
Default Re: Got a trojan notification yesterday

Are you able to disable AVG for the period of time while you access the file? This would be good to get analyzed so AVG does not delete valid files (if that is the case).


__________________
Steve

Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


All times are GMT +1. The time now is 05:35 PM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top
Myspace Layouts
We have loads of unique layouts to choose from

Credit Counseling
Credit Advisors can help you with credit counseling.

New York Hotel
New York hotel information and advice.