PDA

View Full Version : Trojan Horse Generic 14.AKTH



charles05
2009-09-08, 17:10
I believe that I the Spybot will not open because I have picked up a Trojan Horse Virus.

I have downloaded the suggested two files:
Download #1 http://www.spybotupdates.biz/files/rootalyz-0.3.4.47.zip
Download #2 www.gmer.net (http://www.gmer.net)
Attached are two files of the results of scanning with Download #1 and Download #2 listed above.
I am sending this to you as you requested.
Thanks for your help.

--------------------------------------------------------------------------------
From: Team Spybot
To:
Sent: Monday, September 7, 2009 1:11:36 PM
Subject: Re: Other reason (see below) (Ticket: 680334224)

Hello,

Please try to rename the SpybotSD.exe into explorer.exe and try to run it.

* Using Windows Explorer navigate to:
o C:Program FilesSpybot - Search & Destroy
* In the Tools menu select Folder Options…
* In the Folder Options dialog select the View tab.
* Uncheck the following option:
o Hide protected operating system file (Recommended)
* Click the Apply button.
* Click the OK button.
* The SpybotSD.exe should be visible now.
* Rightclick the file and choose rename.
* Give it a different name like explorer.exe and try again to run it.

If this does not help this problem you experience may be caused by an infection. Just to make sure you are not infected with a rootkit, please run a scan for rootkits. Rootkits are a technology that is more and more often used by malware to hide themselves on system level, making themselves invisible to standard tools. Our RootAlyzer shows you anything that uses certain rootkit technologies, even if it's not in Spybot-S&Ds detection database.

The RootAlyzer is a single tool which goes through the file system, the registry and process related lists. When you start RootAlyzer, it performs a very quick scan of a few important places, taking about a second on modern machines. To check the full system, you have the possibility of choosing a Deep Scan.

Currently, the RootAlyzer is a work in progress (with a new project tools category in our forum to track bugs and feature requests), but it's already helping to easily locate most of the current malware rootkits. It is compatible with Windows NT/2000/XP/2k3 and Vista. If you like to check out the new RootAlyzer you will find it in our forum: http://forums.spybot.info/showthread.php?t=24185

Here is also the direct download link: http://www.spybotupdates.biz/files/rootalyz-0.3.4.47.zip

Please set your computer to show all files.
* Double-click My Computer.
* Click the Tools menu, and then click Folder Options.
* Click the View tab.
* Clear "Hide file extensions for known file types."
* Under the "Hidden files" folder, select "Show hidden files and folders."
* Clear "Hide protected operating system files."
* Click Apply, and then click OK.

Please select the tab 'deep scan' and let it fully scan your Pc. The scan will take a moment, please be patient. After the scan is done please click on 'pack suspicious files' which is located right at the bottom. This will create a .cab file on your desktop which contains the log and the suspicious files the scan has found. Please attach this .cab file to your next mail.

Please also download gmer: www.gmer.net (http://www.gmer.net) and let it do a full scan on your Pc. Subsequent you will be allowed to save the log created during the scan. Please also send us this log.

Thanks! ;)
--
Best regards,
Norma
Team Spybot

----------------------------------------------------------
Spybot-Search & Destroy Home: http://www.spybot.info
Spybot-Search & Destroy Forum: http://forums.spybot.info
..........................................................
All incoming and outgoing mails are scanned
using an up-to-date anti-virus application.
----------------------------------------------------------

drragostea
2009-09-09, 03:42
:red: I don't think you've uploaded the 'logs'.
But for the meantime, I'd suggest that you respond to that email and attach the logs as requested.