Unsolved
This post is more than 5 years old
2 Posts
0
3770
August 24th, 2004 20:00
Help! Trojan horse Backdoor.Agent.BA
I have a 2400 Dimension desktop running Windows XP home edition. My AVG antivirus software picked up a Trojan horse virus but my Norton did not, Norton is not currently running. When I tried to delete the virus I was unable to eliminate it. The location of the virus is C:\windows\system32\logi.dll. I have noticed on the boards that there are several other similar but different backdoor viruses in different locations than mine, that the recommended fix to the problem is to disable System Restore. Would this same fix work on this Trojan horse?
No Events found!


pskelley
933 Posts
0
August 25th, 2004 01:00
I can tell you that it is certainly not a good policy to run two AV programs on your computer at the same time, and offer this recent post by ChrisRLG:
ChrisRLG response to Dell Posters
Lots of the regular posting anti-malware experts on this board have moved to pastures new for various reasons. You may find it better to find another support site to assist you.
Please go to this link and choose one of the websites on the left of the page.
Alliance of Security Analysis Professionals: http://www.a-sap.org/
As you can see they all work together in cleaning malware (Virus, Spyware and adware).
To help you choose from that list
TomCoyotes contains the anti-malware school - Classroom.
SpyWareInfo contains the anti-malware school - BootCamp.
Net-Intergration is the support site of Spybot S&D.
Lavasoft Support is the support site of Ad-aware.
Wilders Security has since stopped hijackthis log support due to the lack of experienced helpers.
Others that I would recommend Zerosrealm, Subratam.org, SpyWare BeWare and ComputerCops, but generally all those on that list will have experts to help you.
Texruss and ChrisRLG are Teachers at The TomCoyote Forum.
There are still some knowledgable people left posting here at Dell, so you may still get help from them.
I wish you all the best at getting your computer clean.
pskelley
in training at
TomCoyote and
SpywareInfo
jwatt
4.4K Posts
0
August 25th, 2004 02:00
That's needed if the malware/virus has found its way into the system restore data. It can't be removed from there, and if a system restore were performed, the malware/virus could be brought back. Those are recognizable if the virus/malware is found in a subdirectory of "System Volume Information".
Here's a Microsoft article on System Restore that you may find helpful.
Jim