Question about Microsoft Windows XP Professional With Servise Pack 2 (e8503040) for PC

5 Answers

My AVG cant remove a Trojan horse -how can I get rid of it?

I have AVG shield but it cant remove a multiple threat Trojan horse backdoor.generic11.axrp. my computer has just been infected and shield cannot locate the infected files and cannot remove them. Location appears to be in my local settings\application Data\Xenocode\sandbox\spoon sandbox 3.4.0.2.Spoon Sandbox. Threat is multiplying every 2 minutes.

What should I do?
Gillian

Posted by on

5 Answers

  • Level 2:

    An expert who has achieved level 2 by getting 100 points

    MVP:

    An expert that got 5 achievements.

    Vice President:

    An expert whose answer got voted for 100 times.

    Sniper:

    An expert who has posted more than 50 answers, of which 90% or more were rated as helpful.

  • Expert
  • 168 Answers

Well be glad i saw your problem, coz we're gonna fix it for ya. Keep in mind you are going to have to install some new software and be patient, this will take a bit of your time.

Step 1.

a lot of people don't realize that over 90% of Trojans write themselves into your system restore function. So the first thing to do is disable your system restore.
To do this:
1. Right click on My Computer / properties
(this will open your system properties)

2.
Click on the System Restore Tab - now check the box beside "Turn off System Restore on all drives"
Press Apply then OK

3.
The Software you need to Download:
Go to www.filehippo.com
search for SpyBot Search & Destroy & Malwarebytes' anti-malware, Also Download CCleaner.
now download and install all programs.

4.
Now update all applications

5.
Now lets reboot into "Safe Mode"
For most computers Hit Start / turn off computer / restart - as soon as computer boots press F8 (you can check the safe mode boot up procedure, (Start/ Help & Support / search for safe mode)

6.
When the Safe Mode screen starts select "start in Safe Mode"

7.
When windows loads up completely hit Start then start spybot search & destroy and follow the directions to begin the scan. Do the same for Malwarebytes' anti-malware.

8.
Let the scanners run their course then remove anything that is found. SInce you are in safe mode it should remove everything with no problem.

9.
Now lets Reboot into Normal windows. Then lets run the CCleaner Program. The first Tab on the left reads "cleaner" and has a brush on it. Select that tab, on the bottom right click run cleaner.

10.
Now when that finishes select Registry Tab on the left. then select Scan for issues. When scan has finished select "fix selected issues" it will ask you if you want to backup Registry, say no, then press fix issues, then close. Run registry cleaner till nothing else shows up.

11.
You should be ready to go now, virus free. To make sure rerun all the scans we did previously. If their are some issues that could not be removed you will be notified (these are normally registry entries) you will then be asked if a scan can be performed at the next boot. Select yes on one or both of the programs ( spybot and antimalware's). then immediately reboot.

I hope this helps fix your issues. Please rate very helpful if this fixes your isues. ^_^ thank you

Posted on Oct 07, 2009

  • Level 1:

    An expert who has achieved level 1.

  • Contributor
  • 1 Answer

Go to Start->Control Panel->Programs and uninstall Spoon.

Posted on Mar 12, 2010

  • Level 1:

    An expert who has achieved level 1.

  • Contributor
  • 1 Answer

I was getting an AVG pop-up every couple of minutes: "C:\Documents and Settings\Sarah\Local Settings\Application Data\Xenocode\Sandbox\Spoon Sandbox Manager\3.14.0.5\2009.09\16T18.20\Native\STUBEXE\@WINDIR@\Microsoft .NET\Framework\v2.0.50727\csc.exe Trojan Horse BackDoor.Generic12.AMBX".

Moving it to the virus vault didn't solve it, and neither did deleting that Xenocode folder.

However I found (by luck) that if I deleted the Spoon folder in the same directory (C:\Documents and Settings\Sarah\Local Settings\Application Data\Spoon) that solved the problem. But first of all I had to go into Task Manager and stop the Spoon process before I could delete the folder.

That seemed to stop the pop-ups (even after reboot), and I have since run the Avast boot-time scan and SpyBot Search and Destroy and both came up clean, so I think that has solved it.

I hope that info helps someone.

Posted on Mar 01, 2010

  • Level 2:

    An expert who has achieved level 2 by getting 100 points

    MVP:

    An expert that got 5 achievements.

    Governor:

    An expert whose answer got voted for 20 times.

    Scholar:

    An expert who has written 20 answers of more than 400 characters.

  • Expert
  • 105 Answers

My dear friend, avg is ok but not as good to remove that issue. get this free antivirus www.avast.com install it, run it and it is very important, after the instalations is almost done it will ask you something like "will you like to schedule a clen up after restart. click on yes, and after it will ask you, do you want to restar now o later so NOW. it will restart the pc, then it will scan in DOS mode and be ifront of the pc , it will ask you what to do after it finds any virus o trojan so be patient and wait infront of your monitor and HIT the right key for REMOVE ALL. good luck

Posted on Oct 07, 2009

  • Level 2:

    An expert who has achieved level 2 by getting 100 points

    MVP:

    An expert that got 5 achievements.

    Governor:

    An expert whose answer got voted for 20 times.

    Hot-Shot:

    An expert who has answered 20 questions.

  • Expert
  • 102 Answers

Try downloading and installing this program, it finds a lot of stuff.
http://www.safer-networking.org/en/mirrors/index.html

hope the trojan isnt blocking any sites like that.

if that doesnt work, try this

http://www.avast.com/eng/download-avast-home.html


its another free antivirus program that ive been using for years wiht very good luck. any more questions feel free to ask..

Posted on Oct 07, 2009

1 Suggested Answer

6ya6ya
  • 2 Answers

SOURCE: I have freestanding Series 8 dishwasher. Lately during the filling cycle water hammer is occurring. How can this be resolved

Hi,
a 6ya expert can help you resolve that issue over the phone in a minute or two.
best thing about this new service is that you are never placed on hold and get to talk to real repairmen in the US.
the service is completely free and covers almost anything you can think of (from cars to computers, handyman, and even drones).
click here to download the app (for users in the US for now) and get all the help you need.
goodluck!

Posted on Jan 02, 2017

Add Your Answer

Uploading: 0%

my-video-file.mp4

Complete. Click "Add" to insert your video. Add

×

Loading...
Loading...

Related Questions:

4 Answers

How to remove win32/mebroot?


Hi there,
Well this Win32/mebroot is a trojan and you need a trojan killer to remove this. you can remove this by two ways -
1. Online - means when your computer runs the operating system and you can install the trojan killer and search for the trojan.
2. Offline - in this you don't need to start the operating system of your computer, you just need the offline CD of a trojan killer that starts automitally before windows start and then you just make a search for the trojan.
Please follow the below link to get your trojan killer -
http://trojan-killer.net/

Good Luck

Oct 06, 2011 | Computers & Internet

1 Answer

Dell /Desktop/Windows XP. My AVG free, found


I would go buy Notron antivirus because with the trojans it will cause you pc not to operate normally and could damage some of your files.

Jun 04, 2010 | Dell Computers & Internet

1 Answer

There's always a detected threat evrytym i open my pc...what does it mean? what should i do?


your computer might be infected..

Try running Malware bytes and Trojan Remover ...

After u have installed these softwares , disconnect from internet .... shut down AVG IS. Try running trojan remover and than malware bytes. ur problem should be resolved

May 10, 2010 | Internet Avg AVG Security V8.0 WIN - 2...

1 Answer

How do I fix the dcom server launcher, the computer keeps shutting down after it's been on for about five minutes?


Click Here to Download this program (its free). Install it. Update it. Run a FULL scan of your computer (took about 30 minutes and the viruses didn't pop up until the very end of the scan). Delete ALL of them (note: you have to reboot to delete the ones in windows system 32) There will be a list of about 5-10 infections they should be similar to:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent)

HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent)

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Servic es\Tcpip\Parameters\NameServer (Trojan.DNSChanger)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\T cpip\Parameters\NameServer (Trojan.DNSChanger)

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\T cpip\Parameters\NameServer (Trojan.DNSChanger)

C:\WINDOWS\system32\tdssadw.dll (Trojan.Agent)

C:\WINDOWS\system32\tdssl.dll (Trojan.Agent)

C:\WINDOWS\system32\tdssserf.dll (Trojan.Agent)

C:\WINDOWS\system32\tdssmain.dll (Trojan.Agent)

C:\WINDOWS\system32\tdssinit.dll (Trojan.Agent)

C:\WINDOWS\system32\tdsslog.dll (Trojan.Agent)

C:\WINDOWS\system32\tdssservers.dat (Trojan.Agent)

C:\WINDOWS\system32\drivers\tdssserv.sys (Trojan.Agent)

Thanks for using Fixya!

Jan 31, 2010 | Computers & Internet

1 Answer

Trojan horse Downloader.Generic8.AZUN


try to go to windows 32 (windows folder) and manually remove that put.ghura.pl/gc.exe file
Im not sure how you get this..but maybe your AVG is not set right ...cause if it detected it ..it should have been able to remove the damn thing ..let me know how it worked...
I attach a download (privat ) for a AVG 8.5 free and you can try to reinstall the anti-virus..but be sure you are not conected when you do that ...cause between installations you will be exposed..
click for download antivirus



Aug 01, 2009 | Computers & Internet

3 Answers

Removing trojan horse


install avast ,and quick healwith latest update one by one.
scan your pc in safe mode.

Apr 04, 2008 | Computers & Internet

1 Answer

Hello sir


the anti virus cant remove it coz then your pc will not start again and so windows denies it so format ur drive containing ur xp then install xp again it will be done

Dec 14, 2007 | Acer Aspire 5610-4648 Notebook

2 Answers

How can i get rid of a trojan horse downloader?


download antivir. google it and download the software. then quarentine the virus to make sure is hasn't infected your system files. then delete the bad file

Dec 05, 2007 | Microsoft Windows XP Professional With...

1 Answer

TROJAN HORSE


Trojan horse virus' can be very tricky to get rid of sometimes. AVG is one of the best out there for this but sometimes it cannot do it all. It just depends on what kind of virus it is. First of all, run a complete scan with "Spybot Search & Destroy". It is a free spyware removal tool. Make sure the dat files are up to date on all of these cleaners. The run a scan usin "AdAware". It is a free adware removal tool. Then after both of them have run, run a complete virus scan again with AVG. Most virus' out there now are in the form of spyware and adware and are downloader trojans. They download files in the background without your knowledge and really lag your computer. You will also get lots of pop ups while surfing the internet. I hope this helps. Let me know how it turns out?

Nov 25, 2007 | Creative Labs Sound Blaster 5.1 Audio...

3 Answers

Have problem with trojan horse


download this : http://www.download.com/3000-2239_4-10741647.html its AVG free, its all i and all my friends use, best antivirus program there is thats still free. try scanning with that, if the virus cant be healed like that you have to reboot in safe mode then run AVG. It would be able to correct the problem then.

Sep 18, 2007 | Microsoft Windows XP Professional for PC

Not finding what you are looking for?
Microsoft Windows XP Professional With Servise Pack 2 (e8503040) for PC Logo

1,378 people viewed this question

Ask a Question

Usually answered in minutes!

Top Microsoft Computers & Internet Experts

micky dee

Level 3 Expert

2658 Answers

Piyal Perera
Piyal Perera

Level 3 Expert

528 Answers

Les Dickinson
Les Dickinson

Level 3 Expert

18387 Answers

Are you a Microsoft Computer and Internet Expert? Answer questions, earn points and help others

Answer questions

Manuals & User Guides

Loading...