Link to home
Start Free TrialLog in
Avatar of goodfinder
goodfinder

asked on

trojan horse Generic30.wav

system running windows 7 home premium.

website redirected to other sites

installed norton antivirus latest, said it removed

1 day later, norton got removed, empty norton folder

put in avg, said trojan horse generic30.wav found, removed.

came back again.

question:

1.  do i need to turn off system restore; afraid that if it crashes, i don't have any restore point to boot up the computer.

2.  does anyone know how to remove the trojan.  I bought norton antivirus 2013.

thanks.
Avatar of Tom Scott
Tom Scott
Flag of United States of America image

Try Sophos Anti-rootkit. It is free.

Then try the combination of MalwareBytes.org and SuperAntiSpyware.com.

Malwarbytes does NOT seem to get it all on its own, probably because of the trojan has a rootkit component.

I did not find a removal tool specific to that trojan.

When done, clean install the security suite of your choice.  I do NOT recommend Symantec/Norton nor MacAfee. AVG is working well for a few of my clients. Other good products are ESET (my personal favorite), Trend Micro (especially in the corporate environment), FSecure and some others. While I have had good luck with Kaspersky, and he is a stellar malware/security expert, I have concerns about his corporate/political environment.

 - Tom
Avatar of goodfinder
goodfinder

ASKER

i ran malwarebytes, & spy bot & norton.  i will try the superantispyware.com & kaspersky.  

the computer also had a blue screen and created a dump but after that, it boots up ok.  do i need to reinstall or repair the windows 7 home premium?  

tried AVG too.  

i turned off the system restore. ran AVG tuneup.  i am ready to reformat but it has a lot of apps. ahhh.  

thanks.

please let me know if you can think of anything.  long night.  ....
SOLUTION
Avatar of EMJSR
EMJSR
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Missed that.  Thanks.  Does not need safe mode, right?   Thanks again .
After running the anti-rootkit you should run scans with MalwareBytes and SuperAntiSpyware again.

 - Tom
Thanks, will do.  Do u know of anygood  registry scan n repair for win 7.  For xp n vista I used symantec system standard.  Ps. I m redownloading  anti rootkit ; the first one said it was corrupted. Tks for your patient.
Anti rootkit did not find anything.  Running superantispyware now.
The malware scanners I suggested do scan the registry and remove/correct issues found with your consent.

 - Tom
Installed the superantispyware pro trial version n ran.   It found some tracking cookies.  Will u suggest to buy this instead of kasperski or other security sofeware?
I would run a combination of antivirus and antimalware. For the latter I would recommend Malwarebytes Pro if you want real time protection. At home I have had great experience with Eset NOD32 while at work I have had great success with Sophos and AVG combined with Malwarebytes Pro. Usually it's the personal experience that counts when talking about AV. Opinions differ greatly.

As for a stand alone registry cleaner, malware unrelated; Piriform's CCleaner is a great little utility.
"AVG is working well for a few of my clients. Other good products are ESET (my personal favorite), Trend Micro (especially in the corporate environment), FSecure and some others. While I have had good luck with Kaspersky, and he is a stellar malware/security expert, I have concerns about his corporate/political environment."

As noted earlier, my favorite is ESET Security Suite and has been for  a couple years.  My second choice is FSecure. The owner of FSecure and lead developer is just about the most experienced coder in this sector. He predates the better known coders. He has always been a solid tech and made solid applications.

I concur with EMJSR, CCleaner is a cool utility. However, I normally use it when in need or suspicious.

Unless you have more errors or anti-malware traps, it sounds like you are ready to get your new security suite, rid of any remnants of Symantec and install the new suite.

 - Tom