Background
AVG originally advised that I had a Trojan Horse Downloader in
c:\system volume information\_restore (relating to A0036834.exe)
2 days later was advised that have Trojan Horse Patched_c.PO in
c:\system volume information\_restore (relating to A0044006.dll)
Issues
On both those occasions these items were moved to the virus vault and rescanning with AVG this items did not come up, so being the novice that I am, thought that this was fine.
However, in the processing of trying to gain knowledge and understanding and determine whether my system was okay, I came across Dr Web.
It's scanning revealed that there were other items in
c:\system volume information\_restore (relating to A0038461.reg, A0043448.reg, A0044153.reg, A0046316.exe, A0046320.exe). The first 3 items items have been deleted and the last to moved.
In addition to that I am getting tracking cookies reported all the time for 112.2o7, bs.serving-sys, msnportal.112.2o7, overture and serving-sys.
1. Can someone please explain to me, when items are quarantined rather than deleted, can they be reactivated? I am assuming that the infection is still on your system but moved out of the mainstream files (thereby alluding detection)
2. I have been running SpyBot, SuperAntiSpyware, Malwarebytes etc all at different stages and keep coming up with these tracking cookies.
Are any of them harmful ?
3. I read that I need to turn off system restore, do all the scans and cleans for the c:\system volume information\_restore infection. Is that correct ?
4. I have now downloaded all the tools detailed in the
Viruses/Spyware/Malware thread,
Tool2 - VirtumundoBeGone - has no instructions that I can see. Can someone tell me what I need to do
Tool3 - VundoFix - site says that it has issues with Asia versions of Windows (I am in Australia). Is this step critical?
5. Do these tools have to run from the desktop ?
I read that Combofix must be - is it the same for the others.
I am a novice, trying to learn, so please be patient.
Any advice on what I need to do to get a clean system would be appreciated.
Thanks for reading the post
AVG originally advised that I had a Trojan Horse Downloader in
c:\system volume information\_restore (relating to A0036834.exe)
2 days later was advised that have Trojan Horse Patched_c.PO in
c:\system volume information\_restore (relating to A0044006.dll)
Issues
On both those occasions these items were moved to the virus vault and rescanning with AVG this items did not come up, so being the novice that I am, thought that this was fine.
However, in the processing of trying to gain knowledge and understanding and determine whether my system was okay, I came across Dr Web.
It's scanning revealed that there were other items in
c:\system volume information\_restore (relating to A0038461.reg, A0043448.reg, A0044153.reg, A0046316.exe, A0046320.exe). The first 3 items items have been deleted and the last to moved.
In addition to that I am getting tracking cookies reported all the time for 112.2o7, bs.serving-sys, msnportal.112.2o7, overture and serving-sys.
1. Can someone please explain to me, when items are quarantined rather than deleted, can they be reactivated? I am assuming that the infection is still on your system but moved out of the mainstream files (thereby alluding detection)
2. I have been running SpyBot, SuperAntiSpyware, Malwarebytes etc all at different stages and keep coming up with these tracking cookies.
Are any of them harmful ?
3. I read that I need to turn off system restore, do all the scans and cleans for the c:\system volume information\_restore infection. Is that correct ?
4. I have now downloaded all the tools detailed in the
Viruses/Spyware/Malware thread,
Tool2 - VirtumundoBeGone - has no instructions that I can see. Can someone tell me what I need to do
Tool3 - VundoFix - site says that it has issues with Asia versions of Windows (I am in Australia). Is this step critical?
5. Do these tools have to run from the desktop ?
I read that Combofix must be - is it the same for the others.
I am a novice, trying to learn, so please be patient.
Any advice on what I need to do to get a clean system would be appreciated.
Thanks for reading the post