also @ TechSpot: Updated Microsoft EULA prohibits class action lawsuits

TechSpot

[Solved] Trojan virus.. removed but still need help

Discussion in 'Virus and Malware Removal' started by AaronChopper, Dec 3, 2011.

  1. AaronChopper Newcomer, in training

    Done, thank you again for the help! Everythings in working order.
  2. Broni Malware Annihilator

    Way to go!! [IMG]
    Good luck and stay safe :)
  3. AaronChopper Newcomer, in training

    Ok sorry to bring this up again, but something in NOD32 popped up as I started my computer this afternoon, my AV bought up a message saying that I haven't submitted a number of suspicious files, including deizxoa.exe again and another file setup.exe (which I know is safe), but theres nothing in my quarantine. i hesitated and pressed submit but is the trojan still here?? I'm running another scan with my AV right now. Also I couldn't find the file in my directory it located me to (I have all hidden files on again to check), so something tells me its not, but I'm not so sure.

    Heres the message I got

    [IMG]

    And the window showing the folder isn't there

    [IMG]

    I'm also sceptical as well because in my log files in NOD32 it doesn't show it deleting the actual file deizxoa.exe.. in fact theres nothing in the log file indicating it did anything at all during that day

    Edit: My apologies, it does show something in my log for on-demand computer scan

    Second Edit: AV didn't find anything
  4. AaronChopper Newcomer, in training

    [IMG]

    Okay.. so is the trojan still on my computer? This was like 3 minutes ago, ESET just sent it for analysis. Why can't I view the folder/trojan? Do I still have it or what?

    I don't know why it asked to send the file for analysis.. I clearly deleted the file the trojan came from, so I must have been reinfected? I honestly dont know

    [IMG]
  5. Broni Malware Annihilator

    Sending file is optional.
    Eset should have some option to disable it.

    Let's see if the file is still there.

    Please download SystemLook from one of the links below and save it to your Desktop.
    Download Mirror #1
    Download Mirror #2

    64-bit users go HERE
    • Double-click SystemLook.exe to run it.
    • Vista\Win 7 users:: Right click on SystemLook.exe, click Run As Administrator
    • Copy the content of the following box and paste it into the main textfield:
      Code:
      :filefind
      deizxoa*
      
    • Click the Look button to start the scan.
    • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.
    Note: The log can also be found on your Desktop entitled SystemLook.txt
  6. AaronChopper Newcomer, in training

    Hi, thanks for replying again

    Heres the SystemLook text

    SystemLook 30.07.11 by jpshortstuff
    Log created at 02:31 on 07/12/2011 by LifeTravel
    Administrator - Elevation successful

    ========== filefind ==========

    Searching for "deizxoa*"
    No files found.

    -= EOF =-

    This is a big relief, thank you. But why would ESET ask whether I would want to send the trojan file for analysis if I deleted the trojan around 2 days ago? Makes no sense to me.. unless its just a user interface flaw.
  7. Broni Malware Annihilator

    Possibly some delay, remainder....