TechSpot
 
Go Back   TechSpot OpenBoards > OS & Software > Security and the Web
Forgot?

Welcome to the TechSpot OpenBoards. Please read the FAQ if you have any questions. Login to participate.

Trojan Horse Downloader Purity Scan.BA

Reply
 
Thread Tools Search this Thread
  #1  
Old 05-18-2008, 07:14 PM
maggie1952 maggie1952 is offline
Newcomer, in training
 
Member since: May 2008, 4 posts
Trojan Horse Downloader Purity Scan.BA

Hi!

I have recently downloaded the new AVG 8.0 virus scanner. Since doing so, I have had threats come up, which I have removed. The name of the threats (3 of them) are Tojan Horse Downloader Purity Scan.BA. It goes on to say that it's detected at start up.

I noticed that someone else in this form had a similar problem, but was using a different browser. (I am using IE 6.0 and have an XP operting system.) You had the person go into their registry to remove the threat.

I'm just wondering if I have to do the same thing to remove the Trojan. I did do a scan with Trend and my system came up clean, it's only AVG 8.0 that comes up with the threat.

Your help/advice is appreciated.
Reply With Quote
  #2  
Old 05-20-2008, 10:02 AM
Blind Dragon's Avatar
Blind Dragon Blind Dragon is offline
TechSpot Evangelist
 
Location: Tampa FL
Member since: Oct 2007, 3,109 posts
System specs
you can attach a hijackthis log -> purity is easy to spot because the file names look like this -> C:\system??\task??r
Reply With Quote
You can remove this banner by registering, join the TS Community for free.
  #3  
Old 05-20-2008, 02:49 PM
maggie1952 maggie1952 is offline
Newcomer, in training
 
Member since: May 2008, 4 posts
Trojan Horse Downloader Purity Scan

Hi!
Thanks for the reply. What is a "hijackthis log"?
Reply With Quote
  #4  
Old 05-20-2008, 02:57 PM
Blind Dragon's Avatar
Blind Dragon Blind Dragon is offline
TechSpot Evangelist
 
Location: Tampa FL
Member since: Oct 2007, 3,109 posts
System specs
Highjackthis Instructions
  • Make sure you have the LATEST version of HJT (currently v2.0.0.2) it can be downloaded from HERE
  • Run the HijackThis Installer and it will automatically place HJT in C:\Program Files\TrendMicro\HijackThis\HijackThis.exe. Please don't change the directory.
  • After installing, the program launches automatically, select Scan now and save a log
  • After the scan is complete please attach your log onto the forums using the paper clip icon above your reply.
Reply With Quote
  #5  
Old 05-20-2008, 06:32 PM
maggie1952 maggie1952 is offline
Newcomer, in training
 
Member since: May 2008, 4 posts
Trojan Horse Downloader PurityScan.BA

Hi! Thanks. I've attached the log as requesed.

I should mention that I ran a scan in safe mode using AVG 8.0 last night and also turned my registry off and on. I read somewhere that that might get rid of the problem, but I'm not sure. My computer is still running slow even though I have high speed.

Thanks for your help.
Attached Files
File Type: log hijackthis.log (7.0 KB, 1 views)
Reply With Quote
  #6  
Old 05-21-2008, 09:45 AM
Blind Dragon's Avatar
Blind Dragon Blind Dragon is offline
TechSpot Evangelist
 
Location: Tampa FL
Member since: Oct 2007, 3,109 posts
System specs
Hijackthis log looks good, here are my recommendations:

You aren't running Firewall Software. Please download and install one of these first!

Use a Firewall - It is very important that you use a Firewall on your computer. If you use the Windows Firewall you might think that's enough but it only controls inbound traffic. Simply using a Firewall in its default configuration can lower your risk greatly. Here are some firewalls which are free for personal use and most commonly used:
Comodo (Vista Compatible)
Kerio
Online Armor
Zonealarm (Vista Compatible)

--------------------------------------------------------------------------------------------

Download and Run ATF Cleaner
Download ATF Cleaner by Atribune to your desktop.

Double-click ATF Cleaner.exe to open it.

Under Main choose:
Windows Temp
Current User Temp
All Users Temp
Cookies
Temporary Internet Files
Prefetch
Java Cache

*The other boxes are optional*
Then click the Empty Selected button.

Firefox or Opera:
Click Firefox or Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

Click Exit on the Main menu to close the program.

----------------------------------------------------------------------------------

Get a 2nd opinion from online scan and let me know the results
Trend Micro Housecall Free Online Scanner
  • It`s one of the very few online scanners that will actually disinfect viruses etc.
  • First Open Internet Explorer
  • Go to Trend Micro's Housecall website which can be found HERE
  • Click on the link that says "Scan now. It's Free"
  • A new tab will open where you will have to tick a box to agree to the terms of service.
  • Click "Launch House Call"
  • Follow any additional on screen instructions
  • Select any infections then Fix Checked after the scan
----------------------------------------------------------------------------------

Use Winpatrol to also control what programs start when you turn your computer on.
Winpatrol <= Download and install the free version of Winpatrol. a tutorial for this product is located here:
Using Winpatrol to protect your computer from malicious software
Reply With Quote
  #7  
Old 05-21-2008, 12:33 PM
maggie1952 maggie1952 is offline
Newcomer, in training
 
Member since: May 2008, 4 posts
Trojan Horse Downloader

Thanks for all the advice. Much appreciated.

We run our computers through a router which has a firewall. I downloaded and was going to run the Comodo Firewall and a box came up saying I had to uninstall any firewalls I had. Is there a problem with me continuing to download the firewall even though the router has this feature? Also, how would I uninstall a firewall?

Thanks
Reply With Quote
  #8  
Old 05-21-2008, 12:41 PM
Blind Dragon's Avatar
Blind Dragon Blind Dragon is offline
TechSpot Evangelist
 
Location: Tampa FL
Member since: Oct 2007, 3,109 posts
System specs
The firewall built into your router is a hardware firewall. Comodo is a software firewall. No conflict there. You don't have an active software firewall so there is no need to uninstall anything.
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Trojan horse downloader.generic2.mux rf6647 Security and the Web 13 01-13-2008 06:13 AM
Trojan horse Downloader.Generic6.QJU jadeo9 Security and the Web 7 11-04-2007 06:25 PM
Trojan Horse Downloader.Generic3.MIT havoc123123 Security and the Web 59 03-12-2007 07:46 AM
trojan horse downloader.generic2 Filipp Security and the Web 3 09-04-2006 05:28 PM
Trojan Horse Downloader.Generic2.BVD Zebedee Security and the Web 4 07-20-2006 03:46 AM


All times are GMT -4. The time now is 12:31 AM.


  TechSpot  The PC Enthusiast Resource    |    News    |    Reviews    |    Guides    |    Downloads    |    Drivers    |    Forums    |    Pricewatch    |    News Archive    |    RSS Feeds
  Our Blog    |    Tech Deals    |   vb Sitemap    |    User Gallery    |    Startup Radar    |    Icons by Foood    |    Powered by StoryTeller    |    TechSpot in Spanish

  Copyright © 1998-2008 TechSpot.com. TechSpot is a registered trademark. All Rights Reserved.
Privacy policy.
Advertising | About TechSpot 
TechSpot Pricewatch TechSpot Hot Deals
Windows Startup Radar Tips & Tricks (blog) Guides & Tweaks Windows updates
News Archive TechSpot Blog TechSpot RSS Feeds User Picture Gallery Techspot's IRC# (Chat) TechSpot in Spanish