JS /Downloader.Agent infection

Status
Not open for further replies.
Hello
my pc has been infected with the js /downloader.agent trojan and it keeps popping up on my avg everytime i visit any page.

Location of the trojan (as per AVG) is:
E:\Documents and Settings\Ankush\Local Settings\Temporary Internet Files\Content.IE5\

I have followed the 8-step Viruses/Spyware/Malware Preliminary Removal Instructions as per techspot. The trojan seemed to have been deleted yesterday but has reappeared today.
I am attaching the log files of HJT, Malwarebytes' Anti-Malware and SUPERAntiSpyware

Kindly advise me on how to proceed

Thanking you in anticipation
 
Welcome to TS. You can take credit for keeping on top of things. Just give a little more attention to details and this should become a distant memory.

HJT scan results – Decision to fix is at the discretion of the user.
potential LOP Domain Hack - answer question if you intend to use DNS from net4india.com

O17 - HKLM\System\CCS\Services\Tcpip\..\{063B41F9-DAA9-4EE0-B340-1797FF259F9C}: NameServer = 172.16.1.1,202.71.136.67,202.71.144.67
O17 - HKLM\System\CS1\Services\Tcpip\..\{063B41F9-DAA9-4EE0-B340-1797FF259F9C}: NameServer = 172.16.1.1,202.71.136.67,202.71.144.67

Information:
202.71.136.67 , 202.71.144.67 belong to net4india.com, Net4India, LTD. Appears on 2 blacklists.

HJT Usage: Scan, tick the box, click 'fix'. Exit. Restart Computer.

Observation: More progress is needed. Your logs show found but unanswered items. ‘NO Action’ or ‘Delete on Reboot’ appearing in the log, requires that you react to the message.

Genreal Remark: - React to unanswered items appearing in scan logs
  • NO Action’ - Remove Selected when offered by MBAM
  • 'Delete on Reboot’ - Restart the computer after concluding the scan
Proceeding along a typical path.
  • Update both MBAM & SAS. Rerun them both.
  • This effort is complete when logs report NO infections/threats, or reporting something it can not clean.
  • Restart the computer. Scan with HJT.
  • Posts logs. Report progress & what changes are observed.
 
Status
Not open for further replies.
Back