| | |
Trojan Downloader and AVG trouble
![]() |
•
•
Join Date: Jul 2004
Posts: 2,964
Reputation:
Solved Threads: 210
Well, if you didn't install it, and you don't use it, I would think you should just get rid of it. See if it's in the Add/Remove Programs first; if not, then just delete the folder. You might need to boot into Safe Mode to do that. (Again, you may want to wait for confirmation on this)
Links to help you help yourself :
Protect Your PC & Avoid Infections -- http://www.daniweb.com/techtalkforums/thread27519.html
Cleanup Procedures & Tools -- http://www.daniweb.com/techtalkforums/thread27570.html
Infection Removal & HijackThis Use -- http://www.daniweb.com/techtalkforums/thread28196.html
Protect Your PC & Avoid Infections -- http://www.daniweb.com/techtalkforums/thread27519.html
Cleanup Procedures & Tools -- http://www.daniweb.com/techtalkforums/thread27570.html
Infection Removal & HijackThis Use -- http://www.daniweb.com/techtalkforums/thread28196.html
•
•
Join Date: Dec 2004
Posts: 58
Reputation:
Solved Threads: 0
hehe yea... i think i will wait for confirmation on that ... I forgot to add btw... when I was deleting stuff in safe mode, there were 4 folders in my Temp. Internet Files\Content.IE5 that wouldnt delete... they looked like junk from an ebay site, but i wasnt going to sit there and delete EVERYTHING else from the folders lol... what do ya think I should do with these?
I'm almost positive that the entire "Business Logic" folder should get the axe. The only places I've seen references to such a folder have been in threads on other support forums where people are dealing with an infection almost identical to yours. "Business logic" is a programming term; I've found nothing to indicate that is the name/brand of a piece of legit software that any normal user would have on their system, and I've never seen such a folder on any system I've ever worked on.
As far as the undeletable folders in the Content.IE5 folder, I'm afraid that the way to go is to start deleting the individual files until you can pinpoint the exact files which are refusing to be deleted. That way we'll at least be able to know the names of the offending files, and that might give us a clue as to how to delete them. By selecting blocks/groups of files for deletion, you should be able to narrow it down fairly quickly.
As far as the undeletable folders in the Content.IE5 folder, I'm afraid that the way to go is to start deleting the individual files until you can pinpoint the exact files which are refusing to be deleted. That way we'll at least be able to know the names of the offending files, and that might give us a clue as to how to delete them. By selecting blocks/groups of files for deletion, you should be able to narrow it down fairly quickly.
"May the Wombat of Happiness snuffle through your underbrush."
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
•
•
Join Date: Dec 2004
Posts: 58
Reputation:
Solved Threads: 0
:eek: that was a lot of files :eek: I also deleted the UWC folder (the only folder in Business Logic) and ran an AVG and Panda scan
no more Downloaders. Thanks a lot you guys for saving my butt... again hehe... should I worry about those files that wouldnt delete? Here they are if I should do somethin with em:
1. 1980-strawberry_W0QQsokeyworddirectZ1QQfromZR8[1]
2. 1980-strawberry_W0QQfromZR8QQsosortorderZ1QQsosort propertyZ3[1]
3. Thumbs.DBF (I'm guessing this is an important one though)
4.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsorecordstoskipZ100QQsosortorderZ1QQsosor[1]
5.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsomorecategoriesZ1QQsosortorderZ1QQsosort[2].
<Noticing a pattern?>
6.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsomorecategoriesZ1QQsosortorderZ1QQsosort[1].
no more Downloaders. Thanks a lot you guys for saving my butt... again hehe... should I worry about those files that wouldnt delete? Here they are if I should do somethin with em: 1. 1980-strawberry_W0QQsokeyworddirectZ1QQfromZR8[1]
2. 1980-strawberry_W0QQfromZR8QQsosortorderZ1QQsosort propertyZ3[1]
3. Thumbs.DBF (I'm guessing this is an important one though)
4.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsorecordstoskipZ100QQsosortorderZ1QQsosor[1]
5.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsomorecategoriesZ1QQsosortorderZ1QQsosort[2].
<Noticing a pattern?>
6.strawberry_Home-Garden_W0QQcatrefZC12QQcoactionZcompareQQcoentrypageZsearchQQcopagenumZ1QQfromZR10QQsacategoryZ11700QQsomorecategoriesZ1QQsosortorderZ1QQsosort[1].
Thumbs.dbf files are legit (and automatically generated) Windows files; don't worry about any of those that you run across.
As for the other files I'm not sure; let me get back to you on those.
As for the other files I'm not sure; let me get back to you on those.
"May the Wombat of Happiness snuffle through your underbrush."
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
•
•
Join Date: Jul 2004
Posts: 2,964
Reputation:
Solved Threads: 210
I couldn't find anything on the Strawberry stuff -- almost looks like some kind of catalog entries. I don't understand why they won't delete in Safe Mode
Links to help you help yourself :
Protect Your PC & Avoid Infections -- http://www.daniweb.com/techtalkforums/thread27519.html
Cleanup Procedures & Tools -- http://www.daniweb.com/techtalkforums/thread27570.html
Infection Removal & HijackThis Use -- http://www.daniweb.com/techtalkforums/thread28196.html
Protect Your PC & Avoid Infections -- http://www.daniweb.com/techtalkforums/thread27519.html
Cleanup Procedures & Tools -- http://www.daniweb.com/techtalkforums/thread27570.html
Infection Removal & HijackThis Use -- http://www.daniweb.com/techtalkforums/thread28196.html
What is the exact error you get when you try to delete one of those "strawberry" files? Sometimes these nasty little puppies set their permissions such that even the Administrator account is denied access to them; if that's the case you might have to twiddle with the permission settings under the Security tab of each files Properties window. Another possibility is the files are still somehow in use even in Safe Mode.
"May the Wombat of Happiness snuffle through your underbrush."
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
- Ancient Aborigine blessing
Please do not contact me by email or PM for help. We're all volunteers here, and only have so much free time to dedicate to our efforts.
However, if I've been working on a thread with you already, and seem to have "forgotten" your thread, please do send me a message. I try not to let things slip through the cracks, but it does happen sometimes.
![]() |
Other Threads in the Viruses, Spyware and other Nasties Forum
- Previous Thread: www.hotmail.com won't load when using IE
- Next Thread: can't get rid of about:blank
Views: 11076 | Replies: 42
| Thread Tools | Search this Thread |
Tag cloud for Viruses, Spyware and other Nasties
acrobat adobe adware anti-virussitesaccessissue antivirus apple attack audio avg backtoschoolspeech bar blackhat botnet china combofix commercials conficker connect control crosssitescripting cyber cyberwarfare ddos domains e-mafia email europe explorer facebook fake gaming gtaiv gumblar hijack internet iphone kaspersky legal logfiles mail malware mcafee mega-d messagelabs microsoft mobile msn news norton obama paedophile panel parents pdf phishing police president privacy pro problem redirecting reliability report research risk rogueantivirus rootkit samhain sans scareware school search security sites software spam spyware spywareexternalwindows7adminstratortrojans sqlinjection symantec system teen threat translate trojan unabletoaccessanti-virussites unwanted usa virus viruses vista volume vulnerability war warning web windows worm zero-day zeroday






