PDA

View Full Version : Virus Trouble with Windows XP Home Edition


ditmx6
02-11-2004, 05:19 PM
Hello Everyone,

I'm having a tough time trying to remove some files that were infected with a virus that was recently detect by AVG Free version. After dowloading and running an entire system scan yesterday, AVG found 11 Viruses! Well I was able to correct and delete all of the files that were infected (or so I thought). Today however, I am now getting the following error message:

Virus
Trojan horse Downloader.Donn.K

is found in file
C:\System Volume Information\_restore{08EDBA23-6B59-425B-9628-A13CE0333693}\RP589\A0843197.exe

To remove this virus, please run AVG for Windows

Now since I ran this entire scan yesterday (it took 4 hours to complete)and supposedly detected and repaired all of infected files, I didn't want to sit through another full system scan just to have it not detect a virus. I then decided to try to simply delete this file that was infected. However once I tried to actually get into the System Volume Information directory, I get a message that Access is denied. This doesnt make sense to me since I am on an account that has admistrator privliges. Anyone out there now how to get rid of this file and why I get this access is denied message?

Thanks in advance,

ditmx6

pentachris
02-11-2004, 06:01 PM
You need to disable system restore.

Here (http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?OpenDocument&src=sec_doc_nam).

Budfred
02-11-2004, 07:26 PM
If that doesn't do it, try one or more online virus scans and/or download the trial version of TrojanHunter to address the problem. After you do all of that, it would probably still be a good idea to run spyware scans and then run HijackThis and post it for review here. To run HJT, extract it to a permanent folder such as C:\Documents or one you create like C:\HJT. Close all programs you have opened and make sure that all programs are enabled if you use msconfig. Run it and Scan, then Save the log. When the log window appears, Right click to Copy it, open your browser and come here to Paste the log. Do not make any changes until it is checked since most items are either benign or essential to the computer.

ditmx6
02-12-2004, 11:33 AM
Thank you very much for your help with this issue. I did as you said and disabled the system restore function and everything seems to be working fine now.

Thanks again,

ditmx6

Budfred
02-12-2004, 08:30 PM
If you didn't run the other scans, I urge you to do so. If you had a trojan, you probably also have spyware and other malware that antivirus programs don't pick up....