The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.

    new Trojan virus

    Discussion in 'Security and Anti-Virus Software' started by redsox guy, Dec 30, 2009.

  1. redsox guy

    redsox guy Notebook Enthusiast

    Reputations:
    0
    Messages:
    48
    Likes Received:
    0
    Trophy Points:
    15
    I'm running Avira antivirus on my relatively new Vaio 520G. For the past few days it keeps warning me about a threat from two Trojan viruses: one is TR/Swysn.tlo and the other is TL/Fraudpak with some other letters. I keep removing it and the program says it is successfully removed, but it shows up again all the time. There's not much on Google about it, and mostly in German, so I don't know how dangerous it is or how to permanently remove it. Anyone have any similar experience?
    thanks!
     
  2. zimbros12

    zimbros12 Notebook Deity

    Reputations:
    276
    Messages:
    1,059
    Likes Received:
    4
    Trophy Points:
    56
    You may get better answers if you post it on WINDOWS OS + SOFTARE >
    SECURITY AND ANTIVIRUS
     
  3. Petrovic

    Petrovic Notebook Consultant

    Reputations:
    51
    Messages:
    123
    Likes Received:
    0
    Trophy Points:
    0
    apparently it's related to some "drive by download", and it's some sort of backdoor trojan or rootkit
     
  4. Deks

    Deks Notebook Prophet

    Reputations:
    1,272
    Messages:
    5,201
    Likes Received:
    2,073
    Trophy Points:
    331
    In which case I would suggest you download and install Spybot.
    After you updated it, make sure your virus definitions are current as well (which a/v are you using btw? ... I'd recommend Avira or MSSE).
    In any event, go into Safe Mode, and scan the system first with your antivirus, and then with Spybot.

    In Safe Mode it should be possible to permanently remove the threat because the thing might have lodged itself into a process that cannot be modified while running ... so Safe mode would be your best bet.
     
  5. jerry66

    jerry66 Notebook Deity

    Reputations:
    80
    Messages:
    764
    Likes Received:
    0
    Trophy Points:
    30
    Dump your temp files internet, ie and ff , might be rsiding there . that might be why avira keeps finding it
     
  6. foosa123

    foosa123 adsfjldsajflkajsdfa

    Reputations:
    210
    Messages:
    1,784
    Likes Received:
    0
    Trophy Points:
    55
    I had the same detection last night. Used CCleaner to delete all my temp files so hopefully its gone now. Going to run a virus scan now (doing it now since it was 2am last night when the detection pop-up popped-up) to see if its gone.
     
  7. zfactor

    zfactor Mastershake

    Reputations:
    2,894
    Messages:
    11,134
    Likes Received:
    3
    Trophy Points:
    455
    no offense but imo spybot sucks. ive seen it pass over things way to many times. if you want the best malware program to scan with its malwarebytes hands down with superantispyware close to it.

    and if you really want to be sure get yourself a ultimate boot disc which you can learn how from remove-malware.com if you do not know how he has a really good video teaching how to do this. then you boot from it and do a scan offline with avira or others you can load on there. personally i like dr web sure it a lot and hitman is awesome for quick scans like this its scans with 5 different engines and will pick up almost anything

    also as good as people say avira is... it is great at detection but not so much at removal. dr web cure it is awesome at removal and is free to download and use.
     
  8. arjunned

    arjunned Notebook Deity

    Reputations:
    288
    Messages:
    766
    Likes Received:
    0
    Trophy Points:
    30
    @ zfactor:

    You mean remove-malware.com. :)

    Dr. Web and Hitman Pro have great detection/removal capabilties. I'd suggest running complete scans with these 2. Also, as a back-up, run an MBAM scan.
     
  9. zfactor

    zfactor Mastershake

    Reputations:
    2,894
    Messages:
    11,134
    Likes Received:
    3
    Trophy Points:
    455
    yep just spelled it wrong..