Computing.Net > Forums > Security and Virus > Backdoor.Agent.2.H with AVG

Computing.Net: Over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to sign up now, it's free!

Backdoor.Agent.2.H with AVG

Reply to Message Icon

Original Message
Name: Burton
Date: July 18, 2004 at 18:02:44 Pacific
Subject: Backdoor.Agent.2.H with AVG
OS: xp
CPU/Ram: pent4/512
Comment:

My AVG resident shield keeps popping up saying I have trojan horse Backdoor.Agent.2.H. in C:\system volume information\_restore
It did this a few days ago and i ran avg and it said it found 2 and healed them and moved them to the vault. I then deleted them out of the vault.(bad mistake?) Now it keeps saying I still have it though even though Ive ran avg, trend micro and norton and nothing is found. Can someone please offer me some advice. Thanks so much for any help.


Report Offensive Message For Removal


Response Number 1
Name: vipergg
Date: July 18, 2004 at 19:13:04 Pacific
Reply: (edit)

You need to disable the system restore feature on ME and rerun the AVG AV . This will get rid of all instances , then you can turn the restore feature back on .


Report Offensive Follow Up For Removal

Response Number 2
Name: Thresher
Date: July 19, 2004 at 19:19:51 Pacific
Reply: (edit)

Yes, disable sytem restore:

http://download.nai.com/products/mcafee-avert/SystemHelpDocs/DisableSysRestore.htm

Run these, in order in Safe Mode with your updated Av:

Trojan Hunter trial version:

http://www.misec.net/

Trojan Scan:
http://www.windowsecurity.com/trojanscan/

SWATIT:

http://swatit.org/download.html

Diagnostics once you are clean:

Jason’s Browser Security Test:

http://www.jasons-toolbox.com/BrowserSecurity/

Gibson tests:
http://www.grc.com/default.htm

I use LeakTest, DCOMbobulator, ShieldsUp, and UnplugNpray

if you are geting trojans wither you need a friewall, or you need to reconsider the settings on the one you have, or get rid of it. This oneis free, simple and effective:

http://smb.sygate.com/products/spf_standard.htm

Thresher


Report Offensive Follow Up For Removal

Response Number 3
Name: Shannon
Date: July 25, 2004 at 10:55:28 Pacific
Reply: (edit)

Ok Folks,
I had a Trojan horse BackDoor.Agent.2.H
I have Windows ME and I disabled the restore function and scanned with AVG and the virus is no longer detected . But I know the virus is still in my computer - I mean I wil never be able to activate my restore capabilities if i cant delete the files the virus is in -- SO who amongst you know how to do this ???

HELLLLP!!
Thanks -


Report Offensive Follow Up For Removal







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home








Do you have your own blog?

Yes
No
I did before
I will soon


View Results

Poll Finishes In 4 Days.
Discuss in The Lounge
Poll History




Data Recovery Software