Microsoft Windows XP Professional 5.1.2.18.703. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ygua8e7yhuiesfha876yfauy8fe (Trojan.Downloader) -> Quarantined and deleted successfully.Ĭ:\Documents and Settings\kenny\Local Settings\Temp\dfgdgdfgrgdgfdrdfs.tmp (Trojan.Downloader) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\winid (Malware.Trace) -> Quarantined and deleted successfully. Though since this problem became apparent a day or two ago I've not used IE at all, as I've a suspicion that's where the problem started. AVG was downloaded again and a full scan run. I also ran Spybot (I updated first) and AdAdware. I ran SmitFraud (not the spyware one), which fixed some things. The virus frequently redirects me to spammy sites - I use firefox mostly, occasionally IE. My son let my AVG expire and I got all kinds of virus and spyware and malware and other things on my computer. I've also tried disabling AVG (no difference) and a different malware removal tool (super software's trojan remover) but that didn't even find the infection.
#How to completely remove rtwlan install#
After reading a couple of forum posts elsewhere, I tried re-installing mbam from a re-named install file, specified a different directory, and re-named the. But when the computer restarts, the virus remains. I've run mbam several times - each time it finds the infection, removes it and requires a restart. AVG also finds the problem during a scan, identifies it as "Infection" "Trojan horse Clicker.AEJJ" "C:\Documents and Settings\kenny\Local Settings\Temp\rnwasemxoc.tmp" but again, it can't remove the problem. If I'm not connected to the internet these warnings don't happen. If I click "Delete" I get "File not found" in response. AVG can't remove it but Resident Shield often pops up to tell me I have a "Win32/Cryptor" virus with the process name C:\WINDOWS\system32\svchost.exe when I am connected to the internet. I run AVG free 8.5 and ZoneAlarm free, but I picked up a trojan that I can't shake off.