VX2.Zserv Trojan

  • Thread starter Thread starter Paul
  • Start date Start date
P

Paul

I have had the VX2.Zserv trojan removed by AntiSpyware 3
times in the last 2 days. During that time I have
downloaded nothing, so I don't understand why it keeps
installing itself after it has been removed.
 
Disable System restore, restart the computer in safe and run the scan again,
that Trojan seems to be smart that keeps restoring itself.

Andre
 
Hi Paul,
Boot into Safe Mode (F8) at startup;
Empty your temporary files AND your Temporary Internet Files C:\Documents
and Settings\Username\Local Settings\Temporary Internet Files folder ;
Run the scan while in safe mode;
If you are running SP2, open IE--->Tools--->Manage Add-ons, and uncheck any
BHO's that you don't recognize.

Ron Chamberlin
MS-MVP
 
If the trick of running AntiSpy in Safe Mode (twice in a
row) doesn't help then

Get HijackThis.exe from
http://tomcoyote.org/hjt/hjt199//HijackThis.exe

Save it to C:\hjt (new folder) then Open it and select
SCAN and Save LOG.
Note where it saves the log and send me the HijackThis log
as an attachment.
You can try just copying it and pasting it into a reply
but I
might not see it. I should be able to identify the
problem and tell you how to get rid of it for good.

Ron Kinner MVP

rkinner AT att DOT net
" AT " = "@"
" DOT " = "."
 
Adaware SE is free for private home use and has a VX2
cleaner that does the job without the need for safe mode
intervention. TTFN.
 
Back
Top