Web Trac

Computer, Internet, Web, Mobile …


Archives for February, 2008



Update: Removing JS/Downloader.Agent virus

Posted on Feb 02, 2008 under Security | 8 Comments

This is just an update of my last post Removing JS/Downloader.Agent virus. I’m still not able to get rid of the problem but seems found the root of the problem.

The tool that I suggested in last post is just a temporary solution. Actual problem is that my computer is not infected, it is other infected computer(s) in our Cable networks LAN . AVG antivirus is just stopping the virus to infect my computer.

When I posted my problem on few other tech forums they said that either my computer is infected or I am regularly visiting some site which are infected or AVG is just identifying a normal file as a virus. Someone suggested me that I should use other anitivirus. So I downloaded Avast home edition which is a free to use antivirus software.

Avast also detecting the same virus just with different name, it also showing location from where it trying to download. Well it is http://g.asdafdgfgf.com/ads.js [don't visit this site].

When I did a search about this link, I found very helpful and informative thread at DevNetwork Forum..

There several peoples are complaining about the same problem. Going through each post, what I understood that:

At first it downloads a copy of ads.js file from http://g.asdafdgfgf.com/ [don't visit this site] in an unprotected computer. Then it downloads and execute ADS.EXE file.

ADS.EXE has been seen to perform the following behavior(s):

  • Executes a Process
  • Creates a TCP port which listens and is available for communication initiated by other computers
  • The Process is packed and/or encrypted using a software packing process

ADS.EXE has been the subject of the following behavior(s):

  • Created as a new Background Service on the machine
  • Created as a process on disk
  • Executed as a Process
  • Added as a Registry auto start to load Program on Boot up

More information on this file can be found at : SpywareData.com and Prevx.com.

Since the problem is not in my computer and it is in someone else computer in our Cable networks LAN so only cable operator can help me in this matter.

Removing the infected computer(s) from LAN is the only solution of this problem. In the forum someone suggested a tool for cable operator that help in finding the infected computer. This tool can be downloaded from http://www.arechisoft.com/. A cable operator of Andheri/Mumbai, have explained how they were successfully get rid of this problem. Here is it if you wants to read: http://forums.devnetwork.net/viewtopic.php?p=438910#p438910

Since only the cable operator can help me in this matter, I’m trying to contact them, let’s see how long does it take.

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • StumbleUpon
  • Digg
  • Technorati
  • del.icio.us
  • YahooMyWeb
  • Furl

Tags: Downloader.Agent, LAN, virus

Subscribe to RSS Feed


Recent Posts

  • Finally able delete profilew.exe and rdpua.exe files??
  • Profilew.exe and rdpua.exe virus or what??
  • How to fix rotated monitor screen
  • Playing YouTube Video on iPod
  • Godaddy renewal coupon for May 2009

Categories

  • Articles (2)
  • Bluetooth (2)
  • Computer (7)
  • Contest (1)
  • Coupon (10)
  • Download (4)
  • Game (1)
  • Hosting (2)
  • iPhone (2)
  • ipod (1)
  • Mobile (2)
  • Movies (2)
  • Multimedia (1)
  • Music (1)
  • Notbook (1)
  • Security (8)
  • Uncategorized (7)
  • web (1)

Archives

  • December 2009 (2)
  • September 2009 (1)
  • May 2009 (2)
  • January 2009 (2)
  • December 2008 (4)
  • November 2008 (3)
  • August 2008 (3)
  • June 2008 (1)
  • May 2008 (3)
  • April 2008 (1)
  • February 2008 (1)
  • January 2008 (3)
  • December 2007 (2)
  • November 2007 (5)

Recent Comments

  • Finally able delete profilew.exe and rdpua.exe files?? | Web Trac on Profilew.exe and rdpua.exe virus or what??
  • Lillian Siegel on Godaddy renewal discount coupon code for November
  • Chris on Update: Removing JS/Downloader.Agent virus
  • Godaddy renewal discount coupon code for November | bestwebhostingservices.com on Godaddy renewal discount coupon code for November
  • Dhiru on Update: Removing JS/Downloader.Agent virus

Relates Sites

Mobile/Cell phone

Blog Directorys

  • TopOfBlogs

Latest Article

  • Iomega Media Xporter PC-to-console Image exporter
  • How To Select The Notebook That Meets Your Requirements?
Web Trac is powered by WordPress
Entries (RSS) and Comments (RSS).