 | TrojanDownloader:Win32/renos.dz Hello All, I have been banging my head on a brick wall for a while now and need help.
I have a Vista 32bit system that has picked up dome kinda "bug". When I first boot into Vista Defender shows the above high alert. I choose the remove all option, and Defender says all fixed...I call BS on that.
I have run avgfree with the current file, which I had to manually update by copying the file to the desktop, and it has not detected anything.
I removed AVG and installed Spybot but it will not update.
I was able to get HJT to install but it will not run and occasionally the system bluescreens. I also have gone to Housecall but that will not load the update file. I am not exactly sure what this 'creature" is but it is really starting to iritate me. |
|
 | This is difficult to work with without any logs or specific info. What other steps from the FAQ did you run (there is more than one choice for online AV scans, for instance).
Spybot (Antispyware program) is not a substitute for AVG (Antivirus program).
You are on Vista...are you choosing to *run as* adminstrator on these?
What other symptoms other than the Windows Defender alert do you get? -- It takes a disaster to make a woman out of a female Microsoft MVP/Windows Security 2003-2009 Proud Member of ASAP (Alliance of Security Analysis Professionals) |
|
 | reply to Westofhere Just to add...Win32/renos.dz - is usually a rogue/fake antispyware (meaning you would be seeing popups for a fake antispyware scan).
That is why we ask for other symptoms - seen anything like that?
It is possible this could be a False Positive from Windows Defender (or some trace remnant) so we need to know what else is going on to investigate and choose further diagnostics if needed. -- It takes a disaster to make a woman out of a female Microsoft MVP/Windows Security 2003-2009 Proud Member of ASAP (Alliance of Security Analysis Professionals) |
|
 | CJ,
Due to time constraints I was forced to move on, so I have done a re-install of Vista. |
|
 | I guess we'll call this a "wrap" then 
Thanks for letting us know! |
|