I should have titled it to be more relevant to the actual topic and only thought of that in hindsight. Ivan Sazhin 28.10.2013 06:14 Hello!Thank you for your investigation!Could you please send a sample of this Trojan to our VirLab so they could take a look at it?Please put a sample

Some viruses know the Antispy/Antivirus software by name so block it, So please try this, Go to the MBAM program folder here C:\Program Files\Malwarebytes' Anti-Malware {double click the folder} rename mbam.exe I still want to keep my PC but I want the malware to be completely gone, so in my situation would... I have a backdoor Trojan (malware) in AntiVirus, Firewalls and System Security I have a backdoor Trojan (malware) on my computer and I couldn't be bothered to reformat my PC until TIA, My System Specs You need to have JavaScript enabled so that you can use this ... http://forums.superantispyware.com/index.php?/topic/8163-solved-how-to-remove-this-trojan-is-it-really-a-trojan-or-something-else/

Rainmaker Software

Apart from that unforgivable sin in your eyes-that does not mean that the advice is bad does it.? if not you should look into some better virus scanners. it were then instead of 1 trojanthen found 5 trojans.

It may yet be resting in an install file you downloaded. To do so: go to control panel > system > system restore > check mark "Turn off system restore on all drives" > apply > answer "yes" > OK > reboot. What's New? Turn on any router or hub that your computer may be plugged into. 8.

Does anyone have a clue what it's for or have it too ? Pro Pc Cleaner Update the AV software with new definitions from the 'net. 5. Then again, it could be some malware, and AVs won't pick that up. https://www.zonealarm.com/forums/showthread.php/71659-Solved-Fix-for-trojan-in-your-System-Restore-files Also if you can, do a system restore first.

Googling for the .rhk file extension gave me a bit of a scare as most sites suggest this is associated with Trojan. I found the solution by typing the result of the search into google rather than the name of the virus/adware/spyware whatever. so new malware. I have scanned with MBAM and run Ccleaner, even D/L'd superantispyware after reading a thread in here today and ran that.

Pro Pc Cleaner

I found the solution by typing the result of the search into google rather than the name of the virus/adware/spyware whatever. More Help Then again, it could be some malware, and AVs won't pick that up. Rainmaker Software If you have a recovery disk or a recovery partition in windows even then this should be fairly simple. I can find no answers online (that i actually understand) to solve this problem.

But do I still have to worry about the fact that someone may have hacked their way into my personal information? Does anyone have a clue what it's for or have it too ? Forum New Posts FAQ Calendar Forum Actions Mark Forums Read Quick Links Today's Posts Advanced Search Forum ZoneAlarm Forums Security Issues [Solved] Fix for trojan in your System Restore files.. Hi all, Not quite sure when this started but roughly somewhere around July I noticed a file called NTUSER.rhk that resides in "Users\My username".

The solved exercises included have been taken from courses taught in the Communication Systems department at the EPFL.. You can manually remove the Trojan following the steps provided here: http://www.411-spyware.com/rem.....-to-remove If you don't want to do that, You can probably download and buy some software that would delete it, Uploaded it to VirusTotal : MD5 87f1a5944f426b383ebc5e3b168dfff7 SHA1 1dcd6e9d8a09952b617f7d7b042e34670f546a0d SHA256 61cc385149a1cab8ba6a450ad81cb3a5c579f79b66c1ad887f0522d75269d93f ssdeep 12288:eTR5DehlV7OEUzACybL475wJQm+mgpwDjsdxlZI+H6nKhXNru63C:e15EbhUzACybL4npyMH/XNru63C File size 1.5 MB ( 1622016 bytes ) File type unknown Magic literal MS Windows registry file, NT/2000 but its is a lenghty process but if the SR trick doesn't work..

I just wonder if anyone else has it. When it's present it updates itself as I notice the time stamp changing but not necessarily on a daily basis. Does anyone know what's going on?

The firewall warns me that I'm then not protected until I restart.

Yes.. If this is your first visit, be sure to check out the FAQ by clicking the link above. I am not sure what it wrong and I have also tried other anti virus programs and it does not show up. Thank you for your Feedback..

tommorrow will visit him and remove it again ( with knoppix too ).It was recognized - but seems to be a new variant ? but now it runs extremely slow and will freeze for long periods of time and sometimes the keyboard doesn't work and the mouse pad doesn't work at all! Posts : 9,373 W10Prox64 New 24 Oct 2016 #8 fdegrove said: ...It appears to be benign so I guess it is indeed an application octet-stream as you suggest. More detailed step-by-step instructions for malware removal here.

