Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
Trojan Horse Generic 12
   
BullGuard Antivirus Forum > Virus Removal > Removal Help > Trojan Horse Generic 12  
Forum Quick Jump
 
New Topic Post reply to : Trojan Horse Generic 12 Printable version of : Trojan Horse Generic 12
[ << Previous Thread | Next Thread >> ]

AMDBS
New Member


Date Joined Nov 2008
Total Posts : 1
 
   Posted 11-1-2008 12:58 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
My pc has been infected by the Trojan Horse Generic 12 virus. Can anyone help give me instructions in how to remove it?
 
Thx
Back to Top
 

Chuck Gary
New Member


Date Joined Nov 2008
Total Posts : 5
 
   Posted 11-5-2008 1:32 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
"My pc has been infected by the Trojan Horse Generic 12 virus."
So has mine. I need help too.
I have tried every free anti-virus/anti-spyware there is available on the market, and I am at a point where I am willing to pay for the first tool that effectively removes it.
I tried Lavasoft, McAffee, Norton, Super-Antispyware, God knows what else! Grisofts AVG Free is what I have installed and it has been sufficient up till now. (It's gotten me out of some blackholes before!) But, this time...all the scanning and cleaning tools seem to be able to do is catch and detect and heal or vault or quarantine, are the infectED files, (*?*?*.dll's in the system32, system_information_volume/_restore and temp folders), but none seem to be able to catch the infectOR, which seems to be very well hidden. They even detected bogus registry keys and fake "favorites" browser bookmarks.
I have repaired all, but still my (AVG) resident shield pops up with "Trojan horse Generic 12, heal vault or ignore." My vault is filling up, but still I feel unprotected. Also, another sympton is rogue anti-spyware sites that pop-up and start scanning (for as long as I let them) my pc. One of the consequences that I read in the KB's that upsets me most is that some of these malicious codes could read my online banking passwords and empty out my account. Now THAT really worries me! And it seems very strange that so far none of the usual tools work.
Can anyone out there help us please? Do you know for a fact that BullGuard can effectively remove this trojan?
I'm willing to pay, but I need to see it removed first.
Thanks,

Chuck
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 11-5-2008 9:21 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Chuck Gary - > Please follow this guide:
 
and save it on the desktop. Then double click on it (Fix_download.exe).
You may have to allow the program to download files from the web! 

The program download the necessary cleaning programs. Once the program 
is downloaded, there will be a folder on your desktop named 
Fix.   – if the instructions not automatically opens, so 
double-click "FIX_manual.htm" in Fix folder. 

Please follow the instructions and copy the logs here,
in your ownTopic.
 
Note : Fix_download.exe is detected by some antivirus programs  as a "RiskTool" /infection; it is not a virus. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
---------------------------------------------------------------------------------
 
 
AMDBS - Please follow the same guide, and post the log files in this topic



Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Paparimskiy
New Member


Date Joined Nov 2008
Total Posts : 1
 
   Posted 11-5-2008 11:31 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
I have the same problem.
 
But I couldn't download "http://www.ctrlaltdel.dk/Fix_download.exe". There is an error like" your disk is protected to rewrite" or " your disk is full".
 
What should I do?
Back to Top
 

Chuck Gary
New Member


Date Joined Nov 2008
Total Posts : 5
 
   Posted 11-8-2008 1:41 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Touch --> Please understand my reasons for not posting publicly my disk's directory structure, I'm sure your intentions are quite honorable, notwithstanding. All I'd like to know is whether BullGuard's Trial, or even only the Full paid version, is efficient against this Trojan, (and against Worm/Autoit.DMJ which AVG seems to think I've become infected with, since I downloaded your Fix_Download.exe), clear that I am on the fact that no single tool on the market is effective against all threats.
I'm just asking if THIS tool (BullGuard's) is effective against THIS threat.

Thank you.

Chuck
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 11-8-2008 6:32 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Ok. I understand smile
 
 
I assume you have Bullguard on the computer, if you have, please post the log from latest scan, as I need to see what we are dealing with.


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Chuck Gary
New Member


Date Joined Nov 2008
Total Posts : 5
 
   Posted 11-9-2008 4:11 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Touch,

Yes, I do have BullGuard Trial installed and it is now reporting all is clean. It seems to be quite a powerful tool, complete, thorough, user-friendly, straightforward and flexible enough to allow the user various options.
I think you ought to recommend it more. I surely do.
I am seriously considering buying the full version, once the trial period has expired.
Thank you for your time.

Chuck
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 11-9-2008 7:39 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
That´s good news. You´re right - BG is a powerfull tool, and I´m glad to hear you will recommend it. The reason for not recommending Bullguard or any other purchase programs is, this forum is a free forum, even it´s called Bullguard forum. If you click on the link in My signatur, you´ll see we are all independent volunters. We can/will therefore only use/suggest Freeware programs.
 
 
If a user specific ask for a good antivirus program He is willing to pay for, I´ll suggest he try BG
 
 
Of course, when a Bullguard user have problems, am I able to help him - or at least try smile
 
 


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

Chuck Gary
New Member


Date Joined Nov 2008
Total Posts : 5
 
   Posted 11-9-2008 10:25 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
I understand your viewpoint, and I agree that's as it should be.
In my original post I did mention that "I have tried every free anti-virus/anti-spyware there is available on the market, and I am at a point where I am willing to pay for the first tool that effectively removes it [...] Do you know for a fact that BullGuard can effectively remove this trojan? I'm willing to pay, but I need to see it removed first."
Perhaps I should have added "...by BG" for clarity.
Anyway, again thank you. Keep up your good job, as I mentioned somewhere, it's an unfair war (and getting unfairer: I'd say 70 or 80% of googled free tools are rogues nowadays), and we need all the volunteers we can get, willing and able to help, both users and publishers.
My compliments to you, sir, and to the Alliance.

Chuck Gary
PK-Publishers
Back to Top
 

snowboardag
New Member


Date Joined Jan 2009
Total Posts : 2
 
   Posted 1-2-2009 9:17 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Paparimskiy - I had the EXACT same problem.  After spending all day on this, I have finally (knock on wood), got things under control.
 
I wish I could take credit for the below, but I can't.  This is a tedious, long process, but it works (so far).  You need to download 4-5 different programs.  I ran each program twice (to make sure I had coverage), restarted in between, and then at the end, ran all of them sequentially after eachother to make sure I had final resolution.  No. 1 takes care of a lot, but don't stop there, the other ones picked up other items.
 
To me, it appears that "Internet Explorer" is the trigger of this trojan horse so initially, you have to take the hit to get the first download, but after that, you should be well on your way to fixing the problem.
 
 
All these programs can be downloaded from www.download.com and they are FREE.
 
"You need to run these 4 essential steps to remove all the spyware on your computer.

1. Run Malwarebytes Anti-Malware

2. Run the anti spyware removal programs spybot

3 Run Superantispyware

4. Run a complete scan with free curing utility Dr.Web CureIt!

Install ThreatFire
ThreatFire, features innovative real-time behavioral protection technology that provides powerful standalone protection or the perfect complement to traditional signature-based antivirus programs offers unsurpassed protection against both known and unknown zero-day viruses, worms, trojans, rootkits, buffer overflows, spyware, adware and other malware.

Install a good antivirus in your computer.
Keep your antivirus updated. If automatic updates are available, configure your antivirus to use them.
Keep your permanent antivirus protection enabled at all times. "
<!-- google_ad_section_end -->
Back to Top
 

JJmars
New Member


Date Joined Jan 2009
Total Posts : 1
 
   Posted 1-16-2009 5:08 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Snowboardag, the info you gave Paparimskiy was exactly what I needed to save my wives computer!
THANK YOU!!
Back to Top
 

snowboardag
New Member


Date Joined Jan 2009
Total Posts : 2
 
   Posted 2-17-2009 7:21 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Glad it worked for you JJmars! Thanks for letting me know it worked. Everything appears to be back to normal for me, and it was on my 2 home PCs. Take care.
Back to Top
 

UST
New Member


Date Joined Feb 2009
Total Posts : 3
 
   Posted 2-18-2009 3:23 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Last night out of nowhere both my computers stopped allowing me to access FRONTPAGE. Trojan Horse Generic 12 BQRU virus showed up on AVG scan. Odd as I was only using my laptop to access FRONTPAGE. Now both My laptop and PC cannot execute FRONTPAGE. I am no expert but I can follow instructions. No amount of quaranteen or remove allows me to access FRONTPAGE and this thing is related to all FRONTPAGE .exe effectively stopping access. AVG scans point this Trojan attacking just FRONTPAGE.

So, I landed here and am trying BULLGUARD SCAN free trial.

Will it remove this Trojan Horse Generic 12.BQRU? Do I need to buy the program? Is there something I need to do besides activating a 3-4 hr scan which I am doing?


I am stymied. :(

Post Edited (UST) : 18-02-2009 13:24:36 GMT

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 2-18-2009 4:23 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Hello UST
 
 
You can try Bullguard for free in two months.
 
I can´t tell if it can remove Trojan Horse Generic 12.BQRU
 
I´ll therefore suggest you post the antivirus scan log, in this topic
 


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

UST
New Member


Date Joined Feb 2009
Total Posts : 3
 
   Posted 2-18-2009 4:34 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Hello Touch, I guess you mean the log generated from Bullguard? Will do when it is completed. Is that safe to post? I posted my issue here because I found similar posts but not sure what to do (60 years old and getting lamer by the day)
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 2-18-2009 6:27 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Yes, I mean the log generated from Bullguard (it is safe mode to post it), and it´s okay to post in this topic smile


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

UST
New Member


Date Joined Feb 2009
Total Posts : 3
 
   Posted 2-18-2009 8:38 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Golly - huge notepad file with alot of personal stuff. Not sure about posting it in public.
 
teeny piece:
 
BullGuard Scan Report
Scan Profile: "My Computer"
___________________________________________________________

----[  System Info  ]------------
OS Version: Microsoft Windows XP Professional - Service Pack 3 (Build 2600) [2 * x86 CPUs]
Physical memory: 2048 MB
System up-time: 0 days, 12 hours, 59 minutes, 38 seconds
BullGuard up-time: 0 days, 12 hours, 58 minutes, 18 seconds
TopLayer Version: 8, 5, 0, 17
FileSpy5 Version: N/A
BdFileSpy Version: 3.14.0.64 built by: WinDDK
BsFileScan Version: 8, 5, 0, 70
Reconn Version: 1.1.0.5 built by: WinDDK
MailProxy Version: 8, 5, 0, 20
AntiVirus Version: 8, 5, 0, 48
----[  Scan Parameters  ]------------
Folders to scan:
    A:\
    C:\
Excluded folders:
    None
Files to scan:
    None
Scan type:
    [o] Scan all files
    [ ] Scan program files only
    [ ] Scan custom extensions:
    [X] Exclude user extensions: lnk
    [X] Scan boot sectors
    [X] Scan packed files
    [X] Scan archives
    [X] Scan emails
    [X] Scan running processes
    [X] Scan registry
    [X] Scan IE cookies
    [X] Enable heuristic detection
    [ ] Scan default action
___________________________________________________________
Scan Statistics
___________________________________________________________
Scan started: Wednesday, February 18, 2009 12:43:21
Scan duration: 0 days, 05 hours, 22 minutes, 39 seconds
Completion status: Successful
Total files scanned: 1450131
Total files skipped: 78041
Identified viruses: 21
Scan speed: 74.91 files/sec
Files skipped:

Post Edited (UST) : 18-02-2009 18:41:37 GMT

Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 18005
 
   Posted 2-19-2009 7:07 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
If you still have Identified viruses: 21

 
I´ll suggest you proceed as follows ->
 
Once installed, run CCleaner click the Windows tab

Select the following:
Internet Explorer:
Temp Internet
History
Recently Typed URLs
Delete Index.dat files

System:
Empty Recycle Bin
Temporary Files
Memory Dumps
Chkdsk File Fragments
Old Prefetch Data


Next: click Options click the Settings tab
Uncheck: "Only delete files older than 48 hrs.", click Ok

 
Then click Run Cleaner (bottom right) then Exit
Reboot
 
Please download Malwarebytes' Anti-Malware:
 
Or here:
 
 to your desktop.
 
Double-click mbam-setup.exe and follow the prompts to install the program.
                     
At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch


Malwarebytes' Anti-Malware, then click Finish.
                     
If an update is found, it will download and install the latest version.
 
Please connect all your external hard drive/flash drive before running Malwarebyte
                     
Once the program has loaded, select Perform full scan, then click Scan.
                     
When the scan is complete, click OK, then Show Results to view the results.
 
Be sure that everything is checked, and click Remove Selected.
 
When completed, a log will open in Notepad. Please save it to a convenient location.
 
 
 
NB: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts. Click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.
 
 
to download HJTinstall.exe
Save HJTinstall.exe to your desktop.
Double click on the HJTinstall.exe icon on your desktop.
By default it will install to C:\Program Files\Trend Micro\Hijack This.
Click I accept
Click on the Do a system scan and save a log file button. It will scan and then ask you to save the log.
Click Save to save the log file and then the log will open in notepad.
Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
Come back here to this thread and Paste the log in your next reply.
 
DO NOT have Hijack This fix anything yet.
Most of what it finds will be harmless or even required.
 
Post hijackthis log along with Malwarebytes' Anti-Malware log
 


Do NOT post your problem in someone elses thread.
A non-profit, volunteer network.

Back to Top
 

lei17
New Member


Date Joined Feb 2009
Total Posts : 1
 
   Posted 2-19-2009 10:54 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Help! For the last couple of weeks, my antivirus keeps notifying me about this

TROJAN HORSE GENERIC 12.AQDS.
The file path is - C:\Windows\System32\msqpdxqnshiqos.dll
(it says that it is an iexplorer.exe)

i have tried both Kasperksy and AVG but nothing worked. whenever i tried deleting it on the virus vault it says that file cannot be found. so i went to look for the file myself, and there's no such file. my vault is filling up everytime my av scans for infections. my laptop seems to be affected by this virus because sometimes it just shut down itself and turns into a blue screen. it happened to me more than thrice already. HELP!
Back to Top
 

Betelgeuze
New Member


Date Joined Dec 2009
Total Posts : 1
 
   Posted 12-2-2009 7:07 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
What might help is what I did (just spent whole afternoon trying to fix this, had a variant I have not found anywhere, Trojan Horse Generic 12.BHRN). AVG Free recognized it, though).

Symtom: coulnd't type anymore.

1) Scan my whole computer with AVG Free and manually delete the infected files (as it said my virus vault wasn't large enough to remove them otherwise, although I have 250 GB free on my harddisk and I set the settings of the max size of the virus vault to unlimited).

2) Restored an earlier version of my system (I have Vista):
2a) click on "Configuration screen" (open Computer-> you'll see it as one of the last categories)
2b) click on "Back-up center"
2c) click on "put on back up" and back up an earlier version of your system.

It worked for me, at least!
Back to Top
 

TGjordo4
New Member


Date Joined Dec 2011
Total Posts : 1
 
   Posted 12-21-2011 7:06 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
I have just got a notice from AVG free that says it has detected a trojan (trojan horse downloader generic 12.AILN). I cannot heal, remove to virus vault, force remove virus vault and I don't want to ignore it either.

Please Help

Jordon
Back to Top
 

Robert Mateescu
Forum Moderator




Date Joined Sep 2011
Total Posts : 157
 
   Posted 12-22-2011 12:48 (GMT +2)    Quote: Trojan Horse Generic 12Alert an admin about: Trojan Horse Generic 12
Hello Jordon,

Please start a new topic, since this post is pretty old.
Meantime, download and run a full computer scan using MalwareBytes' Antimalware. Post the log :) .


Robert Mateescu
Support Technician EN
support@bullguard.com
www.bullguard.com

Download the Free Trial version of BullGuard Internet Security 12

You have a BullGuard related problem? Contact our Support team directly: www.bullguard.com/support.aspx!

Post Edited (Robert Mateescu) : 21-12-2011 22:55:53 GMT

Back to Top
 
New Topic Post reply to : Trojan Horse Generic 12 Printable version of : Trojan Horse Generic 12
 
Forum Information
Currently it is Monday, May 21, 2012 10:38 PM (GMT +2)
There are a total of 82.921 posts in 18.688 threads.
In the last 3 days there were 2 new threads and 3 reply posts. View Active Threads
Who's Online
This forum has 33970 registered members. Please welcome our newest member, JohnKWagner.
36 Guest(s), 0 Registered Member(s) are currently online.  Details
5 Latest Threads
BullGuard Support Hijacked :) (0)21-05-2012 19:36:34 (Andreea-Luciana Ostache)
Empty tmp folders (14)21-05-2012 19:31:13 (Andreea-Luciana Ostache)
Bogus BullGuard Websites (0)21-05-2012 14:37:08 (Robert Mateescu)
Multiple Virus Issues (7)19-05-2012 15:44:59 (Touch)