Share via

TrojanDownloader:JS/Jesdow.B!url only detected by defender and MS safety scanner not by AVG, Mcafee or any other 3rd party scanner, can't be removed or quarantined!

Anonymous
2018-03-31T21:34:47+00:00

Need help on this topic!

Just detected a nasty trojan on my desktop under the name: TrojanDownloader:JS/Jesdow.B!url

It can only be detected by a complete windows defender scan or a complete MS safety scan.

Any other 3rd party antivirus programs (e.g. McAfee, AVG, Norton etc) do not detect this trojan. On complete scan modes for the record.

Windows defender and MS safety scanner both detect this virus but they can not remove it or place it in quarantine. 

After the complete scan mode in windows defender it states: take action. When clicked on it searches for solutions (this takes well over an hour) but can not find any solutions! 

After a complete scan in MS safety scanner it detects 2 corrupted files, it automatically begins it removal process, shows the names (TrojanDownloader:JS/Jesdow.B!url). It says they're removed but they are NOT!

I'm using windows 10 64 bit Home Premium Edition. Its completely updated, the windows software, defender, real-time security, you name it its all up to date. I also did a few OFFLINE scans. Between every defender scan (complete scans) and every MS safety scanner I restarted my desktop. The computer has been rebooted after EVERY single possible scan. 

Windows and all of it belongings (software are fully up to date). It's a new computer by the way.

All my settings in defender (I triple checked) are how they should be.

My guess is that Microsoft's database isn't fully aware of this new trojan and thus can't remove it or whatever. It's a new trojan so they haven't been presented on this topic yet. 

Any useful help would be much appreciated!

Windows for home | Windows 10 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

Answer accepted by question author

Anonymous
2018-04-01T00:54:44+00:00

Just meant as an info:

Since March 1, 2018 Microsoft widened their "rules" for what kind of things get "detected" by MS products as "threats".

IMO, they tend to be a bit over-eager...

Sometimes just an old link which is somewhere "sleeping" on your computer gets nowadays quite often "detected" as a "threat". Same applies to lots of pre-installed programs etc which came with your computer when you bought it. You might even already have uninstalled them but in your "recovery" drive they are still existing (even if not anymore installed)....

You might want to read:

Was this answer helpful?

5 people found this answer helpful.
0 comments No comments

19 additional answers

Sort by: Most helpful
  1. Anonymous
    2018-04-01T00:37:56+00:00

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  2. Anonymous
    2018-04-01T00:26:52+00:00

    Donny,

    I hope that you're understanding that this "detection" is just a false positive detection by MS' products.

    See the more recent replies in the "discussion" to which you also posted: https://answers.microsoft.com/en-us/protect/forum/protect_scanner-protect_scanning-windows_10/trojandownloaderjsjesdowburl/7f1240f2-9db4-488b-a37d-583c7ef94df9

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  3. Anonymous
    2018-03-31T22:19:15+00:00

    I immediately uninstalled the 3rd party antivirus scanner after a complete scan, every time -> windows defender is always set as my main! 

    I had a feeling that it's a very recent trojan because I could find little to no info on TrojanDownloader:JS/Jesdow.B!url

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments
  4. Anonymous
    2018-03-31T22:10:52+00:00

    From what I can see, this appears to be a new one less than two days old, so security programs have to access it and supply updates that are apparently not ready yet. You don't actually have all these installed, do you?

    "ny other 3rd party antivirus programs (e.g. McAfee, AVG, Norton etc) do not detect this trojan."

    You can try these tools. For all we know, it may even be a false positive.

    AdwCleaner (Free)

    http://www.bleepingcomputer.com/download/adwcleaner/

    Malwarebytes Anti-Malware

    http://www.malwarebytes.org/products/malwarebytes_free

    Free trial reverts to manual scanner after 14 days.

    https://www.malwarebytes.com/trial/#trial

    Zemana AntiMalware (Free)

    https://www.bleepingcomputer.com/download/zemana-antimalware/

    HitmanPro (30 day free trial if needed)

    http://www.surfright.nl/en/hitmanpro

    TDSSKiller Rootkit Removal Utility

    http://www.bleepingcomputer.com/download/tdsskiller/

    RogueKiller

    http://www.bleepingcomputer.com/download/roguekiller/

    Was this answer helpful?

    4 people found this answer helpful.
    0 comments No comments