help with virus infection...

Reply

Join Date: Feb 2004
Posts: 457
Reputation: oalee is an unknown quantity at this point 
Solved Threads: 12
Team Colleague
oalee's Avatar
oalee oalee is offline Offline
cyberkill(ed)

help with virus infection...

 
0
  #1
Mar 19th, 2004
I'm having this problem with one of my computers. I sure its infected with something but i'm not sure what it is, I think it's a trojan. It keeps sending e-mails to randomly generated users to specific servers. i.e. <random>@aol.com. since the e-mail client's smtp server is not set up, it doesn't send any emails but rather displays an error msg. Another thing is, my windows folder is c:\windows but it keeps on creating a c:\winnt\system folder and creates an .exe file with random file names. i usually delete them but sometimes they can't be deleted coz' the files are in use... any help??

BTW, I'm running win2k with SP4 on an Intel p4 and all of the available updates from MS windows update.
Last edited by oalee; Mar 19th, 2004 at 10:35 pm. Reason: incomplete info... 4got to add something...
*-=-=-=-=-=-=-=-==-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
*I am the oceans.. Still, still yet always in constant *
*motion.Quiet but never afraid,Silent but always awake*
*And no God nor Man can control where you roam.. no *
*boundaries cast forever you last.... *
*=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
Reply With Quote Quick reply to this message  
Join Date: Feb 2004
Posts: 9,982
Reputation: crunchie is a splendid one to behold crunchie is a splendid one to behold crunchie is a splendid one to behold crunchie is a splendid one to behold crunchie is a splendid one to behold crunchie is a splendid one to behold crunchie is a splendid one to behold 
Solved Threads: 754
Moderator
Featured Poster
crunchie's Avatar
crunchie crunchie is online now Online
Spyware Killer

Re: help with virus infection...

 
0
  #2
Mar 20th, 2004
Might be an idea to have an online scan, so go to http://housecall.trendmicro.com/ for an on-line scan & set it to autoclean for you.
Reply With Quote Quick reply to this message  
Join Date: Feb 2004
Posts: 457
Reputation: oalee is an unknown quantity at this point 
Solved Threads: 12
Team Colleague
oalee's Avatar
oalee oalee is offline Offline
cyberkill(ed)

Re: help with virus infection...

 
0
  #3
Mar 23rd, 2004
Originally Posted by crunchie
Might be an idea to have an online scan, so go to http://housecall.trendmicro.com/ for an on-line scan & set it to autoclean for you.
Thanks, I'll give it a try.
*-=-=-=-=-=-=-=-==-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
*I am the oceans.. Still, still yet always in constant *
*motion.Quiet but never afraid,Silent but always awake*
*And no God nor Man can control where you roam.. no *
*boundaries cast forever you last.... *
*=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
Reply With Quote Quick reply to this message  
Join Date: Mar 2004
Posts: 381
Reputation: Yzk is an unknown quantity at this point 
Solved Threads: 14
Yzk's Avatar
Yzk Yzk is offline Offline
Posting Whiz

Re: help with virus infection...

 
0
  #4
Mar 23rd, 2004
that really sounds eery, what those people can do, to your personal data...
- Yzk
Reply With Quote Quick reply to this message  
Join Date: Feb 2002
Posts: 626
Reputation: MAD_DOG is on a distinguished road 
Solved Threads: 15
MAD_DOG's Avatar
MAD_DOG MAD_DOG is offline Offline
Practically a Master Poster

Re: help with virus infection...

 
0
  #5
Mar 23rd, 2004
http://www.pandasoftware.com/actives...2.asp?idlang=2

Go here I always recommand it, it's free easy and works go here do a full system scan I also would recommand Spybot & Adaware.
Jimmy
E-Mail - jimmy@fiberops.net
Chief Information Officer (CIO) of FiberOps
Reply With Quote Quick reply to this message  
Join Date: Feb 2004
Posts: 457
Reputation: oalee is an unknown quantity at this point 
Solved Threads: 12
Team Colleague
oalee's Avatar
oalee oalee is offline Offline
cyberkill(ed)

Re: help with virus infection...

 
0
  #6
Mar 23rd, 2004
I think i got rid of it from Trend Micro's housecall... i'll give the pandasoftware a try just to make sure.
Originally Posted by Yzk
that really sounds eery, what those people can do, to your personal data...
I just hate them s2pid ppl who does those things... what do they get from doing that anyway?
*-=-=-=-=-=-=-=-==-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
*I am the oceans.. Still, still yet always in constant *
*motion.Quiet but never afraid,Silent but always awake*
*And no God nor Man can control where you roam.. no *
*boundaries cast forever you last.... *
*=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
Reply With Quote Quick reply to this message  
Join Date: Feb 2004
Posts: 457
Reputation: oalee is an unknown quantity at this point 
Solved Threads: 12
Team Colleague
oalee's Avatar
oalee oalee is offline Offline
cyberkill(ed)

Re: help with virus infection...

 
0
  #7
Apr 19th, 2004
oh boy! the same problem just keeps on coming back... any other suggestions???
*-=-=-=-=-=-=-=-==-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
*I am the oceans.. Still, still yet always in constant *
*motion.Quiet but never afraid,Silent but always awake*
*And no God nor Man can control where you roam.. no *
*boundaries cast forever you last.... *
*=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=*
Reply With Quote Quick reply to this message  
Join Date: Aug 2003
Posts: 9,541
Reputation: caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold 
Solved Threads: 492
Team Colleague
caperjack's Avatar
caperjack caperjack is offline Offline
Posting Prodigy

Re: help with virus infection...

 
0
  #8
Apr 19th, 2004
No guarentees, as it could be a couple things, but please do these:

Download the latest version of Ad-Aware at http://www.lavasoftusa.com/support/download/
After installing AAW, and before running the program, FIRST update the reference file following these instructions.
http://www.lavahelp.com/howto/updref/index.html
Now do the following:
- Under Ad-aware 6 > Settings (Gear at the top) > Tweaks > Scanning Engine:
check: "Unload recognized processes during scanning."
- Under Ad-aware 6 > Settings (Gear at the top) > Tweaks > Cleaning Engine:
Check: "Let Windows remove files in use after reboot."
Press "Scan Now"
- Check option "Use Custom scanning options"
- Check option "Activate In-Depth Scan"
- Press "Select drives\folders to scan"
- Select the active partition which is usually C:
Now press "Next" to let Ad-aware scan your drives...
It will find a number of "bad" files and registry keys.
Right-click in that pane and choose "select all"
Now press "Next" again.
It will ask you whether you'd like to remove all checked items. Click OK.
Finally, close Ad-Aware, and reboot.

Then:
Download 'Hijack This!'. http://www.computercops.biz/downloads-file-328.html
Unzip (extract) it to a folder of its own. Then Doubleclick HijackThis.exe (in the new folder), and hit "Scan".
When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, then Ctrl-A to Select All, and copy its contents here. for hijackthis,most of what it lists will be harmless or even essential, don't fix anything yet.
Reply With Quote Quick reply to this message  
Join Date: Feb 2002
Posts: 626
Reputation: MAD_DOG is on a distinguished road 
Solved Threads: 15
MAD_DOG's Avatar
MAD_DOG MAD_DOG is offline Offline
Practically a Master Poster

Re: help with virus infection...

 
0
  #9
Apr 20th, 2004
Good luck buddy they do it to get credit in pissing you off. So we talk about it like we are now. No reward I would love to do something and have everybody every where on radio on TV and on fourms talk about my spyware/virus. That's just me buddy since you seem to be very techy why not a reformat like I always recommand. Unless this is a business we can get into some work arounds. I tend to help people better over voice not text sorry buddy good luck to you keep us informed.
Jimmy
E-Mail - jimmy@fiberops.net
Chief Information Officer (CIO) of FiberOps
Reply With Quote Quick reply to this message  
Join Date: Aug 2003
Posts: 9,541
Reputation: caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold caperjack is a splendid one to behold 
Solved Threads: 492
Team Colleague
caperjack's Avatar
caperjack caperjack is offline Offline
Posting Prodigy

Re: help with virus infection...

 
0
  #10
Apr 20th, 2004
Originally Posted by MAD_DOG
Good luck buddy they do it to get credit in pissing you off. So we talk about it like we are now. No reward I would love to do something and have everybody every where on radio on TV and on fourms talk about my spyware/virus. That's just me buddy since you seem to be very techy why not a reformat like I always recommand. Unless this is a business we can get into some work arounds. I tend to help people better over voice not text sorry buddy good luck to you keep us informed.
Its more fun to try and fix ,formatting is easy
Reply With Quote Quick reply to this message  
Reply

This thread is more than three months old.
Perhaps start a new thread instead?
Message:



Similar Threads
Other Threads in the Windows NT / 2000 / XP Forum
Thread Tools Search this Thread



About Us | Contact Us | Advertise | DaniWeb | Acceptable Use Policy | RSS Feed

©2003 - 2009 DaniWeb® LLC