User User name Password  
   
Wednesday 22.1.2025 / 09:04
Search AfterDawn Forums:        In English   Suomeksi   På svenska
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > trojan problems
Show topics
 
Forums
Forums
Trojan Problems
  Jump to:
 
Posted Message
baha31
Suspended due to non-functional email address
_
4. August 2006 @ 07:15 _ Link to this message    Send private message to this user   
I was surfing the net last night and viewing tutorials for photoshop cs2 and the last link I clicked on from Tutorialoutpost, the site opened and a quick download started and then AVG reported that I had a Trojan Virus.

These are what AVG found & are in the virus vault:
"Trojan horse Downloader.Agent.EQR" "C:\WINDOWS\system32\systg8.exe" "8/4/2006 9:52:59 AM" "systg8.exe" "9.83 KB"
"Virus identified Exploit.CVE-2005-1790" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\0PUVK1AF\fillmemadv422[1].htm" "8/3/2006 11:38:51 PM" "fillmemadv422[1].htm" "4.22 KB"
"" "" "Trojan horse PSW.Generic2.DPY" "C:\guaxn.exe" "8/3/2006 11:39:10 PM" "guaxn.exe" "71 KB"
"" "" "Trojan horse Generic.SUZ" "C:\dahwnclb.exe" "8/3/2006 11:39:21 PM" "dahwnclb.exe" "32 KB"
"" "" "Trojan horse Downloader.Agent.ENG" "C:\uxukrbf.exe" "8/3/2006 11:39:27 PM" "uxukrbf.exe" "52 KB"
"" "" "Trojan horse Downloader.Agent.ENG" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\0FEPC54L\rkgoaid[1].htm" "8/3/2006 11:39:36 PM" "rkgoaid[1].htm" "52 KB"
"" "" "Virus found SpySheriff" "C:\Program Files\secure32.html" "8/3/2006 11:41:52 PM" "secure32.html" "2.97 KB"
"" "" "Virus found SpySheriff" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\496V0P6V\gsawe[1].htm" "8/3/2006 11:42:18 PM" "gsawe[1].htm" "2.97 KB"
"" "" "Trojan horse Generic.UWP" "C:\Program Files\vcessb.exe" "8/3/2006 11:42:31 PM" "vcessb.exe" "4 KB"
"" "" "Trojan horse Proxy.EAN" "C:\errra.exe" "8/3/2006 11:42:39 PM" "errra.exe" "14.38 KB"
"" "" "Trojan horse Proxy.EAN" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\CDOX27W1\uvdzxtsa[1].htm" "8/3/2006 11:42:53 PM" "uvdzxtsa[1].htm" "14.38 KB"
"" "" "Trojan horse Downloader.Generic.ZQO" "C:\orromeyq.exe" "8/3/2006 11:43:03 PM" "orromeyq.exe" "1.36 KB"
"" "" "Trojan horse Downloader.Agent.13.AI" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\UP0B6LIP\xpladv422[1].wmf" "8/4/2006 1:42:17 AM" "xpladv422[1].wmf" "15.66 KB"
"" "" "Trojan horse PSW.Generic2.DPY" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\WFF3Y4P1\ifxsr[1].txt" "8/4/2006 1:42:17 AM" "ifxsr[1].txt" "71 KB"
"" "" "Trojan horse Generic.UWP" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\Y7YB696F\lbjfrdykf[1].txt" "8/4/2006 1:42:17 AM" "lbjfrdykf[1].txt" "4 KB"

I then ran Ewido:
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 10:59:05 AM 8/4/2006

+ Scan result:



C:\WINDOWS\system32\tmp_u.dll -> Downloader.Small.cyn : No action taken.
F:\Documents and Settings\Administrator\Cookies\administrator@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.


::Report end

The result is that my computer is slow, I can only connect to the internet if I have the Internet Gateway enabled, and I can not change my firewall settings:"Due to an unidentified problem, Windos cannot display Windows firewall Settings."

I also ran Vundofix and it found nothing (not in safe mode). Need help please, I think something is still wrong!
Senior Member
_
4. August 2006 @ 09:23 _ Link to this message    Send private message to this user   
Please post a HijackThis log

afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > trojan problems
 

Digital video: AfterDawn.com | AfterDawn Forums
Music: MP3Lizard.com
Gaming: Blasteroids.com | Blasteroids Forums | Compare game prices
Software: Software downloads
Blogs: User profile pages
RSS feeds: AfterDawn.com News | Software updates | AfterDawn Forums
International: AfterDawn in Finnish | AfterDawn in Swedish | AfterDawn in Norwegian | download.fi
Navigate: Search | Site map
About us: About AfterDawn Ltd | Advertise on our sites | Rules, Restrictions, Legal disclaimer & Privacy policy
Contact us: Send feedback | Contact our media sales team
 
  © 1999-2025 by AfterDawn Ltd.

  IDG TechNetwork