[phpBB Debug] PHP Notice: in file /includes/db/dbal.php on line 110: Undefined array key "cached"
[phpBB Debug] PHP Notice: in file /includes/db/dbal.php on line 111: Undefined array key "normal"
[phpBB Debug] PHP Notice: in file /includes/db/dbal.php on line 112: Undefined array key "total"
[phpBB Debug] PHP Notice: in file /includes/session.php on line 885: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/session.php on line 885: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/session.php on line 885: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3391: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3393: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3394: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
[phpBB Debug] PHP Notice: in file /includes/functions.php on line 3395: Cannot modify header information - headers already sent by (output started at /includes/functions.php:2922)
ComputerDebat.dk • Vis emne - Vira, spyware, og adware inficeret... HJÆLP SØGES

Vira, spyware, og adware inficeret... HJÆLP SØGES

Debatter om spyware og virus

Vira, spyware, og adware inficeret... HJÆLP SØGES

Indlægaf kill-spyware skrevet ons 17. maj, 2006 20:41

Hej,
Jeg er fornylig blevet angrebet af alverdens vira, adware og spyware.
Når jeg starter min computer er det første der sker, føgende:

"DLBTserv.exe - Programfejl"
Instruktionen ved "Ox0012e790" referede hukommelse ved "0x00000000". Hukommelsen kunne ikke "read"
hvorefter jeg kan trykke acepter. (mystisk????)

Efter et stykke tid med forbindlse til internettet sker følgende.
I baggrunden (på startlinien) dukker pludselig to vinduer op. "ULWindowSeek" og "ULWindowUrl"
Et par sekunder efter åbner Norton og siger: HØJ RISIKO:
win5.tmp.exe - med følgende sti: C:\windows\temp -forsøger at angribe

Jeg udfører mange virus-scanninger ved hjælp af henholdvis Spy Sweeper, Spyware Nuker XT, Registry Mechanic.
Isr Spyware Nuker XT opfanger mange af viraene.

fx denne: Trojan.Mssearchnet

Spyware Nuker XT Detection Report
Scan Started: 05-16-2006 18:04
Software Version: 4.6.54.1650
Database Version: 4/24/2006 08:40:24 AM
Operating System: Windows XP 5.1.2600 [Service Pack 2]
Web Browser(s): IE:6.0.2900.2180;

IEAccess
749-46382 Dials premium rate toll charge phone numbers to gain access to adult content.
Registry Value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo jlngcb
Registry Value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo loapdp
Registry Value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo nogcdp
Registry Value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo ohjaca
Registry Value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo jlngcb
Registry Value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo loapdp
Registry Value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo nogcdp
Registry Value HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo ohjaca
Registry Value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo jlngcb
Registry Value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo loapdp
Registry Value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo nogcdp
Registry Value HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0:goicfboogidikkejccmclpieicihhlpo ohjaca
Kazaa
953-55546 Bundles adware programs and reinstalls them after they have been removed.
Registry Key HKEY_CLASSES_ROOT\magnet
Registry Key HKEY_LOCAL_MACHINE\SOFTWARE\Magnet
Trojan.Mssearchnet
1160-61971 Silently connects to a remote location and downloads known spyware. Hijacks browser's homepage and displays a system tray spyware message to entice the user to install the associated softwares.
Folder C:\WINDOWS\system32\1024
File C:\WINDOWS\system32\ld3174.tmp
File C:\WINDOWS\system32\ldADE7.tmp


Kan nogen med computer ekspertise hjælpe mig i denne sag.
Det ville være yderst behageligt.

Tak.. med venlig hhilsen Spyware-killer

PS: I windows TEMP kommer der ofte flere forskellige filer ved navn: Win5.tmp Win6, win7 etc.
kill-spyware
Ny Bruger
Ny Bruger
 
Indlæg: 1
Tilmeldt: ons 17. maj, 2006 20:28

Indlægaf MarsQ skrevet tors 18. maj, 2006 09:58

jeg har haft samme problem med Trojan.
du kan hente Microsoft Defender på http://www.microsoft.com

Trojan er næsten ikke til at fjerne, hvis jeg var dig vil jeg bare formatere min PC
Brugeravatar
MarsQ
Aktiv Bruger
Aktiv Bruger
 
Indlæg: 197
Tilmeldt: lør 21. jan, 2006 17:32
Geografisk sted: Lyngby


Tilbage til Virus / Spyware

Hvem er online

Brugere der læser dette forum: Ingen tilmeldte brugere og 0 gæster

cron