1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Trojan Problems

Discussion in 'Windows - Virus and spyware problems' started by baha31, Aug 4, 2006.

  1. baha31

    baha31 Guest

    I was surfing the net last night and viewing tutorials for photoshop cs2 and the last link I clicked on from Tutorialoutpost, the site opened and a quick download started and then AVG reported that I had a Trojan Virus.

    These are what AVG found & are in the virus vault:
    "Trojan horse Downloader.Agent.EQR" "C:\WINDOWS\system32\systg8.exe" "8/4/2006 9:52:59 AM" "systg8.exe" "9.83 KB"
    "Virus identified Exploit.CVE-2005-1790" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\0PUVK1AF\fillmemadv422[1].htm" "8/3/2006 11:38:51 PM" "fillmemadv422[1].htm" "4.22 KB"
    "" "" "Trojan horse PSW.Generic2.DPY" "C:\guaxn.exe" "8/3/2006 11:39:10 PM" "guaxn.exe" "71 KB"
    "" "" "Trojan horse Generic.SUZ" "C:\dahwnclb.exe" "8/3/2006 11:39:21 PM" "dahwnclb.exe" "32 KB"
    "" "" "Trojan horse Downloader.Agent.ENG" "C:\uxukrbf.exe" "8/3/2006 11:39:27 PM" "uxukrbf.exe" "52 KB"
    "" "" "Trojan horse Downloader.Agent.ENG" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\0FEPC54L\rkgoaid[1].htm" "8/3/2006 11:39:36 PM" "rkgoaid[1].htm" "52 KB"
    "" "" "Virus found SpySheriff" "C:\Program Files\secure32.html" "8/3/2006 11:41:52 PM" "secure32.html" "2.97 KB"
    "" "" "Virus found SpySheriff" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\496V0P6V\gsawe[1].htm" "8/3/2006 11:42:18 PM" "gsawe[1].htm" "2.97 KB"
    "" "" "Trojan horse Generic.UWP" "C:\Program Files\vcessb.exe" "8/3/2006 11:42:31 PM" "vcessb.exe" "4 KB"
    "" "" "Trojan horse Proxy.EAN" "C:\errra.exe" "8/3/2006 11:42:39 PM" "errra.exe" "14.38 KB"
    "" "" "Trojan horse Proxy.EAN" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\CDOX27W1\uvdzxtsa[1].htm" "8/3/2006 11:42:53 PM" "uvdzxtsa[1].htm" "14.38 KB"
    "" "" "Trojan horse Downloader.Generic.ZQO" "C:\orromeyq.exe" "8/3/2006 11:43:03 PM" "orromeyq.exe" "1.36 KB"
    "" "" "Trojan horse Downloader.Agent.13.AI" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\UP0B6LIP\xpladv422[1].wmf" "8/4/2006 1:42:17 AM" "xpladv422[1].wmf" "15.66 KB"
    "" "" "Trojan horse PSW.Generic2.DPY" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\WFF3Y4P1\ifxsr[1].txt" "8/4/2006 1:42:17 AM" "ifxsr[1].txt" "71 KB"
    "" "" "Trojan horse Generic.UWP" "C:\Documents and Settings\karcher\Local Settings\Temporary Internet Files\Content.IE5\Y7YB696F\lbjfrdykf[1].txt" "8/4/2006 1:42:17 AM" "lbjfrdykf[1].txt" "4 KB"

    I then ran Ewido:
    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 10:59:05 AM 8/4/2006

    + Scan result:



    C:\WINDOWS\system32\tmp_u.dll -> Downloader.Small.cyn : No action taken.
    F:\Documents and Settings\Administrator\Cookies\administrator@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.


    ::Report end

    The result is that my computer is slow, I can only connect to the internet if I have the Internet Gateway enabled, and I can not change my firewall settings:"Due to an unidentified problem, Windos cannot display Windows Firewall Settings."

    I also ran Vundofix and it found nothing (not in safe mode). Need help please, I think something is still wrong!
     
  2. Jurppis

    Jurppis Regular member

    Joined:
    Feb 22, 2006
    Messages:
    659
    Likes Received:
    0
    Trophy Points:
    26
    Please post a HijackThis log
     

Share This Page