Forums FAQForums FAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister   ProfileProfile   Login to check your private messagesLogin to check your private messages   LoginLogin 

Important concerning DDR Freak & Pop-ups (Trojan)
 
This topic is locked you cannot edit posts or make replies    DDR Freak Forum Index -> Site Feedback
View previous topic :: View next topic  
Author Message
Terra (Red)
Trick Member
Trick Member


Joined: 24 Jan 2002
0. PostPosted: Tue Dec 21, 2004 12:36 am    Post subject: Important concerning DDR Freak & Pop-ups (Trojan) Reply with quote

My AVG free edition just detected a trojan virus from a pop-up.

"Trojan Horse Downloader.SecondThought.A"

The path was:

C:\DOCUME~1\Lance\LOCALS~1\Temp\adlinstallwin32.exe

12/21/04 at 3:06am est

File is adlinstallwin32.exe, file size is 93.5kb.

It came up as a browser plugin of some sort I believe. I hope this helps you guys too.
Back to top
View users profile Send private message
J Dogg
Administrator
Administrator


Joined: 16 Jan 2002
Location: Sunnyvale, CA
1. PostPosted: Tue Dec 21, 2004 12:49 am    Post subject: Reply with quote

any URL you can provide?
_________________
Back to top
View users profile Send private message Visit posters website
Terra (Red)
Trick Member
Trick Member


Joined: 24 Jan 2002
2. PostPosted: Tue Dec 21, 2004 1:07 am    Post subject: Reply with quote

I'm looking thru AVG right now. This is about all I can find as of now.

C:\Documents and Settings\Lance\Local Settings\Tempoary Inenternet Files\Content.IE5\8523O92Z\id201{1}.exe

This is from what AVG called a backup copy.
Back to top
View users profile Send private message
eyebrowsoffire
Trick Member
Trick Member


Joined: 23 Sep 2004
Location: Santa Barbara, CA
3. PostPosted: Tue Dec 21, 2004 2:47 pm    Post subject: Reply with quote

Same thing happened to me. Stupid Internet Explorer and Windows XP. I can't wait until I get back to my own computer, with Firefox and Linux...
_________________
qkumbr wrote:
this man knows what the fuck is up. give him some tokens.
rampage wrote:
I'd like to sanction some qkumbr tokens for eyebrowsoffire.
It's official, people. I have qkumbr tokens.
My tiny little NNR is open for business! Challenges wanted!
Back to top
View users profile Send private message Send email Visit posters website AOL Instant Messenger Yahoo Messenger MSN Messenger
Terra (Red)
Trick Member
Trick Member


Joined: 24 Jan 2002
4. PostPosted: Thu Dec 30, 2004 6:52 pm    Post subject: Reply with quote

Here's a pic of the damned thing here:

Back to top
View users profile Send private message
VxJasonxV
Maniac Member
Maniac Member


Joined: 08 Feb 2002
Location: Castle Rock, CO
5. PostPosted: Thu Dec 30, 2004 7:37 pm    Post subject: Reply with quote

You should have moved the installer window so we could see the banner ad too E10.gif.
_________________


Amusing Pictures: lolddrfreak | Road of LoQ
Back to top
View users profile Send private message Visit posters website Xbox Live Gamertag
RevenG-D
Trick Member
Trick Member


Joined: 07 Nov 2004
6. PostPosted: Thu Dec 30, 2004 8:52 pm    Post subject: Reply with quote

yea this also happned to me i turned off my antivirus program for a bit.. then i visited this site and i had about 12 new icons on my dekstop and a ton of installer crap showing up... i got rid of it though disturb.gif
_________________
Back to top
View users profile Send private message AOL Instant Messenger
[DMB]dman.exe
Trick Member
Trick Member


Joined: 28 Mar 2003
7. PostPosted: Sun Jan 02, 2005 11:25 am    Post subject: Reply with quote

I got the same Trojan - with that same popup and same secruity thing.
_________________
hi
Back to top
View users profile Send private message
rampage
Administrator
Administrator


Joined: 24 Jan 2002
Location: Redmond, WA
8. PostPosted: Thu Jan 06, 2005 2:21 pm    Post subject: Reply with quote

.. and shame on you guys for not running XP SP2.
Back to top
View users profile Send private message AOL Instant Messenger Xbox Live Gamertag MSN Messenger
Spike
Administrator
Administrator


Joined: 17 Jan 2002
Location: Denver
9. PostPosted: Thu Jan 06, 2005 3:37 pm    Post subject: Reply with quote

rampage wrote:
.. and shame on you guys for not running XP SP2.


That thing made a couple of my programs not work. I deleted it instead of bothering to figure out how to get said programs to work. Yay for nothing bad happening.
_________________
Back to top
View users profile Send private message
Mr. A
Trick Member
Trick Member


Joined: 20 Oct 2003
Location: INTERNET
10. PostPosted: Fri Jan 07, 2005 7:24 am    Post subject: Reply with quote

With all due respect (to the above person- what the hell is/was your name?) and not to sound like schadenfreude, isn't this the second or third time this happened? erm.gif

Anyways, does anyone know the specific security settings or registry tweak (besides the SP2 thing, that would probably fix it, or Firefox) for MSIE to kill those damn things? BTW, did this infection require you to confirm through an installer like that or was it more automatic?

How bad was the infection, was it cleanable? I'm fairly sure (not 100% certain, to be fair) got dyfuca from here on two computers, very nasty infection.
Back to top
View users profile Send private message
VxJasonxV
Maniac Member
Maniac Member


Joined: 08 Feb 2002
Location: Castle Rock, CO
11. PostPosted: Fri Jan 07, 2005 1:47 pm    Post subject: Reply with quote

Alpha (WYE Style) wrote:
Anyways, does anyone know the specific security settings or registry tweak (besides the SP2 thing, that would probably fix it, or Firefox) for MSIE to kill those damn things? BTW, did this infection require you to confirm through an installer like that or was it more automatic?
The only tweak is to use Firefox or Opera or something BETTER E10.gif.
Because the fault lies at IE's core, with ActiveX controls and such.
SP2 knocks out a good amount, but there are still vulnerabilities.

I won't comment on the infection, because I wouldn't know.
_________________


Amusing Pictures: lolddrfreak | Road of LoQ
Back to top
View users profile Send private message Visit posters website Xbox Live Gamertag
Mr. A
Trick Member
Trick Member


Joined: 20 Oct 2003
Location: INTERNET
12. PostPosted: Fri Jan 07, 2005 4:14 pm    Post subject: Reply with quote

Hmm. I agree re: Firefox. I downloaded the new Microsoft scanner, looks pretty decent actually.
Back to top
View users profile Send private message
Display posts from previous:   
This topic is locked you cannot edit posts or make replies    DDR Freak Forum Index -> Site Feedback All times are GMT - 8 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Powered by phpBB 2 © 2001, 2002 phpBB Group