Please register or login. There are 1 registered and 1265 anonymous users currently online. Current bandwidth usage: 589.88 kbit/s November 23 - 05:38am EST 
Hardware Analysis
      
Forums Product Prices
  Contents 
 
 

  Latest Topics 
 

More >>
 

    
 
 

  You Are Here: 
 
/ Forums / Software /
 

  Trojan Horse Dialer 
 
 Author 
 Date Written 
 Tools 
Continue Reading on Page: 1, 2, 3
angryhippy Feb 21, 2004, 02:44pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
you're right about the files B P. AVG doesn't scan compressed files. The AV situation is way outta hand. I've gotten 3 updates in the last 5 days. One thing everybody should do is subscribe to a free E-mail security news letter. Some viruses that come with the mail have a static subject line or from fields which can easily be blocked by filters. Microsoft doesn't send E-mails to people yet lots of viruses use them in the from field. My filters are set so anything with MS or Microsoft in the from field get immediately rerouted to the trash. The news letters usually give me a heads up while the virus is still overseas, sometimes the same day but never more than 2 days after the first sighting.

Computer tips, links, 60s music & help.
http://www.angryhippy.net
Me at work: http://snipurl.com/e8skz
New rig! A Blah blah blah.With a blah blah! SWEET!
Pics: http://snipurl.com/rm53w
Screamin at 4GHz 24/7 http://snipurl.com/rpniq
Win7 Home Premium x64 XP
Want to enjoy less advertisements and more features? Click here to become a Hardware Analysis registered user.
Bastard Powered Feb 21, 2004, 02:50pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
That's pretty standard. Definately, set your AV proggie to scan ALL files. Otherwise, you are set up for pain.

Yeah, that is from personal experience from early on in my computer experiences. Nothing like the hard way for learning.

By the way, if my fix for the dialer program helped anyone, I would sure like to know.

G N Mar 17, 2004, 02:59pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
I have this virus........C:\-RESTORE\TEMP\A0064266.CPY VIRUS NAME-downloader.lstbar.W

I have tried the restore and when I go to restore on my C drive and hit properties and click hidden it says my access is denied.....all of the problems here are exactly what i am experiencing but somehow it won't let me in my own attributes.....I don't know what else to do....it is taking my memory while I am on the computer.....can anyone help me?

G N Mar 17, 2004, 03:03pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
also......I have AVG and it didnt catch it.......and I use Windows ME......thanks in advance!

Bastard Powered Mar 17, 2004, 03:11pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Try shutting off the system restore. If necessary use the ctrl/alt/delete and terminate the process. Frankly, in WIN ME I think you should completely shut it down because in ME it really sucks.

After you shut down the sys restore, reboot and then delete your restore points. Then run a virus scan and a spybot check. Your system should be clean at that point.

Well, theoretichally, anyhow.


G N Mar 17, 2004, 03:32pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Also...lol...when quarantining and deleting I have managed to delete my sound totally off my computer...how do I get sound back?.....Thanks for all the info!

angryhippy Mar 17, 2004, 04:24pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/20010...ec_doc_nam

Go there for instructions on turning off system restore. Spybot Search and Destroy should clean this. It's a varient of XXX Toolbar. Been checkin out some porn?<g> If it doesn't then you have to do the following

Istbar is and adware component, that will acts as a homepage and search hijacker, and will popup porn etc.
Removal:
You first have to stop "ISTsvc.exe" process, then delete the folder "ISTsvc" in C:\Program Files.
Then you remove the value "IST Service" = "C:\Program Files\ISTsvc\ISTsvc.exe" from HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run and also the key ISTsvc from HKEY_LOCAL_MACHINE\Software.

What kind of sound do you have. You can usually find the drivers on their web site.

Computer tips, links, 60s music & help.
http://www.angryhippy.net
Me at work: http://snipurl.com/e8skz
New rig! A Blah blah blah.With a blah blah! SWEET!
Pics: http://snipurl.com/rm53w
Screamin at 4GHz 24/7 http://snipurl.com/rpniq
Win7 Home Premium x64 XP
Bastard Powered Mar 17, 2004, 04:27pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Um - you probably just have to go to your control panel and then sounds and make the volume icon visible in the task bar. That is usually the culprit of missing sounds.

G N Mar 18, 2004, 06:29am EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Thanks for all your info...and I am laughing over the porn thing...you got me...lol

I will let you know how it turns out...Thanks again guys!

G

G N Mar 18, 2004, 06:33am EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Oh...1 more thing...the sound problem is not that I don't get it all the time...it keeps muting it off and on...I realize I have no sound and when I investigate it says muted and I didn't mute it...go figure????????

angryhippy Mar 18, 2004, 01:39pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Go into the device manager and see what kind of sound you have Via or Realtek AC97 or something. Then go to the site and download the drivers again. Actually you can do it from control panel. Click on sounds and audio devices and see what it says the sound is on the volume tab.

Computer tips, links, 60s music & help.
http://www.angryhippy.net
Me at work: http://snipurl.com/e8skz
New rig! A Blah blah blah.With a blah blah! SWEET!
Pics: http://snipurl.com/rm53w
Screamin at 4GHz 24/7 http://snipurl.com/rpniq
Win7 Home Premium x64 XP
Emma Rocker Mar 29, 2004, 04:21pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Help me please!!! I've got the same virus that everyone else seems to have - Trojan Horse Dialer - and I'm having problems getting rid of it. I use AVG but it says I can't remove the file that the virus is on. I've tried the trojanscan, various other anti-virus software and the system restore but nothing seems to be working. Can anyone tell me anything else I can try - in simple language?!

Thanks very much.

angryhippy Mar 29, 2004, 04:38pm EST Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Hi Emma. Run the AVG again. Then go to start/right click my computer/properties/system restore tab/ Check the box that says turn off system restore. You need to clean out the files because the virus installs a copy there and can come back later if you do a system restore. Run AVG again (make sure you are updated, the site is working real slow so be patient). If you get a no viruses detected then you can go back and uncheck the sys restore box. It will automatically create a new restore point. Until you purge those files you will keep getting the virus alert from AVG. Post back with results or questions/problems.

Computer tips, links, 60s music & help.
http://www.angryhippy.net
Me at work: http://snipurl.com/e8skz
New rig! A Blah blah blah.With a blah blah! SWEET!
Pics: http://snipurl.com/rm53w
Screamin at 4GHz 24/7 http://snipurl.com/rpniq
Win7 Home Premium x64 XP
Mike Kelly Aug 21, 2004, 12:12am EDT Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
My Avg 6.0 keeps detecting the virus Trojan Dialer.9.D... it is in C:\Documents and settings\owner\local settings\temporary internet files\content.E5\6FC7PE7M\IberoDialerHTML[1].cab\IberoDialerHTML.dll.
(sorry for the long string)
I have run AVG 6.0 (fully updated) over and over again and it says the file is infected and embedded. I have done the whole turning off of the system restore and re-scanning but my avg will not rmove it. I also tried trojan scan. Also my AVG does read the virus. then after it is done running the scan it has the report which reads 0 infected files and 0 files healed . does anyone have any clue on how i can get rid of this damned thing without having to reformat?

Bastard Powered Aug 21, 2004, 12:26am EDT Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
Try starting in Safe mode. Then find the dll file and delete it.

If that does not work, try ending the process (ctrl/alt/del) and then deleting as many of the files as possible - you probably will not be able to delete the dll file or the folder that it is in, because it is in use. But, you should be able to rename the 6FC7PE7M folder. Once you rename the folder, reboot.

Upon rebooting, the process that was using the IberoDialerHTML.dll file should not be able to locate it, which means that it will not be in use by any process. This should allow you to delete the file and/or folder the folder that contains the file.

Mike Kelly Aug 21, 2004, 03:50am EDT Reply - Quote - Report Abuse
Private Message - Add to Buddy List  
>> Re: Trojan Horse Dialer
All I can say is thank you very much for your help. The safe mode worked fine and the virus is out of my computer thank you for teaching a comp illiterate how to remove those things. And I have to give you guys credit you really know your stuff. Thanks again.


Write a Reply >>

Continue Reading on Page: 1, 2, 3

 

    
 
 

  Topic Tools 
 
RSS UpdatesRSS Updates
 

  Related Articles 
 
 

  Newsletter 
 
A weekly newsletter featuring an editorial and a roundup of the latest articles, news and other interesting topics.

Please enter your email address below and click Subscribe.