BetaONE will rise again!

BetaONE will rise again! (http:\\b1.hcanet.com\forum/index.php)
-   Internet Security and Privacy (http:\\b1.hcanet.com\forum/forumdisplay.php?f=38)
-   -   Stealth Spyware (http:\\b1.hcanet.com\forum/showthread.php?t=10264)

KingCobra 2nd Jan 04 11:35 PM

Oh ya, I've used that before. Thanks guys. ;)

moen 3rd Jan 04 05:32 AM

just 15 min ago I got a file. It was just created. Name is optimize.exe, and it wants to access the internet. IP 216.187.107.33 :http(80) .
Is this a virus or what???
anybusy know what this file is. I blocked it in Nort Firewall.

war59312 3rd Jan 04 05:55 AM

Quote:

Originally posted by moen@Jan 3 2004, 12:32 AM
just 15 min ago I got a file. It was just created. Name is optimize.exe, and it wants to access the internet. IP 216.187.107.33 :http(80) .
Is this a virus or what???
anybusy know what this file is. I blocked it in Nort Firewall.

It's spyware. Its an Adult content dialler which dials no.s specific to porn related sites.

Or it might be something else. Optimize.exe is also a virus.The icon is a round funny face like a moon.It won't optimize anything.The virus name is W32 Downloader.Dyfuca. Use F-Prot from dos to get rid of it or else don't open this virus hidden as an exe file.

Anyways just delete Optimize.exe through dos. Assume u using winxp. Just open task manger and kill explorer.exe and then in task manager click file and then run and type in cmd and then do a serach for Optimize.exe and delete it.

Also, check out these reg keys for it to run on startup:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run

HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Run

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder

That should take care of it. Also scan with anitvirus software such as norton. Need more help just ask.

cya,
Will


All times are GMT +1. The time now is 05:10 PM.

Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.