Help - Search - Members - Calendar
Full Version: chief ray kelp trojan dialler.6.g
Gladiator Security Forum > Malware Help Forum > HELP! Think you are Infected?
chief ray kelp
Hi,

another newbie here but a relevent question I hope. My AVG just picked this virus up on the 13 March. Can I use the same steps as outlined above?

I am running W2K, no HiJack or other spyware programs installed.

Also I run VirusScan Enterprise 7.1.0 and it never picked up the virus - any idea why not?

Many thanks

Ray
Hunter
QUOTE (chief ray kelp @ Mar 15 2004, 10:32 AM)
Hi,

another newbie here but a relevent quistion I hope.  My AVG just picked this visus up on the 13 March.  Can I use the same steps as outlined above?

I am running W2K, no HiJack or other spyware programs installed.

Also I run VirusScan Enterprise 7.1.0 and it never picked up the virus - any idea why not?

Many thanks

Ray

Hey Chief we have a few more threads on that dialer.6g in the last week as you can see here..


http://forum.gladiator-antivirus.com/index...showtopic=11732

http://forum.gladiator-antivirus.com/index...showtopic=11667

It appears to be easy to clean...and depending where on your PC (the folder) that AVG found it. It seems to have been included in their march 4 update.


Now if like Danny, your AVG told you this is the place it found that dialer..

(see screen shot)

That is easy to clean out.
Hunter
Besides all the fancy programs you can have to clean out your Content.IE5 you could also use Windows Explorer to clean it out manually :)

Or go into the DOS mode to do it.


Why not just navigate to C:\Windows\Temporary Internet Files\Content.IE5 and delete the folder or equivalent on the newer systems. I had 192KB there before deletion and as you can see it rebuilt to it's normal starting 32KB.
see screen shot


Or


First go to DOS and at the prompt type in the following commands:

CD\WINDOWS\TEMPOR~1\CONTENT.IE5(This will also be .IE5 even if you have installed IE6.)
EDIT /75 INDEX.DAT

You will be brought to a blue screen with a bunch of binary.

Press and hold the [Page Down] button until you start seeing lists of URLs. These are the sites you have visited. When your done looking go to File>Exit. If you don't have mouse support in DOS then use the [ALT] and arrow keys.

Now delete the Content.IE folder and repeat the above and look.
chief ray kelp
Many thanks

Ray
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2009 Invision Power Services, Inc.