Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Please HELP!!!  (Read 4062 times)

0 Members and 1 Guest are viewing this topic.

Jakaru

  • Guest
Please HELP!!!
« on: October 18, 2007, 11:09:16 AM »
I scanned my computer and found this.
a-squared Anti-Malware - Version 3.0
Last update: 10/18/2007 11:37:30 AM

Scan settings:

Objects: Memory, Traces, Cookies, C:\, D:\
Scan archives: On
Heuristics: On
ADS Scan: On

Scan start:   10/18/2007 11:45:13 AM

[1240] C:\WINDOWS\AppPatch\AcLue.dll    detected: Trojan-Spy.Win32.FtpSend.a
[1240] C:\WINDOWS\AppPatch\AcLuo.dll    detected: Trojan-Spy.Win32.FtpSend.a
Value: HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run --> winsys    detected: Trace.Registry.Win-Spy
C:\WINDOWS\system32\drivers\arp8023.sys    detected: Trojan-Spy.Win32.FtpSend.a
C:\WINDOWS\AppPatch\AcLue.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\WINDOWS\AppPatch\AcLuo.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0001030.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0001031.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0001035.sys    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002030.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002031.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002040.sys    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002045.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002046.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0002050.sys    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0003045.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0003046.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0003050.sys    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0004045.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP1\A0004046.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004059.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004060.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004068.sys    detected: Rootkit.Win32.Agent.ga
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004069.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004077.dll    detected: Trojan-Spy.Win32.FtpSend.a
C:\System Volume Information\_restore{0F20F375-023D-473C-B9AC-D822856EEA98}\RP2\A0004078.sys    detected: Rootkit.Win32.Agent.ga

Scanned

Files:    19673
Traces:    336700
Cookies:    18
Processes:    32

Found

Files:    23
Traces:    1
Cookies:    0
Processes:    2
Registry keys:    0

Scan end:   10/18/2007 11:54:05 AM
Scan time:   12:08:52 AM

Can anyone please help me?

Broni


    Mastermind
  • Kraków my love :)
  • Thanked: 614
    • Computer Help Forum
  • Computer: Specs
  • Experience: Experienced
  • OS: Windows 8
Re: Please HELP!!!
« Reply #1 on: October 18, 2007, 09:01:33 PM »
Did you ask a-squared to fix those entries?

Jakaru

  • Guest
Re: Please HELP!!!
« Reply #2 on: October 18, 2007, 10:20:41 PM »
I asked A-Square to check it, it deleted the entries.

Jakaru

  • Guest
Re: Please HELP!!!
« Reply #3 on: October 18, 2007, 10:23:59 PM »
How do keyloggers get onto computers? Is it through manual instillation or through the internet some how?

Broni


    Mastermind
  • Kraków my love :)
  • Thanked: 614
    • Computer Help Forum
  • Computer: Specs
  • Experience: Experienced
  • OS: Windows 8
Re: Please HELP!!!
« Reply #4 on: October 18, 2007, 10:24:10 PM »
Download HijackThis from here: http://filehippo.com/download_hijackthis/
and post its log back here.

Ivy

  • Guest
Re: Please HELP!!!
« Reply #5 on: October 19, 2007, 05:54:42 AM »
How do keyloggers get onto computers? Is it through manual instillation or through the internet some how?

Since Broni is not here today , i thought i'd answer your question.
(I did some research  :) )

What is a key logger?

A key logger can either be hardware, which resembles the keyboard plug making it difficult for you too know it’s there. This type key logger is a designed to spy on what you may be doing on your computer, hence the name spyware. Once a key logger is installed on your computer, every keystroke you type can be recorded and kept in a log file or possible emailed to someone that wants to monitor your viewing habits without you ever knowing what is going on. The other form of key logger is a program that is downloaded while you’re on the Internet. This type of key logger is used to monitor our activity as spyware, which part of a rootkit, or as an executable. The keyloggers that are designed as spyware and come in the form of a Trojan horse, can record your passwords, can detect when you type digits checking to see if it’s a credit card, bank accounts or information you consider private and personal. Spyware keyloggers are also used to track your surfing habits so an advertiser can use that information too send you pop-ups and other forms of advertisements.

Broni


    Mastermind
  • Kraków my love :)
  • Thanked: 614
    • Computer Help Forum
  • Computer: Specs
  • Experience: Experienced
  • OS: Windows 8
Re: Please HELP!!!
« Reply #6 on: October 19, 2007, 09:34:01 AM »
Thanks, Ivy ;D

Quote
Is it through manual instillation or through the internet some how?
It can happen either way.