This is unbelivable

Discussion in 'Windows Desktop Systems' started by stewartbmw2000, Jun 20, 2002.

  1. This has really gone too far..

    A program called instantpleasure.exe has some how installed its self and added its self to zonealarm with full access!!

    The uninstaller wouldnt work and it would not let me delete the files :eek:

    I had to go into safe mode delete all the files and manually delete all the registry values.

    It's sorted now but where did this come from and how the hell did it install its self while i was out and add its self to ZAP ???

    Any insight to this much appreciated...

    Also there was a internet explorer window open that i couldnt close with an IP of http://204.177.92.198 so I added it to the HOSTS file and did a visual route of it and the results are attached.
     
  2. 2z

    2z OSNN Gamer

    Messages:
    2,439
    Location:
    England
    Did you use this ? Keygen_ZONE_ALARM_ALL_VERSIONS
    it contains a virus BKDR_SDBOT.A
     
  3. no nothing like that for ages, I've got norton antivirus running as well...
     
  4. xsk8zerox

    xsk8zerox Moderator

    Messages:
    746
    Location:
    Philly
    oh is it one of those dialers? If it is download spybot and search for dialers and it will remove it
     
  5. Reg

    Reg eXperienced!

    Messages:
    639
    Location:
    Arlington, TX
    Yep, definately a dialer. I believe it dials to Australia. You probably got it from a hole in Internet Explorer which allows websites to install files without your consent. SP1 fixed that, but I don't know if you are running the beta.
     
  6. xsk8zerox

    xsk8zerox Moderator

    Messages:
    746
    Location:
    Philly
    spy bot should take care of it then
     
  7. I've got ad-aware 5.83 and the latest refupdate, ill get this spybot when I get home from work aswell, is it the same thing as as-adware?
     
  8. xsk8zerox

    xsk8zerox Moderator

    Messages:
    746
    Location:
    Philly
    Its similar yes but it will also look for other thing like bad ap paths in the registry and dialers and keyloggers
     
  9. nice 1 cheers