PDA

View Full Version : What is this virus and how do I kill it?


kloyd0306
15-06-2004, 11:25
I am on-line then involuntarily disconnected. A dialer starts up but cannot complete its call. The desktop then shows an icon named default (it is blue with a yellow cross). Right clicking the icon shows the address to be a casino (Casinopallazzo) and the target is via iexplororer.

This nuisance occurs almost after every startup.

What is it and how can I kill it.

Norton, SpyDot, Spy Zapper, No Adware and Spy Sweeper cannot detect the infection and therefore cannot kill it.

Help - Kloyd

iadom
15-06-2004, 11:42
Are you on broadband or dial up. Try using Adaware, run your PC in safe mode then run Adaware.If that fails download "hijackthis" and post the log results, somone on here will be able to advise you on which files to delete from within hijackthis.

Forgive my ignorance.:welcome: to nthw.co.uk
http://www.lavasoftusa.com/

http://www.spychecker.com/program/hijackthis.html

More info here.
http://www.thetechguide.com/forum/index.php?showtopic=10533

timewarrior2001
15-06-2004, 12:19
If its a dialer, you could try looking to uninstall the dialer and/or de-activating it at startup.

What version of windows are you running?
Are your virus definitions up to date?


In windows XP or windows 2000, when the dialer starts, press control-alt-del to bring up a menu and look at processes. this will list what is running at the time.
Grab a screen shot and post it here, perhaps we can figure out the name of the program.

Thats if your using XP or windows 2000

Graham
15-06-2004, 16:32
What is it and how can I kill it.

Have a look at this thread from Cyber Tech which should be what you're looking for:

http://www.cybertechhelp.com/forums/showthread.php?p=215084#post215084

Paul K
15-06-2004, 16:55
Seems to be linked to a porn dialler so Hijackthis or the CWShredder might get it out of there.
http://www.spywareinfo.com/~merijn/downloads.html

Xaccers
15-06-2004, 17:20
Is anti-virus software actually designed to detect dialers? I didn't think they were, which would be why they've not detected it on your system