?
Solved

Malicious Website www.privacyoutpost.com !!!!!!!! Help!

Posted on 2004-04-08
4
Medium Priority
?
229 Views
Last Modified: 2013-12-04
HI, All
A maclicous website
IE tools menu were added 3 items( www.poker.scom, debt.com,xxxx) my IE was redirected to www.privacyoutpost.com. The desktop were added for 4 html websites.
One is How www.privacyoutpost.com, it says "u entered a pedo website, ur IP is XXXXX, please go download privacyoutpost..... and then added 4 html website to my desktop.

I tried to deleted them. but it comes again soon.

I followed the www.privacyoutpost.com 's instruction to remove,but failed, I E-mailed them,but no reply.

 I tried all way to remove, delete Temp and history file, remmove registry ent, startup, host and pop and AD dectector software,but problem remain the same.

I guess I have to reinstall

0
Comment
Question by:davidlam8888
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
4 Comments
 
LVL 32

Expert Comment

by:LucF
ID: 10786040
Hi davidlam8888,

Check for ad/spyware:
Ad-aware :                          http://www.spychecker.com/download/download_adaware.html
Spybot Search and Destroy : http://www.spychecker.com/download/download_spybot.html
CoolWebShredder :              http://209.133.47.200/~merijn/files/CWShredder.exe
make sure to update before running.

If you're still having problems, use this tool and post the logfile:
Hijackthis :                           http://209.133.47.200/~merijn/files/HijackThis.exe

Greetings,

LucF
0
 
LVL 12

Expert Comment

by:trywaredk
ID: 10787540
Protecting your computer can't be answered with one issue.

As you can see in my url below there are at least 7 different issues, where you should decide 1 of each, or else you does'nt protect your computer at all.

The reason is, that the many different programs not always protects against each other, and each of them does'nt protect equally.

It's very important, that you study all of these issues in my knowledgebase (some of them are freeware):
http://www.tryware.dk/English/Knowledgebase/HowToProtectYourComputer.html

BTW: I'm using the Trend Micro virus-suite, and SoftScan , and haven't got any of my servers or computers infected the last 4 years.

Many Regards
Jorgen Malmgren
IT-Supervisor
Denmark

:o) Your brain is like a parachute. It works best when it's open
0
 
LVL 12

Accepted Solution

by:
trywaredk earned 2000 total points
ID: 10787611
You've been infected with a trojan called Regldr-a

"Troj/Regldr-A will also set the registry entries listed below to point to the page secure.html located in the default Windows folder. This HTML page claims that the system has been compromised by spyware and prompts the user to visit the URL http://www.privacyoutpost.com/enter.html?wm=dkvage."

This is how to remove it:
http://www.sophos.com/virusinfo/analyses/trojregldra.html
0
 
LVL 12

Expert Comment

by:trywaredk
ID: 10800366
:o) Glad I could help you - thank you for the points
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Recently, I read that Microsoft has analysed statistics for their security intelligence report. It revealed: still, the clear majority of windows users do their daily work as administrator. An administrative account is a burden, security-wise. My ar…
Our Group Policy work started with Small Business Server in 2000. Microsoft gave us an excellent OU and GPO model in subsequent SBS editions that utilized WMI filters, OU linking, and VBS scripts. These are some of experiences plus our spending a lo…
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…
In this video, Percona Director of Solution Engineering Jon Tobin discusses the function and features of Percona Server for MongoDB. How Percona can help Percona can help you determine if Percona Server for MongoDB is the right solution for …
Suggested Courses
Course of the Month10 days, 21 hours left to enroll

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question