| |||||||
| Windows OS Problems General Windows OS issues. |
![]() |
| | LinkBack (1) | Thread Tools | Display Modes |
| |
#1 (permalink)
| |
| My Sygate firewall advised me that 23100247 is trying to broadcast. Not knowing what it is I blocked it. ![]() I found it in the C drive, but it doesn't say what it belongs to. ![]() I ran Spybot and Adaware and they didn't touch it. Anyone know what it is? | ||
| | | |
| | #5 (permalink) | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| Goldun.Fam
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| | | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| | #11 (permalink) | |
| Apex Techie Wannabe | Hi, to everybody, Atlast I found someone like me facing problem ( last 4 days even your post was not visibale on google) . Read my story .. Recently I notice '23100247.exe' ( 2173 bytes) laying on my computer c:\ ( root directory) I searched on google but unable to find much info about this file. then I tried to find more info on my computer and found that, the file was installed by a website ( this website is for business and for freelancers and aff. marketing, have good partners, I can not disclose it's name because I am not sure, but I found following) I have removed <> html marked so that It should not embedded in forum page http is replace by hxxp DO NOT VISIT FOLLOWING SITE UNLESS YOU ARE SECURITY EXPERT, AND KNOW WHAT YOU ARE DOING 1) Main html file having some javascript funtion opeing to div style="visibility:hidden"> iframe src="hxxp://dnv-counter.com/dnv3/" width=1 height=1 /iframe /div 2) If you visit above ( be careful) URL, You may get above file ( I have not tried this, but think it is hosted by above url) , even you find start.exe in temp. internet folder, both files appeares to be same. that means above url code copied start.exe to root with 23100247.exe name. 3) I think some code is downloaded and do all aboe stuff. 4) I don't know it is secrete counter to trace visitor or malware ( or the website I have visited may be Infected by malware) 5) If this a secrete counter then this is incorrect, they have to show notice before making copy to my system 6) I scan with norton anti virus ( with latest update full system scan and that file also) but it says no infection found I downloaded trial version of spyware doctor from download.com, It only showing alex bho option entries in registry and alert level is low, no referance for above file. I search on dnv-counter.com on google but unable to find any info. In google search , on one forum I found A) The site called us-counter.com and dnv-counter.com belong to a guy from Ukraine and are blacklisted with several records. IP´s from the sites and from the hosting company are pretty much the same." B) found some referance in forum regaring : us-counter.com/trf1 ( before may be doing same thing ) But unable understand it .. 6) ok now my query is a) what is going on ( I have deleted 23100247.exe) b) what It did to my system c) how I come to know what they have stolen ( or downloaded from my system) d) Can I relay on my anti virus / spyware doctor clean report plz help assp. Thanks in advance Last edited by ap3000; 12-July-06 at 11:02 AM.. | |
| | | |
| | #12 (permalink) | ||||||||||||||||||||||||
First Off, Welcome to PCApex. You english is a bit off but i think I get what you are asking. | |||||||||||||||||||||||||
| | | ||||||||||||||||||||||||
![]() |
| Bookmarks |
| Thread Tools | |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| The Register // <abbr title="Bastard Operator from Hell">BOFH</abbr>: Data wiping hell | Gizmo | The Register RSS | 0 | 03-November-06 07:42 PM |
| what in the hell | $=Mercenary=$ | Video Cards | 23 | 28-November-04 03:49 AM |
| Aww, hell..... | DuplexEmotions | Other Hardware | 4 | 07-August-04 03:13 AM |
| What the hell? | KayinStorm | Video Cards | 14 | 28-April-04 11:32 AM |
| ...What the hell? | XtaSy | Anything Goes | 10 | 21-February-04 04:15 PM |
LinkBacks (?)
LinkBack to this Thread: http://www.forumapex.com/windows_os_problems/79078-what_the_hell_is_23100247_exe.html | ||||
| Posted By | For | Type | Date | |
| Windows Security: 23100247.exe Removal | This thread | Refback | 18-September-06 04:28 PM | |