Indeed, I urge everyone to stop 'finding things out' and 'filing complaints'....
I'm already on top of this and found some related things but also found that some information posted in this thread is NOT true. Don't put links were links don't exist, or do a proper search before saying something. _Especially_ in such matter!
Filing undocumented, bad reports will do more damage then good. DDossing doesn't work either....
As far as I'm concearned this thread should be closed and pruned so the information posted here can't be misused to file reports or whatever. The more you talk about such subjects, the more people will get victimized. Proof? look at the people in this thread who executed the trojan without the propper knowledge, because they were curious if it worked....
Those who have more info or wanna say something about this can always PM me...
-------------------------------
quote:
Originally posted by CraigDowel
Oh angelfire is the real site, maybe complaining works here...
no they don't. That is where he hosts his current site. He has moved there since a few days because his other host (planet.nl) has closed his accounts (also the hosted link of huisartsen-laren). He will simply keep on moving his site...
* CookieRevised phoning 2 other host companies atm...
-------------------------------
To close this trojan (yes it IS a trojan and it doe works. If you got an errormessage, that is just part of its startup routine) so you can safely start a virus cleaner and spyware cleaners:
* Start up In
SAFE MODE
* Delete
C:\Windows\svchost.exe ... (don't delete svchost.exe which is in your
\Windows\System32 directory!)
* Delete
C:\Windows\Prefetch\msnfun*.pf
* Delete
C:\Windows\Prefetch\scvhost.exe*.pf
* Remove the registry key wich has
svchost.exe in it's value in:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run