|
|
|
 |

May 22nd, 2004, 02:57 PM
|
 |
Lieutenant Colonel
|
|
Join Date: Dec 2000
Location: DC Burbs USA
Posts: 1,460
Thanks: 0
Thanked 1 Time in 1 Post
|
|
Re: OT: Anyone heard of this file?
1st, see if it is running as a service, if it is, then stop the service and then remove the file.
2nd, build a boot disk and use it to boot the system, then drill down to the file and wipe it out.
__________________
Think about it
|

May 22nd, 2004, 03:25 PM
|
 |
Sergeant
|
|
Join Date: Jun 2002
Location: Ottawa, ON, Canada
Posts: 390
Thanks: 0
Thanked 0 Times in 0 Posts
|
|
Re: OT: Anyone heard of this file?
You can also run 'MSCONFIG' and see if it's listed under the Startup Tab. If it is, then you can remove the checkmark next to it, save & exit, and then reboot. If it's necessary to anything, you'll get an error about it. If everything appears to run smoothly though, then you can go back in and permenantly remove it (or just leave the checkmark deselected).
|

May 22nd, 2004, 04:35 PM
|
 |
Major General
|
|
Join Date: Sep 2000
Location: Midlothian, Va, USA
Posts: 2,142
Thanks: 0
Thanked 1 Time in 1 Post
|
|
Re: OT: Anyone heard of this file?
It isn't in the startup tab.
called it up in wordpad and it appears to be some form of internet blocker/filter. I didn't install it or set it up, so it makes me very angry...
[ May 22, 2004, 16:01: Message edited by: pathfinder ]
__________________
L++, Gd?, $++, Fr-, C---, S*, T?, Sf+++, Tcp, A+, Bb++@, M++, MpB5, MpT, MpD, MpSa, MpM, RV, Pwt, Fqt, Nd-, Rpt, G+, Au, Mmt,S++, Ss+,
|

May 22nd, 2004, 07:07 PM
|
 |
Colonel
|
|
Join Date: Jun 2002
Location: Connecticut
Posts: 1,518
Thanks: 0
Thanked 0 Times in 0 Posts
|
|
Re: OT: Anyone heard of this file?
Pathfinder, I'm in the mood to post your problem on the USENET and see if anyone has a clue. Don't know if you've decided to do that yourself. If you hate the USENET, don't worry, I won't let the message get traced back to you. I'm just steamed that the progam exists, and there's no info on it anywhere. Anyway, can you give me some more system info -- computer model (Dell, Toshiba, or just say homebrew), and what Version of Windows (98, XP) you're using?
|

May 22nd, 2004, 07:42 PM
|
 |
Major General
|
|
Join Date: Sep 2000
Location: Midlothian, Va, USA
Posts: 2,142
Thanks: 0
Thanked 1 Time in 1 Post
|
|
Re: OT: Anyone heard of this file?
Quote:
Originally posted by Arkcon:
Pathfinder, I'm in the mood to post your problem on the USENET and see if anyone has a clue. Don't know if you've decided to do that yourself. If you hate the USENET, don't worry, I won't let the message get traced back to you. I'm just steamed that the progam exists, and there's no info on it anywhere. Anyway, can you give me some more system info -- computer model (Dell, Toshiba, or just say homebrew), and what Version of Windows (98, XP) you're using?
|
XP (Home edition, v 2002 w Sp1), homebrew PC (athalon 1700+ cpu on an asus Mobo), 512 MB ram, MSI GeForce 4200 with 64 MB ram (53.03 nvidia drivers), Creative SB, 80 GB HDD (can't remember make) with a 40 GB secondary drive. mobo uses nforce drivers.
I don't know jack about usenet, so no biggy. thanks for asking.
[ May 22, 2004, 18:42: Message edited by: pathfinder ]
__________________
L++, Gd?, $++, Fr-, C---, S*, T?, Sf+++, Tcp, A+, Bb++@, M++, MpB5, MpT, MpD, MpSa, MpM, RV, Pwt, Fqt, Nd-, Rpt, G+, Au, Mmt,S++, Ss+,
|

May 22nd, 2004, 09:13 PM
|
Corporal
|
|
Join Date: Dec 2002
Location: Lithuania
Posts: 162
Thanks: 0
Thanked 0 Times in 0 Posts
|
|
Re: OT: Anyone heard of this file?
"siae3123.exe" looks like randomly generated filename to me. I recall reading somewhere that some evil programs install themselves with randomly generated names in order to be harder tracked down. Little help, but at least it can explain why you can't find info about it.
|

May 22nd, 2004, 09:25 PM
|
 |
General
|
|
Join Date: Sep 2003
Location: United Kingdom
Posts: 3,603
Thanks: 0
Thanked 22 Times in 22 Posts
|
|
Re: OT: Anyone heard of this file?
Even if my knowledge of informatics is about nill, I read something along the lines of what BBgemott mentioned as well. The fact that Google finds nothing is very unusual, so I would believe it is a name that has been generated at random.
Likewise, it might be that this exe has cousins on your computer, to avoid being suppressed too easily. Once I had a somewhat similar virus, which was present in several exes and used a few different names (it didn't generate names as far as I know though). How to get rid of it without invoking the Format spell is another matter obviously, but I would expect the Usenet to have better answers available. (My understanding of it is that it is basically a *lot* of newsGroups and includes other discussions, news and so on)
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is On
|
|
|
|
|