PDA

Click to See Complete Forum and Search --> : win32.luder?


david244us
January 22nd, 2007, 12:15 AM
hi all, while working all day my gf decided to download a mail program from I guess an unknown mail name address off of yahoo mail lol, anyways I can't boot up now long enough to try to remove it before I get a blue screen, anyone seen this virus/worm? it win32.luder, not sure if A or C or what but i had the free edition of avast running with the free zonealarm, and since avast wasnt deleting i tryed a trial edition of kaspersky but where i messed up I had to do a uninstall of zonealarm, whick must have been blocking it, but if anyone know a program which might get rid of this shit lol I would give ya a big hug lol, sorry all if spelling in all is bad, getting drunk :)

david244us
January 22nd, 2007, 12:55 AM
forgot to post everytime it boots it says something about alsys.exe file if that helps

nihil
January 22nd, 2007, 12:58 AM
I guess you have tried running your AV in safe mode?

Try booting into safe mode with network support and runing the PC-Cillin online scan called "housecall"............ or the one from Panda Software or whoever else you fancy.

:)

EDIT: Make sure that you reinstall and activate a firewall first.

david244us
January 22nd, 2007, 01:07 AM
havent tryed network will try, trying cillien thanks respond in a min, hope it stays up on long enough, thanks so far :)

david244us
January 22nd, 2007, 01:17 AM
oh nihil, wont run pc chillen when i hit the scan button maybe in safe mode i cant run active x or whatever , ill try panda

brokencrow
January 22nd, 2007, 05:20 AM
Here's CA's take on w32.luder:

http://www3.ca.com/securityadvisor/virusinfo/virus.aspx?id=60525

Sounds like a booger...

dalek
January 23rd, 2007, 01:29 PM
Have you tried doing a System Restore (http://bertk.mvps.org/)

HTH....:cool:

david244us
January 23rd, 2007, 10:24 PM
thanks all for the help still working on it, tryed a system restore but files still there i guess, keeps leaving me files under c: like game0 game1 game2, up to five files like this, I'll keep you all posted

dalek
January 23rd, 2007, 11:33 PM
thanks all for the help still working on it, tryed a system restore but files still there i guess, keeps leaving me files under c: like game0 game1 game2, up to five files like this, I'll keep you all posted
Try downloading PREVX: http://free.prevx.com/

DEFINITION OF: GAME0.EXE

Safety Rating: Known Malware, do not run
Malware Family: Part of Malware group - Trojan ADIRSS
Determination: Automatically determined using Prevx1 centralized heuristics
Malware Form: EXPLOIT
Protection: Prevx1 is a very powerful PC security product, it will protect, disinfect, cleanup and remove GAME0.EXE (http://info.prevx.com/downloadremove.asp) and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
New Users: You can download the full Prevx1 product and use it to cleanup and remove GAME0.EXE and other infections free of charge, then leave it to monitor your PC for other infections (http://info.prevx.com/downloadremove.asp)
First seen: Jan 18 2007 (GMT)
Last seen: Today (GMT)
File Size: 54,435 bytesAs it's a Trojan you could also try Stinger_Trojan_Removal (http://vil.nai.com/vil/stinger/) from McAfee

dalek
January 23rd, 2007, 11:54 PM
You can try PREVX (http://info.prevx.com/downloadremove.asp?mlw=GAME0.EXE.EXE) it has a 30 day trial, but it has tips on removing your particular issue..

DEFINITION OF: GAME0.EXE.EXE
Safety Rating: Known Malware, do not run
Malware Family: Part of Malware group - Trojan ADIRSS
Determination: Automatically determined using Prevx1 centralized heuristics
As it's a Trojan you can also get Stinger (http://vil.nai.com/vil/stinger/) from McAfee... ;)

Just so you know:
alsys.exe (Activity Logger Spyware) - Details

If a program by the name of alsys.exe is running on your computer, you may have a spyware program known as 'activity logger' installed on your computer. This program could have been installed via an installation package (possibly with another application). The 'activity logger' program may record your emails, record your key-strokes, and take screen-shots
alsys.exe is considered to be a security risk, not only because spyware removal programs flag Activity Logger Spyware as spyware, but also because a number of users have complained about its performance.
Activity Logger Spyware is likely spyware and as such, presents a serious vulnerability which should be fixed immediately! Delaying the removal of alsys.exe may cause serious harm to your system and will likely cause a number of problems, such as slow performance, loss of data or leaking private information.



http://www.auditmypc.com/process/alsys.asp

david244us
January 24th, 2007, 04:06 AM
well, ended up formatting, thanks for all the help like always :)