What are these dll's?

SoundGuyDave

Member
May 15, 2006
32
0
0
Does anyone know what the following files do:
ssqrsqn.dll
geebx.dll
51ec286b.exe

I'm using a progam called Security Task Manager, this me shows everything thats running on my computer. It tells me that the 2 .dll's are "Potentially Dangerous" because there is no detailed discribtion of the program. Also there is no manufacturer info. and it's function is to monitor, record inputs and manipulate. They start when Internet Explorer starts, I'm using Mozilla Firefox i don't know if makes a difference or not.

As for 51ec286b.exe it has the same "Potentially Dangerous" rating for the same reason in
Security Task Manager. And my Firewall keeps asking me to grant it permission to access the net, I never allow it to do so.

The 3 files are in the System32 folder and 51ec286b.exe is in C:\Documents and Settings\Administrator\Local Settings folder also. I have quarantined them in Security Task Manager so they won't start the next time windows starts but they still start everytime. I haven't tried to delete them manually, yet.

I'd be greatful for any help,
Cheers.
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Are you using antivirus software? If so, what kind? Try putting those .DLLs into VirusTotal's multi-scanner and see what the results are: http://www.virustotal.com and the uploader is near the top. VirusTotal scans with about 25 different antivirus products and shows what they find.
 

SoundGuyDave

Member
May 15, 2006
32
0
0
I'm using Zone Lab's ZoneAlarm Firewall, Webroot's SpySweeper and Windows Defender none of these found anything, except ZoneAlarm which as i've said warns me when 51ec286b.exe is looking to access the net. I'll try VirusTotal. Thanks
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Ok, so you have zero antivirus software, then. Try a 30-day trialware of Kaspersky AntiVirus Personal 6: http://www.kaspersky.com/trials.


1) once it's installed, double-click the red K down in the tray to open up the Kaspersky window, then click the SETTINGS at the top

2) go through every panel in SETTINGS and max out all the detection sliders and enable all the checkboxes except Application Integrity Control

3) now right-click the red K and do an Update.

4) reboot if necessary, then right-click the red K and do a Scan My Computer

5) take a snack break while the scan runs.

6) when the scan is complete, see what it found and nuke it all. Kaspersky is known as one of the top-notch programs, so if there's a Trojan, worm, backdoor, rootkit or virus, it's probably going to find it.
 

SoundGuyDave

Member
May 15, 2006
32
0
0
I've been looking for a good antivirus program,I havent found a good all rounder. Some are just plain useless and others slow down my pc. I'll try Kaspersky, does it slow down your pc?
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
Originally posted by: SoundGuyDave
I've been looking for a good antivirus program,I havent found a good all rounder. Some are just plain useless and others slow down my pc. I'll try Kaspersky, does it slow down your pc?
Not as much as a heavy virus infestation :evil:

Once you've got the system cleaned, you can revert it to the "Recommended" detection levels so it doesn't have as much performance impact. But overall, people are saying that Kaspersky 6 is not too bad, especially considering it's one of the ones that has really high detection rates and effective cleaning abilities. Anyway, you can judge for yourself about its performance impact when you try it out

 

corkyg

Elite Member | Peripherals
Super Moderator
Mar 4, 2000
27,370
239
106
The geebx.dll is also .known as trojan.vundo. It is not easy to remove.

Vundo

 

RelaxTheMind

Platinum Member
Oct 15, 2002
2,245
0
76
spysweeper is usually good at getting rid of the vundo. its spyware that has virus like attributes. Avast (avast.com) has a pretty good FREE antivirus and it has a boot time virus scanner too. I like it for computers that have to much crap that make the virus scan take several hours.
 

earthman

Golden Member
Oct 16, 1999
1,653
0
71
AVG is a light fast antivirus that doesn't seem to have alot of overhead. It has a free version.
 

SoundGuyDave

Member
May 15, 2006
32
0
0
UPDATE:

I downdloaded Kaspersky 6 and it found 51ec286b.exe to be a trojan downloader and ssqrsqn.dll to be Adware.
As corkyg said "The geebx.dll is also .known as trojan.vundo." I killed it with Spysweeper.

Kaspersky also found 43 other malicious files on my PC, which i was more than happy to nuke, thanks mechBgon, ur on my xmas card list.

Thanks 4 all yer help.
 

corkyg

Elite Member | Peripherals
Super Moderator
Mar 4, 2000
27,370
239
106
That's good news, Dave - I just installed Kaspersky 6 on my system - and it boots faster that it did with VScan 10.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |