Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old March 14th, 2002, 11:03 PM
Detox's Avatar
Detox Detox is offline
Global Moderator
 
Join Date: Feb 2002
Location: Texas, USA
Posts: 8,508
Default I-WormBadtransII

Nasty thing was on my parents computer when I visited them the last couple days. I was looking in Trojancheck 5 and saw a funny DLL running.. they had big problems with their Norton and had no AV running do I grabbed the free AVG and found Badtrans.. AVG healed one file and that was it... I looked up Badtrans at Sophos and found that it drops a password stealing trojan, but I could find no trojans with TDS-3 or Trojancheck. I did find the file that the Sophos description said this trojan logs keytstroke information to in WIN/System and deleted it. This finally brings me to my 2 questions :-)

1. When AVG healed the fine (I guess win.init)
did that clear up the trojan as well?

2. The file that keystrokes were logged to (and I deleted) ... was it created by the trojan and I did a good thing or was it a system file that gets altered and I did a bad thing?
__________________
"The price of freedom is eternal vigilance."
- Thomas Jefferson
  #2  
Old March 15th, 2002, 12:17 AM
FanJ
 
Posts: n/a
Default Re: I-WormBadtransII

Hi,

Go to http://www.wilders.org/downloads.htm
and download/install/run pqremove.exe
reboot and run it again
what does it say?
  #3  
Old March 15th, 2002, 03:23 AM
Detox's Avatar
Detox Detox is offline
Global Moderator
 
Join Date: Feb 2002
Location: Texas, USA
Posts: 8,508
Default Re: I-WormBadtransII

ah I can't... I'm near Austin and my folks live in Laredo, and they're away from home until the day after tomorrow so I'll hafta talk my mother through that on the phone and see what happens. When I do I will post the results!
__________________
"The price of freedom is eternal vigilance."
- Thomas Jefferson
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -5. The time now is 04:05 AM.


Powered by vBulletin® Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2009, Wilders Security Forums