Wilders Security Forums  

Go Back   Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archive of DiamondCS Support Forums > Trojan Defence Suite
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old December 4th, 2003, 04:08 PM
pazuzu pazuzu is offline
Infrequent Poster
 
Join Date: Nov 2003
Location: N Z
Posts: 27
Default HELP QUICK LOL

infection

i have just confgured tds to stmtp (thx jooske ) upon
receving some mail i closed off these ports but think i am infected w slammer worm and one called vb bubble on tcp interrogation , tried taking screenshot but i dunno where its gone grr . please help . pazuzu , sql patch fails to respond upon loading ?? any tips ...
  #2  
Old December 4th, 2003, 04:14 PM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:HELP QUICK LOL

What makes you think you could be infected? Did a scan alarm on anything?
__________________
Jooske
"o_o"
  #3  
Old December 4th, 2003, 04:59 PM
pazuzu pazuzu is offline
Infrequent Poster
 
Join Date: Nov 2003
Location: N Z
Posts: 27
Default Re:HELP QUICK LOL

Quote:
quoting: Jooske link=board=5;threadid=17292;start=0#msg106899 date=1070572484]
What makes you think you could be infected? Did a scan alarm on anything?
yes i saw arbitrary code and the word slammer . i do not program , ie6 keeps getting knocked over , opera now , lol ha . i think slammer is trying to "phone home"
the actual words were virus detected . and then coding .
recieving a lot of malformed/crafted pkts since posting here lol ? oh well . but have asviewer results and tds logs for 2 days submitted to support. do'nt really want to fdisk , but alas who knows , as always ty .. time for portscan i think
Attached Files
File Type: txt log.txt (299 Bytes, 0 views)
  #4  
Old December 4th, 2003, 05:58 PM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re:HELP QUICK LOL

Is this from your firewall?
A portscan on a certain port doesn't mean immediately you're infected.

At least make sure your firewall is up, you might like to test your ports at grc.com -shieldsup and all available tests including all ports you like especially to be tested.
As TDS doesn't detect viruses, which program warned and what did you do then?

At least try one of the online scans as a second opinion; during that you best close your installed av/at (tds is not necessary as it doesn't run resident)
and you might like not to set the online scans for automatic cleaning but do that afterwards once you know the results log.
__________________
Jooske
"o_o"
  #5  
Old December 4th, 2003, 08:39 PM
Lana irwin
 
Posts: n/a
Default Re:HELP QUICK LOL

How do I enable or find firewall protection
  #6  
Old December 4th, 2003, 08:46 PM
snowbound snowbound is offline
Retired Moderator
 
Join Date: Feb 2003
Location: The Big Smoke
Posts: 8,727
Default Re:HELP QUICK LOL

Hi Lana

Welcome to wilders


If u need firewall help start a new post here

http://www.wilderssecurity.com/index.php?board=23




Snowbound
  #7  
Old December 8th, 2003, 07:07 PM
pazuzu pazuzu is offline
Infrequent Poster
 
Join Date: Nov 2003
Location: N Z
Posts: 27
Default Re:HELP QUICK LOL

Quote:
quoting: Jooske link=board=5;threadid=17292;start=0#msg106944 date=1070578734]
Is this from your firewall?
A portscan on a certain port doesn't mean immediately you're infected.

At least make sure your firewall is up, you might like to test your ports at grc.com -shieldsup and all available tests including all ports you like especially to be tested.
As TDS doesn't detect viruses, which program warned and what did you do then?

At least try one of the online scans as a second opinion; during that you best close your installed av/at (tds is not necessary as it doesn't run resident)
and you might like not to set the online scans for automatic cleaning but do that afterwards once you know the results log.


hi jooske thanks for a speedy reply , yes it was a fwall log . but i did a TDS environment settings check and it came up there . been offline for a couple , duh @ me for not setting 1 bios setting to enable instead of auto lol , modem of course lol . i was using trend's pc-cillin , but alas their customer support sux , so have gone back to good ol' AVG . clean now , downloding spyware guard and mru blaster , Thanx Javacool . and wilders
 

Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archive of DiamondCS Support Forums > Trojan Defence Suite « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 03:46 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums