Wilders Security Forums  

Go Back   Wilders Security Forums > Other Security Topics > malware problems & news
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old June 25th, 2005, 12:42 PM
nork nork is offline
Infrequent Poster
 
Join Date: Mar 2005
Posts: 2
Default Trojan IRC/backdoor.SdBot.192.W

AVG has identified this trojan in a file called up2dat5 in windows\system32.
I keep deleting it but it comes back.

Using google for up2dat i find it has something to do with kazaa. I have never installed Kazaa but i did download a kazaa program, just didnt install it.


Registry scan finds up2dat5 in HKEY USERS default\microsoft\software\ole - microsoft updat REG_SZ up2dat5.exe


Can i safely delete this entry?

thanks
  #2  
Old June 25th, 2005, 01:09 PM
snowbound snowbound is offline
Retired Moderator
 
Join Date: Feb 2003
Location: The Big Smoke
Posts: 8,727
Default Re: Trojan IRC/backdoor.SdBot.192.W

U can submit the file at Jotti

http://virusscan.jotti.org/


snowbound
  #3  
Old June 25th, 2005, 02:32 PM
nork nork is offline
Infrequent Poster
 
Join Date: Mar 2005
Posts: 2
Default Re: Trojan IRC/backdoor.SdBot.192.W

Will give it a try.
thanks
 

Wilders Security Forums > Other Security Topics > malware problems & news « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 06:34 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums