Wilders Security Forums  

Go Back   Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archived ESET Support Forums > NOD32 version 2 Forum
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old August 20th, 2005, 05:28 AM
Ryan Hayward Ryan Hayward is offline
Regular Poster
 
Join Date: Jul 2005
Posts: 57
Default Trojans While Surfing

Sometimes I get trojans from song lyrics sites such as musicsonglyrics.com
Here is an event logged from the above site. Should I be worried about these trojan threats, even with Nod32 protection ?
If so, could I turn something off with IE to prevent possible trojans from infesting my 'puter ?
I have to ask as I use internet banking and don't want those trojans that can log key presses :-)

Time Module Object Name Threat Action User Information
20/08/2005 17:20:28 PM IMON archive <Removed> probably a variant of HTML/Exploit.CodeBaseExec trojan Connection terminated YOUR-8ABC512DA0\Compaq_Owner

Last edited by ronjor : August 20th, 2005 at 06:45 AM. Reason: Remove malware link
  #2  
Old August 20th, 2005, 06:04 AM
Blackspear's Avatar
Blackspear Blackspear is offline
Global Moderator
 
Join Date: Dec 2002
Location: Gold Coast, Queensland, Australia
Posts: 15,114
Default Re: Trojans While Surfing

I am not concerned while using Nod32, though I do also have Process Guard 3 preventing Trojan installation.

Cheers
__________________
"Illegitimis non carborundum"
translation:
"Don't let the bastards grind you down"
U.S. General Joseph W. "Vinegar Joe" Stilwell (1883-1946)
Two Photographers
  #3  
Old August 20th, 2005, 06:07 AM
Ryan Hayward Ryan Hayward is offline
Regular Poster
 
Join Date: Jul 2005
Posts: 57
Default Re: Trojans While Surfing

Here's the most recent log of yet another attack, this makes 4 in the last 2 hours and all from song lyric sites. Should I delete the files from quarantine to be extra safe or should they be harmless there ?
I wonder why quite a few song lyric sites are up to this sort of behaviour, I thought most trojans would come from porn or warez sites, not seemngly legitimate sites....

Time Module Object Name Threat Action User Information
20/08/2005 18:01:39 PM AMON file C:\Documents and Settings\Compaq_Owner\Local Settings\Temporary Internet Files\Content.IE5\215245I7\ysb_prompt[1].htm probably a variant of HTML/Exploit.CodeBaseExec trojan quarantined - deleted YOUR-8ABC512DA0\Compaq_Owner Event occurred on a newly created file. The file was moved to quarantine. You may close this window.
  #4  
Old August 20th, 2005, 06:08 AM
Ryan Hayward Ryan Hayward is offline
Regular Poster
 
Join Date: Jul 2005
Posts: 57
Default Re: Trojans While Surfing

Thankyou, will check it out !
  #5  
Old August 20th, 2005, 06:08 AM
Blackspear's Avatar
Blackspear Blackspear is offline
Global Moderator
 
Join Date: Dec 2002
Location: Gold Coast, Queensland, Australia
Posts: 15,114
Default Re: Trojans While Surfing

Quote:
Originally Posted by Ryan Hayward
Here's the most recent log of yet another attack, this makes 4 in the last 2 hours and all from song lyric sites. Should I delete the files from quarantine to be extra safe or should they be harmless there?
They are totally harmless in Quarantine.

Cheers
__________________
"Illegitimis non carborundum"
translation:
"Don't let the bastards grind you down"
U.S. General Joseph W. "Vinegar Joe" Stilwell (1883-1946)
Two Photographers
  #6  
Old August 20th, 2005, 06:37 AM
Dakhor Dakhor is offline
Regular Poster
 
Join Date: Jan 2005
Posts: 75
Default Re: Trojans While Surfing

Quote:
Originally Posted by Ryan Hayward

I wonder why quite a few song lyric sites are up to this sort of behaviour, I thought most trojans would come from porn or warez sites, not seemngly legitimate sites....



Its been like that for a long time... What their gain is I do not know. I suppose lyrics sites are more of an easy way to spread their stuff to the masses. More people prob visit them then some other non legit sites.

And arent the lyrics themselves copyrighted so how legit are lyrics sites anyway?

/DaK/
  #7  
Old August 23rd, 2005, 04:55 AM
Holden4th Holden4th is offline
Regular Poster
 
Join Date: Mar 2005
Posts: 69
Question Re: Trojans While Surfing

Quote:
Originally Posted by Blackspear
I am not concerned while using Nod32, though I do also have Process Guard 3 preventing Trojan installation.

Cheers

Why Process Guard?
  #8  
Old August 23rd, 2005, 05:36 PM
sir_carew's Avatar
sir_carew sir_carew is offline
Frequent Poster
 
Join Date: Sep 2003
Location: Santiago, Chile
Posts: 884
Default Re: Trojans While Surfing

Text extraxted from ProcessGuard help:

JUST IMAGINE A SECURITY SOLUTION AS POWERFUL AS THIS ...
... that could stop the most dangerous trojans in the world from running
... that allowed you to control which programs can and can't run
... that secured processes from other process-based attacks
... that could prevent kernel rootkit drivers from infecting you
... that allowed you to observe the behaviour of programs
... that allowed you to block hooks and injections
... that secured physical memory from attack

Welcome to DiamondCS ProcessGuard 3
Award-winning security software for Microsoft Windows 2000/XP


Quote:
Originally Posted by Holden4th
Why Process Guard?
__________________
- ASUS M4A79 Deluxe
- ASUS HD 5770 CuCore
- AMD PHENOM II X4 965 @3.7 NB 2400
- 4GB DDR2 KINGSTON HYPER X 800 MHZ 5-5-5-15 T1
- SAMSUNG SSD 470 SERIES 64 GB
- SEAGATE SATAII 1 TB
 

Wilders Security Forums > Archived Forums > Closed Sub-Forums > Archived ESET Support Forums > NOD32 version 2 Forum « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 03:49 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums