Posted 26 December 2010 - 11:29 PM
Posted 26 December 2010 - 11:30 PM
Posted 26 December 2010 - 11:33 PM
Edited by dylansucks, 26 December 2010 - 11:44 PM.
Posted 26 December 2010 - 11:44 PM
" Extinguishing Malware from the world"
The Virus, Trojan, Spyware, and Malware Removal forum is very busy. If I'm helping you and I've not posted back within 24 hrs., send a PM with your topic link. Thank you.
ALL OTHER HELP REQUESTS VIA THE PM SYSTEM WILL BE IGNORED. The Forums are there for a reason!
Thanks-
If I have helped you, consider making a donation to help me continue the fight against Malware! Just click
Posted 27 December 2010 - 04:39 AM
Posted 27 December 2010 - 12:32 PM
Rootkit:: c:\windows\system32\drivers\jacwiabn.sys Folder:: c:\documents and settings\All Users\Application Data\boost_interprocess C:\Combo-Fix13401C Driver:: bruex jacwiabn Registry:: [-HKEY_LOCAL_MACHINE\System\ControlSet003\Services\jacwiabn]
" Extinguishing Malware from the world"
The Virus, Trojan, Spyware, and Malware Removal forum is very busy. If I'm helping you and I've not posted back within 24 hrs., send a PM with your topic link. Thank you.
ALL OTHER HELP REQUESTS VIA THE PM SYSTEM WILL BE IGNORED. The Forums are there for a reason!
Thanks-
If I have helped you, consider making a donation to help me continue the fight against Malware! Just click
Posted 27 December 2010 - 11:01 PM
Posted 28 December 2010 - 04:29 AM
CA Virus detail of W32/VirutThe virus disables Windows File Protection by injecting code into the "winlogon.exe" process that patches system code in memory.
McAfee Risk Assessment and Overview of W32/VirutThe virus has a number of bugs in its code, and as a result it may misinfect a proportion of executable files....some W32/Virut.h infections are corrupted beyond repair.
AVG Overview of W32/VirutThere are bugs in the viral code. When the virus produces infected files, it also creates non-functional files that also contain the virus...Due to the damaged caused to files by virut it's possible to find repaired but corrupted files. They became corrupted by the incorrect writing of the viral code during the process of infection. undetected, corrupted files (possibly still containing part of the viral code) can also be found. this is caused by incorrectly written and non-function viral code present in these files.
Keygen and Crack Sites Distribute VIRUX and FakeAV...warez and crack web pages are being used by cybercriminals as download sites for malware related to VIRUT and VIRUX. Searches for serial numbers, cracks, and even antivirus products like Trend Micro yield malcodes that come in the form of executables or self-extracting files...quick links in these sites also lead to malicious files. Ads and banners are also infection vectors...
Backdoors and What They Mean to YouWhenever a system has been compromised by a backdoor payload, it is impossible to know if or how much the backdoor has been used to affect your system...There are only a few ways to return a compromised system to a confident security configuration. These include:
• Reimaging the system
• Restoring the entire system using a full system backup from before the backdoor infection
• Reformatting and reinstalling the system
This is what Jesper M. Johansson at Microsoft TechNet has to say: Help: I Got Hacked. Now What Do I Do?.If I guide someone with Virut (or any other File Infector) present and their Antivirus cannot properly disinfect it, then I recommend a format and reinstall...dealing with such infections is a waste of time and that's why I prefer the fastest and safest solution - which is a format and reinstall...After all, I think it would be irresponsible to let the malware "stew" (download/spread/run more malware) for another couple of days/weeks if you already know it's a lost case.
The only way to clean a compromised system is to flatten and rebuild. That’s right. If you have a system that has been completely compromised, the only thing you can do is to flatten the system (reformat the system disk) and rebuild it from scratch (reinstall Windows and your applications).
" Extinguishing Malware from the world"
The Virus, Trojan, Spyware, and Malware Removal forum is very busy. If I'm helping you and I've not posted back within 24 hrs., send a PM with your topic link. Thank you.
ALL OTHER HELP REQUESTS VIA THE PM SYSTEM WILL BE IGNORED. The Forums are there for a reason!
Thanks-
If I have helped you, consider making a donation to help me continue the fight against Malware! Just click
Posted 28 December 2010 - 04:44 AM
Posted 28 December 2010 - 12:15 PM
" Extinguishing Malware from the world"
The Virus, Trojan, Spyware, and Malware Removal forum is very busy. If I'm helping you and I've not posted back within 24 hrs., send a PM with your topic link. Thank you.
ALL OTHER HELP REQUESTS VIA THE PM SYSTEM WILL BE IGNORED. The Forums are there for a reason!
Thanks-
If I have helped you, consider making a donation to help me continue the fight against Malware! Just click
Posted 30 December 2010 - 06:56 PM
" Extinguishing Malware from the world"
The Virus, Trojan, Spyware, and Malware Removal forum is very busy. If I'm helping you and I've not posted back within 24 hrs., send a PM with your topic link. Thank you.
ALL OTHER HELP REQUESTS VIA THE PM SYSTEM WILL BE IGNORED. The Forums are there for a reason!
Thanks-
If I have helped you, consider making a donation to help me continue the fight against Malware! Just click
0 members, 0 guests, 0 anonymous users