Virus/Trojan Need Help Finding
|
Original Message
|
Name: kristov
Date: February 23, 2003 at 10:07:00 Pacific
Subject: Virus/Trojan Need Help Finding OS: WinXP Pro CPU/Ram: 2.53mhz/1gigRDRAM
|
Comment: Im definately infected by a Virus/Trojan or something and I cant seem to kill it. Could someone offer some advice please! I have downloaded about 10 different Virus/Trojan killers because apparently my crappy Norton Antivirus doesnt work. Various ones have found "Trojan", "Whack-A-Mole", and I think one called Supervisor.exe. Even though I have removed/killed various findings - in general it always comes back and I can not seem to find/kill it permanately. Also, the major side effect is it keeps adding msmsgs UDP 1232 (or various other numbers) into my Windows XP Firewall - and it also seems to slow my computer down sometimes alot - most of the activity seems to be in the svchost.exe file when I look at Task Manager. Make sense? Thanks, CHris
Report Offensive Message For Removal
|
|
Response Number 1
|
Name: capt
Date: February 23, 2003 at 12:12:08 Pacific
Subject: Virus/Trojan Need Help Finding |
Reply: (edit)You said that you have used various programs to detect and clean yor problem, but did you go to their websites to get any additional information/instructions on how to remove the trojan/worm/virus? Since you have XP, you might have had to disable system restore to delete all of the trojan/worm/virus packets. After you disable system restore, you would shutdown your computer and rescan, if the system is clean, then you would turn system restore back on. XP's firewall only blocks incoming traffic, so you would need a good after-market firewall,(Sygate/Zone Alarm/Kerio/Outpost), to prevent and monitor any outgoing traffic from a possible trojan, and this firewall would allow you to deny it outgoing traffic access.
Report Offensive Follow Up For Removal
|
|
Response Number 2
|
Name: zzino
Date: February 23, 2003 at 12:49:42 Pacific
Subject: Virus/Trojan Need Help Finding
|
Reply: (edit)hi Kristov Whack-a-mole is a modifed version of NetBus wich is a backdoor trojan.
check this site for removal instructions http://www.commodon.com/threat/threat-wam.htm success zz.
Report Offensive Follow Up For Removal
|
Use following form to reply to current message: