Computing.Net > Forums > Security and Virus > Wininetd.exe,worm or not?

Computing.Net: Over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to sign up now, it's free!

Wininetd.exe,worm or not?

Reply to Message Icon

Original Message
Name: jsft
Date: May 24, 2003 at 08:50:35 Pacific
Subject: Wininetd.exe,worm or not?
OS: XP HOME
CPU/Ram: 1.2
Comment:

I'm wanting to know if this is a worm or any type of virus or not I know Norton don't list it?



Report Offensive Message For Removal


Response Number 1
Name: Abnormal
Date: May 24, 2003 at 09:05:30 Pacific
Reply: (edit)

Try a free online virus scan here;

http://housecall.trendmicro.com/


Report Offensive Follow Up For Removal

Response Number 2
Name: wawadave
Date: May 24, 2003 at 11:38:58 Pacific
Reply: (edit)

free trojin scan
http://www.trojanscan.com/trojanscan/scanner.htm
if its not found in the above two scans its most likely safe. unless its extreamly new rescan in a few days so there will be newer definitions out.


Report Offensive Follow Up For Removal

Response Number 3
Name: www
Date: May 24, 2003 at 12:46:00 Pacific
Reply: (edit)

Report Offensive Follow Up For Removal

Response Number 4
Name: jsft
Date: May 24, 2003 at 17:51:10 Pacific
Reply: (edit)

thank you! I just did a virus scan last night and it didn't find anything and Norton didn't list it in the defenitions so I wasn't sure.


Report Offensive Follow Up For Removal

Response Number 5
Name: flx347
Date: May 29, 2003 at 00:46:47 Pacific
Reply: (edit)

If you read again response n°3, you should understand it is a Trojan Horse. I am still in the process of getting my network clear for about three weeks now.


Report Offensive Follow Up For Removal


Response Number 6
Name: LoneWolfX1X
Date: June 1, 2003 at 22:21:52 Pacific
Reply: (edit)

My uncle called me up to help him out with this one. Unfortunately im 3 states away and troubleshooting over the phone is hardly ideal.

Can anyone help me ID the actual proccess name? No wininitd or any variations thereof under proccesses or registry tho not having access to the system I cant check the other entries for validity.

He's in safemode right now running a full scan. Also the PCPitstop.com (Panda) didn't even detect it.

If I could just ID the actual proccess the rest would be cake



Report Offensive Follow Up For Removal

Response Number 7
Name: kellyguinn
Date: June 1, 2003 at 23:46:01 Pacific
Reply: (edit)

The original virus is backdoor.winet It is a Trojan Horse. You can look it up at
Http://www.sarc.com/avcenter/venc/data/backdoor.winet.html

This seemed to work for me so far.

Good Luck


Report Offensive Follow Up For Removal

Response Number 8
Name: dama7
Date: June 7, 2003 at 21:40:08 Pacific
Reply: (edit)

Big problem. I have Norton Corporate Version that auto updates every day. Got this Trojan horse anyway. You have to open the registry (run - regedit) and delete the values from the registry. Unfortunately, the damm file stays in windows/system and you can't delete it! Unless somebody out there knows something I don't. H E L P !


Report Offensive Follow Up For Removal

Response Number 9
Name: dama7
Date: June 7, 2003 at 22:30:38 Pacific
Reply: (edit)

Got it! Advice from www on another trojan horse problem, and it works! Download the Trojan Remover from www.simplysup.com. It's free for 30 days and will wipe out any of those nastys that have been driving us nuts. The program actually renames the offending file so you can delete it. Just follow the simple step by stem instructions. I'm buying it!


Report Offensive Follow Up For Removal

Response Number 10
Name: Rex
Date: June 28, 2003 at 03:12:33 Pacific
Reply: (edit)

I tried Trojan Remover and it found the file and told me that it had Topdialer inside it. When Trojan remover scanned my machine it locked up and went to blue screen (windows XP) I have never seen this before in XP. When I restarted it Trojan Remover continued to scan rest of machine and said to run the program again to remove trojan. I tried this but the result was the same system lockup.


Report Offensive Follow Up For Removal

Response Number 11
Name: Ender
Date: June 29, 2003 at 12:19:26 Pacific
Reply: (edit)

Does anyone know where I can
download the Trojan Horse
"backdoor.winet"? I have a MAC OS X and
i can use the trojan to make protecton
software..


Report Offensive Follow Up For Removal






Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home








Do you have your own blog?

Yes
No
I did before
I will soon


View Results

Poll Finishes In 4 Days.
Discuss in The Lounge
Poll History




Data Recovery Software