Thanks, but instructions read:
c. Navigate to the key:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
d. In the right pane, delete the value:
System32 %Windir%\System32.exe
e. Exit the Registry Editor.
And there is no such file....
thanks anyway....
claudio
----- Original Message -----
From: Dr Halonfires LesGirl
Newsgroups: alt.comp.virus
Sent: Friday, August 22, 2003 6:32 PM
Subject: Re: HAHA TROJAN HORSE
Post by Dr Halonfires LesGirlPost by Villalbahi
Does anyone has eveer seen a trojan horse making these files
C:\WINNT\SYSTEM32\dmminstall_14663.exe
C:\WINNT\SYSTEM32haha\asr2.rar C:\WINNT\SYSTEM32/haha\asr2.rar
C:\WINNT\SYSTEM32\haha\setup.exe
which are "seen" by norton entivirus but not detected as a virus ?
panda software found them but could not delete them
while reading this files some nice file names appear like Pirates of
the Caribe....
thanks
claudio
read this document in Symantec's knowledge base for removal instructions:
http://securityresponse.symantec.com/avcenter/venc/data/backdoor.sysxxx.html
--
Virus Alerts LIVE from Sophos !
Also : Bush is Out of His Tree !!!
at http://psi.5544.net
Post by Dr Halonfires LesGirlPost by VillalbaPost by Villalbahi
Does anyone has eveer seen a trojan horse making these files
C:\WINNT\SYSTEM32\dmminstall_14663.exe
C:\WINNT\SYSTEM32haha\asr2.rar C:\WINNT\SYSTEM32/haha\asr2.rar
C:\WINNT\SYSTEM32\haha\setup.exe
which are "seen" by norton entivirus but not detected as a virus ?
panda software found them but could not delete them
while reading this files some nice file names appear like Pirates of
the Caribe....
thanks
claudio
http://securityresponse.symantec.com/avcenter/venc/data/backdoor.sysxxx.html
Post by Dr Halonfires LesGirl--
Virus Alerts LIVE from Sophos !
Also : Bush is Out of His Tree !!!
at http://psi.5544.net
hi
Does anyone has eveer seen a trojan horse making these files
C:\WINNT\SYSTEM32\dmminstall_14663.exe C:\WINNT\SYSTEM32haha\asr2.rar
C:\WINNT\SYSTEM32/haha\asr2.rar
C:\WINNT\SYSTEM32\haha\setup.exe
which are "seen" by norton entivirus but not detected as a virus ?
panda software found them but could not delete them
while reading this files some nice file names appear like Pirates of the
Caribe....
thanks
claudio