uk.comp.misc
[Top] [All Lists]

Re: Pandex trojan - Norton and AVG fail to remove it

Subject: Re: Pandex trojan - Norton and AVG fail to remove it
From: Adrian C <email@xxxxxxxxxxxx>
Date: Wed, 23 Jul 2008 15:39:28 +0100
Newsgroups: uk.comp.misc


Mortimer wrote:

In their description, does their use of the word "drops" (as in "The Trojan also drops one of following files: %System%\drivers\ip6fw.sys / %System%\drivers\netdtect.sys") mean "creates the file it does not already exist and modifies/infects if it does already exist"?


A "drop" will be a file replacement or creation. Some virus writers have been known to go to war with other virus writers and replace each others files. Sometimes this crashes PCs :-(

Googing "virus forums pandex" or "virus forums Cutwail" might give some insight to fixes. This virus unfortunatley download its own updates and has rootkit hooks into the compromised machine.

--
Adrian C

<Prev in Thread] Current Thread [Next in Thread>