Please help some virus send viruses using smtp
Here is atach
avptool_syscheck.zip![]()
Please help some virus send viruses using smtp
Here is atach
avptool_syscheck.zip![]()
1.how do you know it ?
2. Please execute this script:
it will just copy some files, please find the quarantine folder in sub folder of avptool,Код:begin SearchRootkit(true, true); SetAVZGuardStatus(True); QuarantineFile('c:\program files\5ci\icafe client v1.0\icclie.exe',''); QuarantineFile('C:\WINDOWS\system32\ntsim.sys',''); QuarantineFile('c:\documents and settings\useric\useric.exe',''); BC_ImportAll; BC_Activate; RebootWindows(true); end.
Zip it with password virus and send by http://virusinfo.info/upload_virus_eng.php?tid=38353
*Нажми и выполни, если хочешь чтобы помощь улучшилась и ускорилась
*MyFirefox Portable
special avz @ rapidshare.com
md5: 2091925798B7909E010E3F7E328C5F0D
i uploaded but IC Client is not virus
Here new attach time when sending mails
avptool_syscheck.zip
Помогито и так уже сервер забанил наш ип за рассылку спама
Please, here in english. In Russian http://virusinfo.info/forumdisplay.php?f=46
useric.exe-Some fresh trojan.
drweb call it Trojan.DownLoad.28430, vba32( heuristic detection: BScope.Trojan.Inject.Gen)
here the script for curing: (remember, before execution: disconnect form internet, disable system restore and disable your antivirus)
Please clean temp folders.Код:begin SearchRootkit(true, true); SetAVZGuardStatus(True); TerminateProcessByName('c:\documents and settings\useric\useric.exe'); DeleteFile('c:\documents and settings\useric\useric.exe'); BC_ImportAll; ExecuteSysClean; BC_Activate; RebootWindows(true); end.
you can also can scan with latest cureit in safe mode and make a new log in avptool![]()
Последний раз редактировалось drongo; 27.01.2009 в 19:00.
*Нажми и выполни, если хочешь чтобы помощь улучшилась и ускорилась
*MyFirefox Portable
special avz @ rapidshare.com
md5: 2091925798B7909E010E3F7E328C5F0D