Greenguy's Board


Go Back   Greenguy's Board > General Business Knowledge
Register FAQ Calendar Today's Posts

Reply
 
Thread Tools Search this Thread Rate Thread Display Modes
Old 2005-03-14, 04:44 PM   #1
frankthetank
Stupid risks make life worth living
 
Join Date: Jan 2005
Location: Renesse NL
Posts: 386
Send a message via ICQ to frankthetank
Trojan help needed

i just got a partner account of a tgp where I caught a trojan 8java class load). Usually my scanner deletes the files at once, but this time it was only detected, not removed.

Now I tried to remove it manually, but I canīt delete the file because it is in use.

Any help?
frankthetank is offline   Reply With Quote
Old 2005-03-14, 05:04 PM   #2
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
make note of the file location
reboot into command line mode (f5 during the boot process, select the command line option)

cd \directory\where\the\thing\is
del filename.whatever
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote
Old 2005-03-14, 05:07 PM   #3
MadMax
"Without evil there can be no good, so it must be good to be evil sometimes" ~ Satan
 
MadMax's Avatar
 
Join Date: Aug 2004
Location: Motor City, baby, where carjacking was invented! Now GIMME THOSE SHOES!
Posts: 2,385
optionally, you can write down the file path and reboot in safe mode. Since only critical drivers are active in safe mode trojans aren't "in use" 99.5% of the time, then you can just delete it through windows explorer. Just make sure you've got explorer set to show hidden and system files.
MadMax is offline   Reply With Quote
Old 2005-03-14, 05:10 PM   #4
frankthetank
Stupid risks make life worth living
 
Join Date: Jan 2005
Location: Renesse NL
Posts: 386
Send a message via ICQ to frankthetank
Thanks a lot for your help! Just deleted that shit.
frankthetank is offline   Reply With Quote
Old 2005-03-14, 05:23 PM   #5
GeorgeTH
Don't let a programmer design your front-end pages!
 
GeorgeTH's Avatar
 
Join Date: Aug 2003
Location: currently on the road in CA
Posts: 781
...and make sure you have "restore points" turned off (or it might re-install)!
Also look if it's still lurking in your browser cache - to be sure empty it, your \temp directory, and the one under c:\documents and settings\[your name]\application data\sun\java\deployment\cache <<< that's where these bastards tend to nest (don't you just love Microsoft's way of hiding things?)

Also love the fact that now even well-known TGPs are spreading Trojans (happened to us last week at a site I used to trade with last year - thank God I don't anymore) -
if this trend continues it'll be the |goodnight for free porn
__________________
Have a nice day!
GeorgeTH is offline   Reply With Quote
Old 2005-03-14, 05:24 PM   #6
frankthetank
Stupid risks make life worth living
 
Join Date: Jan 2005
Location: Renesse NL
Posts: 386
Send a message via ICQ to frankthetank
Quote:
Originally Posted by GeorgeTH
...and make sure you have "restore points" turned off (or it might re-install)!
Also look if it's still lurking in your browser cache - to be sure empty it, your \temp directory, and the one under c:\documents and settings\[your name]\application data\sun\java\deployment\cache <<< that's where these bastards tend to nest (don't you just love Microsoft's way of hiding things?)
Yes, itīs a great way of free entertainment |cool|
And yes, i deleted all the crap..
frankthetank is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 04:45 AM.


Mark Read
Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
Đ Greenguy Marketing Inc