PDA

View Full Version : Trojan Warning


hixie
10-23-2005, 06:24 AM
Recently downloaded dimes and my computer got 3 trojans.
Two of them have been identified as TROJ_PSW.CARA and TROJ_BLA.502.
The TROJ_PSW.CARA is a program that retrieves user's passwords and other information within the computer and sends it to and e-mail domain in russia.

Now im not 100% sure is it from dimes but its the only thing i've downloaded in weeks and the trojan appeared right after i installed dimes.
So beware all of you, and any idea on how to get rid of it? delete it in registry?

[XC]thewildblue
10-23-2005, 06:36 AM
Google the viruses and then see what they recommend for removal ? What AV are you using ?

x714n
10-23-2005, 06:39 AM
i have no problem so far with dimes

hixie
10-23-2005, 07:02 AM
Google the viruses and then see what they recommend for removal ? What AV are you using ?
Googled it already, the lastest anti-spy and virus program all say that i should download their lastest patch which would get rid of it, but the trojan disables all anti spy and virus program during the cleaning process, which means their lastest patch is useless.
They also said that a manual removal is possible but the files cannot be deleted and it does not show in the registry which all the sites say.
Im using PC-cillin at the moment and i have tried norton they all quit during the cleaning process.
I think i'm just gonna format the HDD, plus i have SUSE linux now which im dying to try out.

[XC]thewildblue
10-23-2005, 07:04 AM
I take it you tried using the av after the patch and in safe mode and disconnected from the net. Remember its also worth removing your system restore now and again when you get hit with a virus. Just turning it on and off usually does the job, the only thing is this way you lose the ability to roll back as such.

demonR6
10-23-2005, 07:07 AM
How is it possible to get a virus from the Dimes program though??

Ugly n Grey
10-23-2005, 07:12 AM
It's not, the trojan came through an unpatched system or an open port. The dimes packages contain no trojans.

[XC]thewildblue
10-23-2005, 07:15 AM
Beat me to it UnG !

hixie
10-23-2005, 07:27 AM
I take it you tried using the av after the patch and in safe mode and disconnected from the net. Remember its also worth removing your system restore now and again when you get hit with a virus. Just turning it on and off usually does the job, the only thing is this way you lose the ability to roll back as such.
Tried that, not the on/off system restore tho, i'll give it a try in just a min.
In the mean time i uninstalled dimes just incase it does transmit via dimes. Don't want to infect anyone else do i?

demonR6
10-23-2005, 07:29 AM
Yeah, I would get that infection cleaned up first. :)

Ugly n Grey
10-23-2005, 07:32 AM
The easiest way to clean it is attach the drive as the secondary HD on a fully patched system and then run AV and spyware removal on it... simple

hixie
10-23-2005, 07:50 AM
Had the same idea but then i thought why don't i just reinstall windows? My computer does have a few problems that i want to get rid of, that can only be solved by format and reinstall. Now i have the perfect excuse!

demonR6
10-23-2005, 12:09 PM
Yep, nothing like a fresh install of Windows to remind you of the good 'ol days when it would boot up like lighting without any clutter. LOL

hixie
10-23-2005, 03:30 PM
Got the virus cleaned up with a program called twister anti-trojanvirus.
Dimes has been reinstalled, hope everything goes fine this time.