Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: explorer.exe infected virus |
|---|---|
| Date: | Sat, 14 Oct 2006 11:06:36 +0100 |
Hi, Give Prevx a Go, http://www.prevx.com Regards, Jacques -----Original Message----- From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com] On Behalf Of gmx Sent: 13 October 2006 18:45 To: boonting Cc: focus-virus@securityfocus.com Subject: Re: explorer.exe infected virus Hello boonting, Afaik. explorer.exe is not only a file, is a core-process for windows200/xp and maybe others too, but it can be read easily. Some antivirus go mad even if some program (like desktop-modification software) change some value, those are false-positives. To read explorer.exe try to open it with resHacker (search it on the web, or email me for a copy) and see what could be wrong, if you find some entry you dont like (like reference to some hozt.exe or hozt.dll) so you can delete it, save as a copy, switch to safe mode and replace the original with the (cleaned) copy, since you cannot change it in normal mode. Alternatively you could unpack it from the CD and replace it, but i dont remmeber the exact syntax for unpack certain packets from the cd-cab files, maybe someone else here will. -- Best regards, Adam Pal Friday, October 13, 2006, 3:15:11 PM, you wrote: <==============Original message text=============== b> Hello, help b> System file explorer.exe infected virus. Any Solution ? What should i do ? b> Format machine ? b> Report from Bit-Defender b> ----------------------------------- b> Virus: Name: Backdoor.Agobot.AGH, b> File: c:\windows\system32\explorer.exe, Object: b> c:\windows\system32\explorer.exe, Status: Infected, Action: Failed to b> delete!, Server: ifcaweb b> Your help is appreciated. <===========End of original message text=========== ---------------------------------------------------------------------------- ALERT: "How a Hacker Launches a SQL Injection Attack!" - White Paper It's as simple as placing additional SQL commands into a Web Form input box giving hackers complete access to all your backend systems! https://download.spidynamics.com/1/ad/sql.asp?Campaign_ID=70160000000CZWl ---------------------------------------------------------------------------- ---------------------------------------------------------------------------- ALERT: "How a Hacker Launches a SQL Injection Attack!" - White Paper It's as simple as placing additional SQL commands into a Web Form input box giving hackers complete access to all your backend systems! https://download.spidynamics.com/1/ad/sql.asp?Campaign_ID=70160000000CZWl ----------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Virus or trojan help, Genome |
|---|---|
| Next by Date: | Re: Virus, boonting |
| Previous by Thread: | Re: explorer.exe infected virus, gmx |
| Next by Thread: | Re: explorer.exe infected virus, Jacob Weeks |
| Indexes: | [Date] [Thread] [Top] [All Lists] |