Re: Trojan Horse

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Malke (malke_at_nospoonnotreally.com)
Date: 06/05/04


Date: Sat, 05 Jun 2004 07:37:42 -0700

Karen wrote:

>Please forgive me I had forgotten to put the name in
> till I hit send.....Virus Trojan
> Horse...Downloader.Small.6.T....I do apoliges ...Thanks

See, now that was helpful. Google infor Downloader.Small.6.T gave the
information that this is connected with wshirda.exe. I found a
reference to this on a messageboard, and here is the quote:

"My AVG Anti-Virus detected a virus this morning:
C:\WINNT\SYSTEM32\WSHIRDA.EXE Trojan horse Downloader.Small.6.T

"Note that there is a legitimate file called wshirda.dll, which is
supposed to be there. There is not supposed to be a wshirda.exe, and
I'm sure the trojan writer is depending on the confusion. The date on
the wshirda.exe file was close to the date on wshirda.dll (2001 as I
recall). It apparently tries to reach an outside server at
search.requestlookup.net according to Sygate Personal Firewall:"

So, you need to make sure that your AVG is using the most current
scanning engine and virus definitions. You need to use msconfig and
disable all suspect programs/processes from starting. Then scan in Safe
Mode and make a note of all malware found. If AVG doesn't delete the
trojan (and it may not have done so before because you were scanning in
Regular Mode and the file was in use), you need to delete the trojan
and related files. You need to have a firewall installed.

Malke

-- 
MS MVP - Windows Shell/User
Elephant Boy Computers
www.elephantboycomputers.com
"Don't Panic!"


Relevant Pages

  • Re: Trojan horse Downloader.Generic.ML
    ... > of any problems EXCEPT that AVG claims it's found this trojan. ... to be told what is a trojan and what isn't via the updates. ... under any obligation to send copies of their trojans to anti-virus vendors. ...
    (comp.security.firewalls)
  • Re: Trojan horse Downloader.Generic.ML
    ... > of any problems EXCEPT that AVG claims it's found this trojan. ... to be told what is a trojan and what isn't via the updates. ... under any obligation to send copies of their trojans to anti-virus vendors. ...
    (alt.computer.security)
  • Re: Trojan horse Downloader.Generic.ML
    ... >> PC reported the above noted infection. ... updates) wouldn't have caught it at the time of infection? ... >> of any problems EXCEPT that AVG claims it's found this trojan. ...
    (comp.security.firewalls)
  • Re: Trojan horse Downloader.Generic.ML
    ... >> PC reported the above noted infection. ... updates) wouldn't have caught it at the time of infection? ... >> of any problems EXCEPT that AVG claims it's found this trojan. ...
    (alt.computer.security)
  • Re: Firewall or Anti Trojan Program
    ... Would I still need a real firewall program ... > Sygate or maybe install an anti Trojan program. ... use) is not the best at detecting trojans.So if you are gonna stick with AVG ... which has excellent trojan detection too.Probably the best trojan scanner is ...
    (comp.security.firewalls)