PDA

View Full Version : PT Exp Hack(v2).zip is a trojan


impnaz
27th July 2003, 07:47
sorry. i cant PM this and i dont know his email.

in the last page of the 8pg locked PT hack thread you mentioned one of the files having a sub7 in it.

i scanned the files and found nothing.


HOWEVER, since the first reboot after trying to run a hack (which did nothing, first sign) ive noticed a 2 peculiar things...

i dont want to be an alarmist but my antivirus no longer loads on startup and ive had my comp reboot seemingly out of nowhere once sofar minutes ago.

what file has the sub7?? PC Cillin didnt detect it and i think you would be doing other ppl who might have poor detectors a service.

thx

(of course my comp could be freaking out...and its nothing but better safe than sorry)

D3CRYPT
27th July 2003, 08:16
What hacks did you download? I tryed about 5 or 6 of them and all were clean.

impnaz
27th July 2003, 08:24
PT Exp Hack(v2).zip

i downloaded it twice. the first time i opened from site and tried to run...and when i opened the zip there was nothing inside (even tho 300kb or whatever)

the second time i saved it, and then opened it. it had the file, i extracted and ran. nothing happened.

D3CRYPT
27th July 2003, 08:36
Sorry to tell you this but yea pt exp hack v2 does contain a virus.
It contains BKDR_OPTIXPRO.13 search on google and find a way to remove it.
I also use pc-cillan and it detected it.

impnaz
27th July 2003, 09:48
thanks for your quick response.

plz keep this thread alive or at least post warnings somewhere.

tx

for some oddball reason i cant detect it with the latest settings.

im gonna have to go into safemod and then follow thru with the removal process

ok i read up and eliminated the thread.

warn everyone about the file.

and if people have doubts...checking their running processes for a system32bios.exe

if they see that running they have the trojan

Bishop605
27th July 2003, 17:52
The latest virus pattern file from TrendMicro PC-Cillin is version 594

I am not sure if others have the same problem as me, but since i updated to version 10.03 mine no longer auto-updates so I go to the homepage every couple of days and see if there is a new file.

Maybe you are using an older virus pattern file, you can grab the latest one here if you are unable to auto-update your PCCillin like me:

http://www.trendmicro.com/download/pattern.asp

If you dont know how to manually update the file once you downloaded it, go here to get step by step instructions:

http://kb.trendmicro.com/solutions/solutionDetail.asp?solutionID=14577

D3CRYPT
31st July 2003, 15:54
^bump^