View Full Version : Possible viruses/trojans on my comp not detected by norton
Also_w00t
19th July 2002, 09:10
anybody got any programs/tutorials that could help me find these?
luck777jojo
20th July 2002, 08:02
try kaspersky antivirus http://www.kaspersky.com/ it's the best av software out.
killaknikka
1st August 2002, 23:24
i got the sam problem also_woot , i scan and scan but it never comes up, but every time i start my comp it keeps popin up " viruse detected trojan , worm , backdoor , mirc ini ,. like what dey funk eh!
luck777jojo
2nd August 2002, 03:51
if you get the popup then it should also say what the virus is suspected of being and then you can just go to the symantec website: http://www.symantec.com/ and search for the name it should say how you can get rid of it.
Rookie-1
12th August 2002, 04:55
I saw on here something about trojans & was told to go to downloads.com.....I went & found Anti-Trojan 5.5 as a free download......I tried it & found I had 4 trojans....Don't know how long they had been there, the program deleates them as thier found......now i don't have any.......Its worth a try..........
NightNinja
12th August 2002, 11:35
i heard about it too but i never knew it was any good, please someone else report on wether this "trojan finder" is any good.
Dark_Omen
18th August 2002, 14:07
You can never ever get every single possible trojans and viruses detected, on kazaa, there are at least 30 odd trojans that a ported versions of the original. Anti Virus works on a system that checks all sorts of files based on many things. If a ported version was sent out, say for example, iexplorer.exe, the crc32 and a few other things would be changed and it would not be detected. So far I heard panda antivirus titanium does a great job somewhat by constantly checking with the server for the latest viruses.
Though I never say I could recommend it since I did not test it for sometime. Just a word of warning, if you are unsure if a file is a virus, check the file size. If the file size is less than 2 megs, there could be any chance that it contains virus, you then use hex editor or rename it to .txt and it look at the coding for very suspicious lines.
SK_RaZoR
19th August 2002, 01:33
Well U can never be sure u've got rid of vurisez once u had them ... I dont have my own comp but i work in a pc club ... And I installed 3 AV progz notron the full edition cracked and everything working ... MC "Afeee or whatever that shit's name was" and 1 more ... To keep the machines in good shape ... But i know a few "hackers" PRO Z that R writing virusez ... And If u get a fresh virus from a PRO Programer u cant get rid of it and u gotta format the HARD ... And if the guy is smart he will tel about his "new toy" only to his friends ... This means it takes at least 1 year or more to discover the rhing and for that much time Your PC can be killed Glined fuked etc etc ... If The AV Programers get lucky if not it may take more ... But if you spended alot of time infront of a keyboard u'll know when the machine "is not the way u made it to be" and fell it ... Belive me i've spend allot but ... If the hacker is realy smart ... Hell make a simple hack not to do damage just to record data for him from u and if you have important info on your PC He'll have it with 20 stokes on the keyboard ... Hell open a ftp sesion on your pc and D/L Everything he want's May U/l u a hack after that witch crushez your machine ... The hackers that do damage are not so hard to detect ... So thats why rare hack are not known to mutch AV PROGZ ... So if u have a personal PC and realy important stuff on it your "long time development/research or whatever is REALY REALY IMPORTANT TO YA" Back it up on a difrent hard ... Get the best FireWall Tweak (edit it for best preformance) it ... Get a few AV Progz that dont use MUTCH of your comp's resources and just dont get in "Doubtful Sites" ... And U'll be Fine ... But If You are some lamer ... What Somebody will steal your OGC HOOK OR YOUR VERRYIMPORTAT SAVE GAME ? Dont make me laugh ...:cool:
Dark_Omen
24th August 2002, 15:44
LOL, bright idea there, but if there was a famous kernel hook virus or system hook, it'll never be able to be easily detected unless if av gets real sus. A smart virus could hook on one of the programs that have internet access, fool you for thinking that explorer.exe wants to access the internet and could still be exploited. The best idea is always try and understand the coding abit before you get exploited.
DarkCoder
25th August 2002, 10:39
Hackers editing their trojans and viruses and optiming thier code will much less get detected by an anti-av. A sample trojan can't be detected when a similar code is changed in that trojan code; which it can't be detected tho...
Rookie-1
25th August 2002, 16:21
Dark Coder..........Is there away to find them that's not disecting your hd or other files............
Dark_Omen
26th August 2002, 17:38
Originally posted by DarkCoder
Hackers editing their trojans and viruses and optiming thier code will much less get detected by an anti-av. A sample trojan can't be detected when a similar code is changed in that trojan code; which it can't be detected tho...
It was claimed by many av experts that av scanners work on the thing called signatures, like a unique key (bit like crc32), if there is minor changes to the original source, (eg, packed and scrambled exe header) then the signuature of the file would not be detected. That word 'signature' was the word I have been trying to get it out of my head.
Put it this way, if the virus/trojan is not famous enough, it won't really be detected. I have tried sending ported versions of iexplorer.exe and kernel32.dlI to symantec before but they reject it because they have seen it before which is not exactly correct.
That's why alot of things, as far as I'm concerned, is better off checking it yourself by hexing it, etc.
Spas
1st September 2002, 05:32
shit my norton keeps giving me a window saying the master paradise trojan is attempting to connect with my computer also i get a rat trojan warning also should i be worried? lol
Dark_Omen
2nd September 2002, 00:15
The answer to your first answer is that someone is trying to connect to a port which is believed on your pc to have that sort of trojan running, the best idea is to search for that virus on your hd, make sure that you do a full scan on it.
The answer to your second question is that you may have a trojan (possible linking to first one?). Again, check for viruses, your firewall is protecting your computer from the hacker trying to access that port to further infect your pc, so in the meantime, try and find out. If you cannot find the virus, it maybe just a port scan to see which computers have that port running.
vBulletin® v3.7.0, Copyright ©2000-2008, Jelsoft Enterprises Ltd.