Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Up and Running » Security » Security » A super trojan?
Search Topic:
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
May never go back to IE for regular use »
« HJT Log..... Downloader.Trojan  
AuthorAll Replies

kpatz
MY HEAD A SPLODE
Premium
join:2003-06-13
Manchester, NH

reply to Martinus
Re: A super trojan?

quote:
It has the full package, a real trojan's trojan including: a Keylogger, a virus that attacks .exe, .com, and .vbs files, the hidden server, the ability to create ISO files (using exe2bin.exe), and the topper is a hidden "read only" file system containing a boot image and hidden modules that are embedded into your systems ramdisk (BIOS), and infects Windows on every re-install also any hard drive that is connected to the mainboard (before or after infection).
Ok, first things first... exe2bin.exe doesn't create ISOs, it's an old DOS utility for making .com files out of .exe files. The "ramdisk" BIOS is a misnomer, and the CMOS is too small to contain any useful executable code. Most anything that overwrites a flash BIOS would render the machine unbootable, unless they created trojan code that is customized for every motherboard/BIOS combination out there (a daunting task to say the least). Even if it could be done, I doubt there'd be enough free space in the BIOS EEPROM to embed a boot image and "ISOs" as they so elegantly put it.

I think it's either a hoax, or someone who did get a trojan and is blowing the details way out of proportion. For example, if he reformatted and got infected again, perhaps it came in through a vulnerable service (hint, use a firewall).
--
Robert Tappan Morris, Jr., got six months in jail for crashing 10% of the computers that Bill Gates made $100 million crashing last weekend.
Forums » Up and Running » Security » SecurityMay never go back to IE for regular use »
« HJT Log..... Downloader.Trojan  


Wednesday, 02-Dec 07:02:16 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.
page compression OFF
Most commented news this week
· [151] Comcast Releasing Promised Usage Meter
· [69] Baltimore To Ban Lazy Cable Installs
· [57] Latest Consumer Reports Survey Not Kind To AT&T
· [56] Broadband Killed The Game Console
· [52] Rogers Unveils The ISP Dream Model
· [44] ACTA: Global Three Strikes
· [41] Rural Carriers Quickly Embracing Fiber
· [35] Charter Exits Chapter 11
· [33] AT&T Top Lobbyist Cicconi Has His Feelings Hurt
· [26] Vivendi Agrees, Comcast/NBC Deal Soon
Most people now reading
· [Newsgroups] Newzleech down? [Filesharing Software]
· cleaning LCD [General Questions]
· Vundo on facebook? [Security]
· Windows 7 boot manager editing questions [Microsoft Help]
· [WIN7] Outlook express under Windows 7? [Microsoft Help]
· Security Software Updates - 1 Dec 2009 [Security]
· Maximizing Rogue DPS for ToC/ToGC (3.x) [World of Warcraft]
· Ooma changing features [VOIP Tech Chat]
· Connecting to Google Voice Via SIP [VOIP Tech Chat]