hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

manu
Friends,

I just got rid of that Trojan I mentioned, Pwsteal, well, can u please tell, how it works and what are all it could do for the sender ?

Manu
agamemnon
How about posting some of those infected files? Or is that against the board rules?? - make sure you label them as infected!
Flowby
This is harmles progyit isnt a trojan.....only thing is that it send all your IE paswords to an email acount!Run antivirus and clean it out after that its al ok if you want it
colinmack
i have this virus at the min and i have norton system works 2003 but it cant get rid of it and it cant quarantine it either i have ran live update etc and still i cant get rid of it plz help ??
Flowby
First you have to stop the proces than go and delete the file !
Nortont tels you the file fjgjg.exe is infected ok than you pres ctrl alt delete and window will open find that file that is infected stop its proces and than delete it or run norton again.
colinmack
ok tryed this but when i go and press ctrl+alt+del it comes up as Windows Task Manager as i have Windows XP home edition.....however in the manager there is no fill open called tapiexec.dll so what can i do now then to get rid of this.....when i took off norton i was able to open the dll file with notepad and had look at the virus....

plz need help to get rid of this as i have to many files and stuff to have to wipe my whole computer to get rid of this
ComSec
have you turned off system restore ? then try cleaning again with norton....then reboot

here are complete removal instructions and links... but xp is not included...try solution 3 thats for nt and 2000

http://www.symantec.com/avcenter/venc/data...eal.trojan.html

hope you get it sorted
colinmack
yes i turned off system restore and did all the solutions in the link u provided it seems as my norton anti-virus just aint doing its job or for some strange reason Task manager aint finding the tapiexec.dll file how can i get the Task Manager to see the tapiexec.dll file if i cant open the file and i have also tried doing the Task Manager after a full scan of my C:/ and still i cant get rid of this bloody virus doing my head in lol
Flowby
Try deleting that dll manualy....if wont work that means that its beeing used by another exe so you have to find that exe TROJAN stop it and delete it than do the same with dll file...


Your norton detects " or more files right?
colinmack
i have moved the virus file onto my desktop away from my system 32 folder but still i cant get it out of my computer to get it moved i took out my virus scanner norton system works 2003

the exe file u say about is gone i got rid of it it was that tapie.exe and it was easy to get rid of with norton so any more suggestions would be much apprecaited

thanks guys so far ......
ComSec
is it a dll...if so can you open it in notepad and view file contents ?
manu
mad.gif Dear friends,

See how I killed that fu*ker?.. This is my way, forget about norton and all.. Just try what I did,

Well, found three files inside my SYSTEM32, You too would have seen the same there..

Well, dont forget to make SYSTEM RESTORE OFF, Well, then boot in to SAFE MODE..!! Press F8 for it yaar.. You know it, I guess..

Good, now you are in SAFE MODE.... Take TASK MANAGER-->Processes, then stop, the TAPI*.EXE process and all unfamiliar processes...

Nice, now go to system 32 and delete those files one by one.. .Well, you cant delete one of them.. .But, you can delete 2 of them.... Hey hey, I forgot that file name man, I mean, when you try to delete it, The system will say, this file is currently being used, so, cant delelte blah blah etc... .Good... Then you do one thing, Just RENAME the file...!! Something like FFFF.TXT ..!! Umm, then RESTART your computer in normal mode and this time, you can delete that fu*ker...!!.. Well, dont forget to go to COMPUTER MANAGEMENT-->LOCAL USERS AND COMPUTERS-->USERs section and delete the user which was created...!! I had seen a user name "yourusername" etc with USER privileges...!!. Haa haa, it should solve the problem...

If you face any problem, ask me
Manu
colinmack
Cheers guys thanks alot u really did help me out THANK U GUYS ALL U and manu that is how i ended up beating it .....

now the last thing u said about going to computer management and that is where in XP version cheers if u can put it on here just so i know i have got it right cheers m8 smile.gif
manu
M8, nice to hear that you could kill that ^&^&***..!! .. Well, dont forget to install a FIREWALL nowwwwwwwwwwwwww, I suggest Sygate.. Well, prevention is better than cure..!!. biggrin.gif

Manu
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.