Keep getting viruses

Discussion in 'Software' started by .hack, Mar 10, 2003.

  1. .hack

    .hack Private E-2

    Hey all,

    I use MIRC a lot to communicate with my teammates in a TFC clan I'm in. Well, one night I left on my comp and sat idle in IRC. When I woke up and turned on my monitor the next morning Norton had picked up a couple of viruses.

    They where as follows,

    c:\windows\fonts\secure.bat
    backdoor.irc.zcrew

    c:\windows\fonts\str.vxd
    irc.trojan

    c:\windows\fonts\v32driver.nat
    irc.trojan

    c:\windows\fonts\nvnav32g.exe
    hacktool.flooder

    Ok, so I was totally freaked when I saw this I instantly did a virus scan and came up with nothing. I updated my Norton went into safemode did another virus scan and found all of these. I can't quarintined them and deleted them. So, I thought I was out of the clear. Then, just today the messages popped up again, mostly the same viruses only a few new ones. One was called BAT. Any help on this matter would be GREATLY appreciated.

    Thanks!
     
  2. .hack

    .hack Private E-2

    edit - my bad for cross-post
     
    Last edited: Mar 10, 2003
  3. G.T.

    G.T. R.I.P February 4, 2007. You will be missed.

    Hm. Sounds like somobody doesn't like you. Somebody doesn't like me too. :D I don't use MIRC, but I get 2 or 3 viruses via emal a week lately, which keeps Norton busy. For email, Norton snags 'em before they even show up in your Inbox, which is nice. I don't know of anything that monitors IRC traffic directly, but as long as your AV program is running, it should catch them when they try to execute, before you're actually infected. (Although it does leave an itchy uncomfortable feeling, doesn't it?:D ) IIRC, you're running Linux, right? IF so, are these attempts a problem, or just an aggravation?

    Regardless, based on WHAT you're getting, it sounds like somebody is specifically trying to get into your box. Are you running a firewall? If not, I'd start using one. And keep Norton up to date. And I think I'd disable MIRC and lock the firewall before going to bed, unless you really need to allow some traffic through the night. I use the free version of ZoneAlarm, which works fine, and doesn't leave ANY ports open to prying eyes, others prefer others.

    Don't pay attention to the actual file names, as those can be changed randomly to anything with an executable extension. Norton's identification of the payload virus itself is the only think that means anything.
     
  4. jujet84

    jujet84 Master Sergeant

  5. Kodo

    Kodo SNATCHSQUATCH

    ok,
    This is like the 3rd or 4th time I've seen someone recommend spybot for removing trojans.. PLEASE DO NOT RECOMMEND AN ADWARE REMOVER FOR REMOVING TROJANS.. it's not going to work. Spy Bot is ONLY for the removal of Adware related material and will not remove or detect trojans or viruses.
    I don't mean to get snappy, but this is something that is not going to help the user one bit.
    Check out "the cleaner" from the front page.. give that a go for a while. It's a decent trojan scanner.
     
  6. goldfish

    goldfish Lt. Sushi.DC

    just my .02 but maybe u shud use a different IRC chat program? ive heard that mIRC is very insecure when it comes to this. Someone infects your scripts.ini file your kinda dead. i didnt know mirc ran on linux, but odviously it does! a scriper friend of mine uses Xchat and Klient. Perch maybe has linux versions available.
     
  7. jujet84

    jujet84 Master Sergeant

    MY fault man sorry I should of read into it more, seen the word virus's etc.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds