»
 

Go Back   ResellerRatings Store Ratings > ResellerRatings Forums > Tech Support

Reply
 
LinkBack Thread Tools Display Modes
Old 05-12-2005, 12:35 AM   #1 (permalink)
Registered User
 
sup3rcarrx7's Avatar
 
Join Date: Mar 2003
Posts: 471
sup3rcarrx7 is on a distinguished road
Send a message via AIM to sup3rcarrx7
annoying exploited code virus driving me nuts

Hi guys. Apparently, Zone Alarm keeps popping up with the auto scan virus thing and says that I have a recurring exploit or something. Can anyone tell me how to stop it? I've restarted and the crap keeps popping up. Those two IE popup things appear which causes Zone Alarm to come up and is driving me nuts while i'm writing my term paper right now. Any help is welcome. Here is the pic of what ZoneAlarm keeps finding.

http://www.yesalbum.com/v001/sup3rcarrx7/za-pic.jpg

EDIT: I've tried clearing out hte Temporary files in both Java, Firefox, and IE and it still keeps popping back.

sup3rcarrx7 is offline   Reply With Quote
Old 05-12-2005, 07:43 AM   #2 (permalink)
Lara RR
Guest
 
Posts: n/a
Listen to your ZA - it's doing its job by alerting you to trojans/exploits on your PC.

Update with the MS patch and update your AV program's virus defniitions, ensuring its bloodhound settings are set to high and scan settings are all-inclusive, delete all temp and trash files, then scan your system with your AV program. (I'd include that term paper in the scan, too.)

1)
Microsoft Security Bulletin MS05-002 - Vulnerability in Cursor and Icon Format Handling Could Allow Remote Code Execution

aka:
TROJ_ANICMOO.C

2)
It looks like JS.MHTML.Redir!exploit and JS.Petch were 'treated' but your AV scan should verify this.
  Reply With Quote
Old 05-13-2005, 01:42 AM   #3 (permalink)
Registered User
 
sup3rcarrx7's Avatar
 
Join Date: Mar 2003
Posts: 471
sup3rcarrx7 is on a distinguished road
Send a message via AIM to sup3rcarrx7
Talk

OK i found the culprit. After looking at the running programs in the Zone Alarm panel near the top right side, I saw something called "Project1" running. I disabled all its internet accessing functions, in fact removed it and the virus alerts stopped coming. Thanks!
sup3rcarrx7 is offline   Reply With Quote
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Most Active Discussions

Recent Discussions

All times are GMT -6. The time now is 08:36 PM.