H
History Fan
I have a PC running XP Home SP1. Against the advice of many people I
know online, I have continued to use Internet Explorer 6 SP1 as my main web
browser. This morning, I (foolishly) clicked the link to a sleazy-sounding
webpage. Seconds later, my anti-virus program popped up, saying it had
detected trojans on this web page. I was strongly urged to run a system
scan immediately. I did so, and no infections were found. Below is a text
log of what my anti-virus software discovered when I clicked on that web
page. From reading the text, does it appear everything was cleaned up? I
have long since cleaned out my TEMP files:
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
Deleted.
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
2004/07/06 06:14:29.062 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
Deleted.
2004/07/06 06:14:29.078 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
2004/07/06 06:14:29.109 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
2004/07/06 06:14:34.687 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\6LIHYYHC\shellscript_loader.js[1].htm is
JS.ModalDZoneBypass.exploit trojan. Deleted.
2004/07/06 06:14:34.703 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\6LIHYYHC\shellscript_loader.js[1].htm is
JS.ModalDZoneBypass.exploit trojan.
know online, I have continued to use Internet Explorer 6 SP1 as my main web
browser. This morning, I (foolishly) clicked the link to a sleazy-sounding
webpage. Seconds later, my anti-virus program popped up, saying it had
detected trojans on this web page. I was strongly urged to run a system
scan immediately. I did so, and no infections were found. Below is a text
log of what my anti-virus software discovered when I clicked on that web
page. From reading the text, does it appear everything was cleaned up? I
have long since cleaned out my TEMP files:
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
Deleted.
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
2004/07/06 06:14:27.875 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\checker[1].htm is HTML.MHTMLRedir.exploit trojan.
2004/07/06 06:14:29.062 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
Deleted.
2004/07/06 06:14:29.078 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
2004/07/06 06:14:29.109 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\8V4ZYHVK\md[1].htm is JS.ModalDZoneBypass.exploit trojan.
2004/07/06 06:14:34.687 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\6LIHYYHC\shellscript_loader.js[1].htm is
JS.ModalDZoneBypass.exploit trojan. Deleted.
2004/07/06 06:14:34.703 File infection: C:\Documents and
Settings\Owner\Local Settings\Temporary Internet
Files\Content.IE5\6LIHYYHC\shellscript_loader.js[1].htm is
JS.ModalDZoneBypass.exploit trojan.