G Guest Aug 2, 2006 #2 thanks, just verifying.. after backdoor attack, trying to see just where problem comming from, how to isolate files...
thanks, just verifying.. after backdoor attack, trying to see just where problem comming from, how to isolate files...
B Bert Kinney Aug 3, 2006 #3 Hi, Most of the registry gets restored. The SAM hive does not. Tips Fixes & FAQs - What's restored and what's not? http://bertk.mvps.org/html/tips.html List of files and folders System Restore monitors: http://bertk.mvps.org/html/filesfolders.html
Hi, Most of the registry gets restored. The SAM hive does not. Tips Fixes & FAQs - What's restored and what's not? http://bertk.mvps.org/html/tips.html List of files and folders System Restore monitors: http://bertk.mvps.org/html/filesfolders.html
G Guest Aug 3, 2006 #4 thanks, re: problem with backdoor intrusion: Win32.Backdoor.Padodor feel the need to ask for all info on tracking this class of intrusion. per site: http://www.viruslist.com/en/viruslist.html?id=1787609 describes item as unstoppable / undetectable. ms msrt did not find. came up during jamming zone alarm scan. do you have reccomendations. ultimately... looking for something that detects, "advises" it is happening; way to back track / trace source. thanks
thanks, re: problem with backdoor intrusion: Win32.Backdoor.Padodor feel the need to ask for all info on tracking this class of intrusion. per site: http://www.viruslist.com/en/viruslist.html?id=1787609 describes item as unstoppable / undetectable. ms msrt did not find. came up during jamming zone alarm scan. do you have reccomendations. ultimately... looking for something that detects, "advises" it is happening; way to back track / trace source. thanks
B Bert Kinney Aug 6, 2006 #5 If you are able to boot into Windows I would suggest performing a virus scan. F-Secure Computer Virus Information Pages: Scob http://www.f-secure.com/v-descs/scob.shtml Virus and Spyware removal and prevention steps: http://bertk.mvps.org/html/spyware.html
If you are able to boot into Windows I would suggest performing a virus scan. F-Secure Computer Virus Information Pages: Scob http://www.f-secure.com/v-descs/scob.shtml Virus and Spyware removal and prevention steps: http://bertk.mvps.org/html/spyware.html