Forum Home
Press F1
 
Thread ID: 45267 2004-05-16 09:56:00 My first virus hit (sort of). Billy T (70) Press F1
Post ID Timestamp Content User
236976 2004-05-16 09:56:00 Hi Team

I manually updated my NAV definitions this morning (just to keep the auto update honest) and when I came back to the computer a couple of hours later there was a big red message from NAV on the screen saying that the MHTMLdir.Exploit virus had been detected and removed.

That looked pretty scary so I did a Google search to see what the virus was and what the payload might be but I can't find any trace of it.

Does anybody know what this is, and could it have been a hoax message pretending to be NAV?

Cheers

Billy 8-{)
Billy T (70)
236977 2004-05-16 10:23:00 hello,
might it not have been MHTMLRedir.Exploit?

if so, have a look here (securityresponse.symantec.com)
nadius (3249)
236978 2004-05-16 10:30:00 Hi Billy, I got wacked yesterday by a trojan horse called IRC/backdoor.Sdbot.22.bt, but like yourself google was not of any help.

In my case AVG found it, after it got into my computer, but could not remove it. I was forced to do a complete reinstall of win2000.

Seems strange that we both were attacked yet google has no knowledge of either. Makes one wonder.....
Curly (487)
236979 2004-05-16 10:58:00 securityresponse.symantec.com mark.p (383)
236980 2004-05-16 11:17:00 corrected url (securityresponse.symantec.com) Jim B (153)
236981 2004-05-18 09:26:00 C'mon guys. Google only works by displaying stuff that other people have published. If you get a brand new virus it will take a day or so for the AV guys to catch up and then a short time for Google to pick up on published references to it. Quick it is ... but it's not instantaneous....especially if nothing has been published about the subject. (Oh, I just checked Google ... still no reference to IRC/backdoor.Sdbot.22.bt.) :8} Ho hum oggy (1250)
236982 2004-05-18 10:30:00 Whatever it was, it has been intercepted and killed.

A full scan found nothing else.

Thanks Nortons.:)

Cheers

Billy 8-{)
Billy T (70)
236983 2004-05-18 14:21:00 Don't know much about these things, Billy, but would'nt NAV keep a log of viruses it has dealt with ? That way you can reassure yourself that it was not a hoax.
Misty B-) ;)
Misty (368)
1