acroyear: (oops)
Joe's Ancient Jottings ([personal profile] acroyear) wrote2008-01-05 10:00 am
Entry tags:

well, THAT was a long night...

Somehow (likely from a spyware ad at mininova) one of my boxes (VideoToaster) got hit by a trojan, a particularly nasty one because one of its main targets is to replace various start-up programs with itself, including avg's main daemon (my virus checker).  It worked on the protocol that allows a dll to be automatically started (and be unstoppable, locking the file) at windows startup in order to be available for IE as a plug-in (the same technique that keeps Adobe Acrobat loading quickly in IE).  It also has a nack for renaming its main dll making it harder to follow.

It took 4 passes with Vundofix, AVG, and HiJackThis to finally get it gone, around 1:30 in the morning.  I'd started "fighting" it at 7pm.

It hit the start-ups of QuickTime (no biggie) and my two older mp3 player daemons (no biggie) as well as M$'s intellitype/intellipoint and THAT was annoying - it reset all of my keyboard and mouse settings.

So I'm still VERY tired, but no rest for the weird - gotta Foggy Bottom sword tour today, though [livejournal.com profile] faireraven 's going to games day instead.

[identity profile] faireraven.livejournal.com 2008-01-05 03:42 pm (UTC)(link)
2:30, dear, unless you were farting around for an hour after you got it finished...

[identity profile] cyberkender.livejournal.com 2008-01-06 12:48 am (UTC)(link)
Sounds like it might have been the same one I had recently. McAfee kept catching it when it activated, but couldn't clean it. A combo of VundoFix, McAfee, and SpySweeper managed to clean it for me.