Re: Klone Virus
- From: "David H. Lipman" <DLipman~nospam~@Verizon.Net>
- Date: Mon, 27 Nov 2006 18:14:38 -0500
From: "Stefan Kanthak" <postmaster@[127.0.0.1]>
|
| Right, this is way to far (although it's the only reliable way to run any
| scanner; but don't forget that you NEVER can prove the absence of malware)!
|
| http://www.microsoft.com/technet/community/columns/secmgmt/sm0504.mspx
| http://www.microsoft.com/technet/archive/community/columns/security/essays/10imlaws.mspx
|
| A simple clean reinstall wiping all disks (by formatting them with NTFS)
| cleans all those malware for sure*.
| Any other means are just RIDICULOUS: "better be safe than sorry"!
|
| You, and Joe Average too, can't clean a compromised system. Especially in
| case of a Trojan it's NOT sufficient to remove the Trojan, you'll have to
| find ALL the Greeks that swamped the system!
|
| [braindead fullquote removed]
|
| Stefan
|
| * Don't forget to install XP Service Pack 2 BEFORE you connect the fresh
| installed system to ANY network.
| AND: create "restricted user" accounts for EVERY user of the system,
| NEVER use the initially created "administrator" account for any work
| except system administration.
| Also consider to turn on SRP and allow execution only in %SystemRoot% and
| beyond as well as %ProgramFiles% and beyond.
Wiping a computer can be like hitting a fly with a sledge hammer. One must make a CBA prior
to such action and if and only if it is deemed neccessary it should be done after data has
been backed up.
While a Klone Trojan might be difficult to remove, it is NOT a good reason to wip a PC
unless the performer is inexperienced and has exausted all options.
--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm
.
- References:
- Re: Klone Virus
- From: David H. Lipman
- Re: Klone Virus
- From: Gary S. Terhune
- Re: Klone Virus
- From: David H. Lipman
- Re: Klone Virus
- From: Gary S. Terhune
- Re: Klone Virus
- From: David H. Lipman
- Re: Klone Virus
- From: Gary S. Terhune
- Re: Klone Virus
- From: Stefan Kanthak
- Re: Klone Virus
- Prev by Date: Re: What kind of conspiracy is this?
- Next by Date: Re: People hacking into my FTP server and legal recourse against t
- Previous by thread: Re: Klone Virus
- Next by thread: Re: How to extend expiry for Server Certs issued with W2k3 CA
- Index(es):
Relevant Pages
|