Welcome to SecurityForumz.com!
FAQFAQ      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

Anybody got a fix for BackDoor.Generic3.LRT?

 
   Security Forums (Home) -> General Discussions RSS
Next:  Need Assistance with AntiVir PersonalEdition  
Author Message
Lisa Simpson

External


Since: Dec 20, 2005
Posts: 14



(Msg. 1) Posted: Sat Oct 28, 2006 12:58 am
Post subject: Anybody got a fix for BackDoor.Generic3.LRT?
Archived from groups: alt>comp>virus (more info?)

Anybody got a fix for BackDoor.Generic3.LRT?

 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
David H. Lipman

External


Since: Jul 04, 2003
Posts: 1735



(Msg. 2) Posted: Sat Oct 28, 2006 12:21 pm
Post subject: Re: Anybody got a fix for BackDoor.Generic3.LRT? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

From: "Lisa Simpson" <none DeleteThis @none.com>

| Anybody got a fix for BackDoor.Generic3.LRT?
|

Use my Multi AV Scanning Tool.

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm

 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
Lisa Simpson

External


Since: Dec 20, 2005
Posts: 14



(Msg. 3) Posted: Sat Oct 28, 2006 10:24 pm
Post subject: Re: Anybody got a fix for BackDoor.Generic3.LRT? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

Reporting results so far: finally identified as BKDR_HAXDOOR.JG

- Ewido was useless for this particular nasty
- AVG similarly useless
- SuperAntiSpyware similarly useless
- Avast similarly useless
- Since it was stopping me from getting online I could not do any online
scans, so they are useless in these cases
- TrendMicro is worse than useless since it requires you to "Activate" via
the web (see above)

What seems to have worked was to:

- delete (caution! heavily abbreviated regkeys here!)
HKLM>SW>MS>NT>CV>Winlogon>Notify>yvbb01
- delete (caution! heavily abbreviated regkeys here!)
HKLM>SYS>CurrentControlSet>Control>SafeBoot>Minimal>yvbb02.sys
- delete (caution! heavily abbreviated regkeys here!)
HKLM>SYS>CurrentControlSet>Control>SafeBoot>Network>yvbb02.sys

then:

search for lps.dat & kgctini.dat & delete

"David H. Lipman" <DLipman~nospam~@Verizon.Net> wrote in message
news:RWH0h.2345$Wy6.358@trnddc01...
> From: "Lisa Simpson" <none.TakeThisOut@none.com>
>
> | Anybody got a fix for BackDoor.Generic3.LRT?
> |
>
> Use my Multi AV Scanning Tool.
>
> --
> Dave
> http://www.claymania.com/removal-trojan-adware.html
> http://www.ik-cs.com/got-a-virus.htm
>
>
 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
David H. Lipman

External


Since: Jul 04, 2003
Posts: 1735



(Msg. 4) Posted: Sun Oct 29, 2006 3:39 am
Post subject: Re: Anybody got a fix for BackDoor.Generic3.LRT? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

From: "Lisa Simpson" <none.DeleteThis@none.com>

| Reporting results so far: finally identified as BKDR_HAXDOOR.JG
|
| - Ewido was useless for this particular nasty
| - AVG similarly useless
| - SuperAntiSpyware similarly useless
| - Avast similarly useless
| - Since it was stopping me from getting online I could not do any online
| scans, so they are useless in these cases
| - TrendMicro is worse than useless since it requires you to "Activate" via
| the web (see above)
|
| What seems to have worked was to:
|

Because you Multi-Posted this instead of Cross-Posting this, you will have to see my OTHER
reply.

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm
 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
optikl

External


Since: Oct 24, 2006
Posts: 101



(Msg. 5) Posted: Sun Oct 29, 2006 8:07 am
Post subject: Re: Anybody got a fix for BackDoor.Generic3.LRT? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

"Lisa Simpson" <none.TakeThisOut@none.com> wrote in message
news:bMQ0h.19906$pq4.717@tornado.ohiordc.rr.com...
>
> What seems to have worked was to:
>
> - delete (caution! heavily abbreviated regkeys here!)
> HKLM>SW>MS>NT>CV>Winlogon>Notify>yvbb01
> - delete (caution! heavily abbreviated regkeys here!)
> HKLM>SYS>CurrentControlSet>Control>SafeBoot>Minimal>yvbb02.sys
> - delete (caution! heavily abbreviated regkeys here!)
> HKLM>SYS>CurrentControlSet>Control>SafeBoot>Network>yvbb02.sys
>
> then:
>
> search for lps.dat & kgctini.dat & delete
>

Question: Did you use a 3rd party registry cleaning tool, or did you scan
the registry using the M/S search engine? Just curious.
 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
Lisa Simpson

External


Since: Dec 20, 2005
Posts: 14



(Msg. 6) Posted: Sun Oct 29, 2006 11:59 am
Post subject: Re: Anybody got a fix for BackDoor.Generic3.LRT? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

I used RegEdit . . .

"optikl" <optikl.RemoveThis@invalid.invalid> wrote in message
news:ei2chi$f3i$1@registered.motzarella.org...
>
> "Lisa Simpson" <none.RemoveThis@none.com> wrote in message
> news:bMQ0h.19906$pq4.717@tornado.ohiordc.rr.com...
> >
> > What seems to have worked was to:
> >
> > - delete (caution! heavily abbreviated regkeys here!)
> > HKLM>SW>MS>NT>CV>Winlogon>Notify>yvbb01
> > - delete (caution! heavily abbreviated regkeys here!)
> > HKLM>SYS>CurrentControlSet>Control>SafeBoot>Minimal>yvbb02.sys
> > - delete (caution! heavily abbreviated regkeys here!)
> > HKLM>SYS>CurrentControlSet>Control>SafeBoot>Network>yvbb02.sys
> >
> > then:
> >
> > search for lps.dat & kgctini.dat & delete
> >
>
> Question: Did you use a 3rd party registry cleaning tool, or did you scan
> the registry using the M/S search engine? Just curious.
>
>
 >> Stay informed about: Anybody got a fix for BackDoor.Generic3.LRT? 
Back to top
Login to vote
Display posts from previous:   
Related Topics:
BackDoor-AMQ - hi all, i have a slight problem. how can i put this,... i have aquired a trojan on my computer in this file C:\WINDOWS\dxdgns.dll now the trojan is BackDoor-AMQ i have used mcafee virus scanner with all the latest dats. and it cant delete it because in....

backdoor.xetun.b ??? - (That's what the AVG scanner on my Dad's XP system is calling it, anyway) Been tryin' to help him - over the phone - to clear his system of this NASTY damn trojan; so far, no joy. I can't find any reference to same @ Google, or on AVG's, Symantec's,..

backdoor.irc - Hi, I got a message from my F-Secure antivirus program. However, I can't find any mention of it in the F-Secure website? Has anyone heard of the following: Message from F-Secure Auti-Virus on 2003/7/38 11: 29 Malicious Code found in fil...

to easy? backdoor deleted in msdos. - Using dos 'del' the exe and ext, dll and the thing went quietly. It was the 'apdoor' variant. Cant see any activity using TDImon from it. Jason

unknown w2k rootkit/backdoor allusers2kv1.3d-s.exe - I found this self-extracting CAB file in the startup folder of the start menu on an unpatched W2K SP1 workstation. It seems to start the telnet service and try to send some e-mail on startup. I couldn't find any information about it using the file name...
   Security Forums (Home) -> General Discussions All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



[ Contact us | Terms of Service/Privacy Policy ]