Trojan Horse Infection on Primary System Through USB Thumb Drive

PC Software. Anything to do with PC Games & software!

Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby a1 » Wed Jun 09, 2010 11:31 pm

School systems are cesspools for all types of nasty bugs. I just now got a Trojan from my USB drive because I plugged it in a school computer. Apparently the school system missed something.

I restarted my compute rand now running AVG scan. AVG is very buggy after the infection and if the scan doesn't find and fix it I'll be out of options. I quickly scanned the USB drive when I plugged it in and AVG said it moved the Trojan to the vault but I am still nervous.

This would be my first confirmed infection and I hope I am taking things correctly. I will refrain from plugging any USB drives in the infected computer for now.

If all else fails I'll have to send my computer to the GeekSquad (reluctantly) and have them mess around with it.

Is there a chance I can clean the USB drive without infecting another computer? I will not hesitate to format the USB drive though.

This post will be updated as things update for me.
Image
790i : QX9650 : 4Gb DDR3 : GeForce 8800 GTX : 1 WD Raptor : 1 WD VelociRaptor 150
User avatar
a1
Lieutenant Colonel
Lieutenant Colonel
 
Posts: 7608
Joined: Thu Jan 04, 2007 9:16 pm

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby aussiewannabe » Thu Jun 10, 2010 10:18 am

After you reformat your USB drive, I suggest you use the following on it from now on:

http://www.precisesecurity.com/tools-re ... sinfector/

When a virus comes into contact with a USB drive, it creates an autorun.inf file so when you insert your drive into another computer, it can infect it. However, since Flash Disinfector creates an autorun.inf folder on your USB drive, the virus has no place to go but to the recycler file on it.

One way you can tell if a virus is on your USB is to watch it the red light on it. It will flash when you insert it as well as when you began accessing it for files or when it finishes a download. If it continues to flash after all this then 9 times out of 10 a virus has gotten on to the drive. There have been times I thought I had one on it due to this happening, but my virus program (NOD 32) doesn't find a virus on it.

Hope this helps.
HP Media Center Photosmart m7260n | 3.0GHz Intel Pentium D 830 | 2 GB RAM | 320 GB HD | Sapphire X1950 GT 512MB | Silencer 610 Watt PSU

[center][img]
http://www.simviation.com/yabbuploads/aussie_sig1.jpg
User avatar
aussiewannabe
Major
Major
 
Posts: 2523
Joined: Thu May 17, 2007 11:33 am

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby Fozzer » Thu Jun 10, 2010 1:54 pm

After you reformat your USB drive, I suggest you use the following on it from now on:

http://www.precisesecurity.com/tools-re ... sinfector/

When a virus comes into contact with a USB drive, it creates an autorun.inf file so when you insert your drive into another computer, it can infect it. However, since Flash Disinfector creates an autorun.inf folder on your USB drive, the virus has no place to go but to the recycler file on it.

One way you can tell if a virus is on your USB is to watch it the red light on it. It will flash when you insert it as well as when you began accessing it for files or when it finishes a download. If it continues to flash after all this then 9 times out of 10 a virus has gotten on to the drive. There have been times I thought I had one on it due to this happening, but my virus program (NOD 32) doesn't find a virus on it.

Hope this helps.





The above program...^^^^.... :o...!

Avira has just flagged up a security risk on the "Autorun" file in ALL my Hard Drives, and automatically blocked them!

Paul....Beware!... ;)...!

P.S. My Hard drives, etc, were clear of anything dangerous..UNTIL...I installed the above program!
Last edited by Fozzer on Thu Jun 10, 2010 2:09 pm, edited 1 time in total.
Win 8.1 64-bit. DX11. Advent Tower. Intel i7-3770 3.9 GHz 8-core. 8 GB System RAM. AMD Radeon HD 7700 1GB RAM. DVD ROM. 2 Terra Byte SATA Hard Drive. Philips 17" LCD Monitor. Saitek Cyborg X Fly-5 Joystick. ...and a Briggs and Stratton Petrol Lawn Mower.
User avatar
Fozzer
Colonel
Colonel
 
Posts: 27361
Joined: Thu Jan 31, 2002 3:11 pm
Location: Hereford. England. EGBS.

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby aussiewannabe » Thu Jun 10, 2010 6:07 pm

P.S. My Hard drives, etc, were clear of anything dangerous..UNTIL...I installed the above program!

Huh? Where did you install it? This is for flash drives.

Paul, I can assure you the program is safe. Been using for several years now.

As to your virus program, I'm not sure what is happening to your PC as it relates to the autorun.inf folder. I don't want to discuss what I think what it could be as I'm no computer expert. If I do, I run the risk of be scolded by those who know.

I can tell you this: My autorun.inf files on my drives are disabled for the purpose of preventing viruses to be planted on them. It's added protection. It doesn't bother me to go into a CD and manually click on the run/install exe file.
Last edited by aussiewannabe on Thu Jun 10, 2010 6:09 pm, edited 1 time in total.
HP Media Center Photosmart m7260n | 3.0GHz Intel Pentium D 830 | 2 GB RAM | 320 GB HD | Sapphire X1950 GT 512MB | Silencer 610 Watt PSU

[center][img]
http://www.simviation.com/yabbuploads/aussie_sig1.jpg
User avatar
aussiewannabe
Major
Major
 
Posts: 2523
Joined: Thu May 17, 2007 11:33 am

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby a1 » Thu Jun 10, 2010 7:24 pm

I will comment relating to the above posts at a later time but for now...

Whenever I open up AVG virus vault I get an error where AVG freezes. I am attempting to uninstall the version I have and download the full version online. I will then activate the full version using my old product key. Tell me if that should work.

Reformatting my USB drive. Apparently whenever I open up the drive I get:

sYstem.EXe error

I am assuming it has infected that process. What should I do?
Image
790i : QX9650 : 4Gb DDR3 : GeForce 8800 GTX : 1 WD Raptor : 1 WD VelociRaptor 150
User avatar
a1
Lieutenant Colonel
Lieutenant Colonel
 
Posts: 7608
Joined: Thu Jan 04, 2007 9:16 pm

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby a1 » Thu Jun 10, 2010 7:28 pm

I have created an AVG Rescue CD and running it now. I am currently scanning my C: drive and my USB Drive.

Lets hope whatever it is gets found and taken care of.
Image
790i : QX9650 : 4Gb DDR3 : GeForce 8800 GTX : 1 WD Raptor : 1 WD VelociRaptor 150
User avatar
a1
Lieutenant Colonel
Lieutenant Colonel
 
Posts: 7608
Joined: Thu Jan 04, 2007 9:16 pm

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby a1 » Thu Jun 10, 2010 8:16 pm

No type of scan can find anything infected or wrong.

I have noticed that the "System" process runs at around 90,000K.

EDIT: On Safe Mode the process only registers around 290K
Last edited by a1 on Thu Jun 10, 2010 8:32 pm, edited 1 time in total.
Image
790i : QX9650 : 4Gb DDR3 : GeForce 8800 GTX : 1 WD Raptor : 1 WD VelociRaptor 150
User avatar
a1
Lieutenant Colonel
Lieutenant Colonel
 
Posts: 7608
Joined: Thu Jan 04, 2007 9:16 pm

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby aussiewannabe » Thu Jun 10, 2010 8:47 pm


Reformatting my USB drive. Apparently whenever I open up the drive I get:

sYstem.EXe error

I am assuming it has infected that process. What should I do?

Google system.exe error. Based on what I briefly looked at, system.exe is shown to be a virus.

I'm afraid I can't continue helping you with your problem. From what you indicated in your original thread, I thought I had something that would be beneficial to you. It's been a big help to me when my USB drive got infected the first time.

I hope someone with the right experience will step up to the plate and help you fix the problem.
HP Media Center Photosmart m7260n | 3.0GHz Intel Pentium D 830 | 2 GB RAM | 320 GB HD | Sapphire X1950 GT 512MB | Silencer 610 Watt PSU

[center][img]
http://www.simviation.com/yabbuploads/aussie_sig1.jpg
User avatar
aussiewannabe
Major
Major
 
Posts: 2523
Joined: Thu May 17, 2007 11:33 am

Re: Trojan Horse Infection on Primary System Through USB Thumb Drive

Postby a1 » Thu Jun 10, 2010 9:32 pm

What makes me nervous is that none of the resources I have can detect and solve my issue.

The only symptom I can confirm is that it runs on high memory. It apparently does not do anything else. No new programs have been installed. The process seems to be there already but whatever is infecting my computer just modified it a bit.
Image
790i : QX9650 : 4Gb DDR3 : GeForce 8800 GTX : 1 WD Raptor : 1 WD VelociRaptor 150
User avatar
a1
Lieutenant Colonel
Lieutenant Colonel
 
Posts: 7608
Joined: Thu Jan 04, 2007 9:16 pm


Return to Computer Games & Software

Who is online

Users browsing this forum: No registered users and 437 guests