Stealth
2008-02-03, 20:29
Company:
Product: Smitfraud-C.CoreService
Threat: Trojan
Functionality
Supposed to be some kind of driver
Description
This trojan horse gets installed as a driver and constantly runs in background and connects to malicious servers without any user consent. Removal may require to manually close the file handles of the core.cahce.dsk and core.sys residing in the folder \windows\system32\drivers\. To receive help on this please contact Team Spybot S&D via forums or email.
Any idea how to help...I am able to delete the file but it doesn't get rid of the popups....So...How do i close the file handles?
Thanks,
Ben
Product: Smitfraud-C.CoreService
Threat: Trojan
Functionality
Supposed to be some kind of driver
Description
This trojan horse gets installed as a driver and constantly runs in background and connects to malicious servers without any user consent. Removal may require to manually close the file handles of the core.cahce.dsk and core.sys residing in the folder \windows\system32\drivers\. To receive help on this please contact Team Spybot S&D via forums or email.
Any idea how to help...I am able to delete the file but it doesn't get rid of the popups....So...How do i close the file handles?
Thanks,
Ben