Trojan Horse Back Door Agent .2.H !
Discussion
If you mean
W32.HLLW.Gaobot.AE
then it's a little bit complicated to remove it.
Follow the instuctions at
http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.gaobot.bt.html
particularly the disabling of system restore (otherwise it will put it back), and the fact that you have to kill the process / restart in safe mode before running your AV programme.
Finally you need to delete the reg key, but back up your registery if you aren't 100% sure what you are doing!
J
W32.HLLW.Gaobot.AE
then it's a little bit complicated to remove it.
Follow the instuctions at
http://securityresponse.symantec.com/avcenter/venc/data/w32.hllw.gaobot.bt.html
particularly the disabling of system restore (otherwise it will put it back), and the fact that you have to kill the process / restart in safe mode before running your AV programme.
Finally you need to delete the reg key, but back up your registery if you aren't 100% sure what you are doing!
J
slinky said:Yes - and it took all night to get the dam WinNT 4.0 server back after one of my staff cocked it up slightly.
[hijack]
I know best practice is to backup the registry prior to making changes, but have you ever actually had any problems following a registry change?
slinky
[/hijack]
J
Gassing Station | Computers, Gadgets & Stuff | Top of Page | What's New | My Stuff


