Windows 7 Forums
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find support and solutions for any problems regarding your Windows 7 PC be it Dell, HP, Acer, Asus or a custom build. We also provide an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7: tdl3 rootkit browsers hook to directdr.com & urbtk.com

06 Jan 2010   #11

Windows 7 ultimate 32 bit oem & Arch Linux x86_64
 
 
os still stable

almost 1 month later and have had no ill effects, just a wee update. still a happy camper :>


My System SpecsSystem Spec
.

06 Jan 2010   #12
Microsoft MVP

Windows 7 Ultimate 32bit SP1
 
 

Good to know, thanks for the update
My System SpecsSystem Spec
08 Jan 2010   #13

windows 7 ultimate x64
 
 

my question is how does infect machines? I mean how does it get on in the first place.

is it drive by or something you have to execute.
My System SpecsSystem Spec
.


08 Jan 2010   #14

Windows 7 ultimate 32 bit oem & Arch Linux x86_64
 
 
reply to chrysalis

usually people get infected by downloading "cracked software" or from p2p sites torrents ect, and u can also get bitten by visiting malicious sites,u could even download and install a codec which isnt what it seems, these rootkits are very clever my advice would be to use the wot (web of trust add on) which is available for firefox and internet explorer,malwareytes updated and scheduled to scan daily is another advantage for the end user [you], for that extra wee bit of security id recommend no script add on for firefox, which will disable any malicious sites from doing a drive by on you, hope u found this usefull and remember, "google is ur friend" he is wiser than yoda
My System SpecsSystem Spec
10 Jan 2010   #15

windows 7 ultimate x64
 
 

well I mean how does this specific trojan infect.
My System SpecsSystem Spec
10 Jan 2010   #16

Windows 7 Ultimate (32 bit)
 
 

Quote   Quote: Originally Posted by chrysalis View Post
well I mean how does this specific trojan infect.
I don't understand it but if you want the details here you go.
http://virusvn.com/download/video-tu...ysis_paper.pdf
My System SpecsSystem Spec
17 Dec 2010   #17

Windows 7 ultimate 32 bit oem & Arch Linux x86_64
 
 
NEW TDSS TDL 4 PFFT combofix pwns

my machine still goin strong 1 year later, but yesterday a family member brought me their laptop saying it was unusable due to the large amount of fake A.V alerts, my first port of call was to install mbam from a thumbdrive and it found 3000+ infections (seriously) thats a record for me, i let mbam clean em all (took a while) , afterward i decided to put FF on the lappy & prompt the owner to say goodbye to internet exploder, however on doing this i was redirected to gala search engine and the FF download was not pointing to mozilla.com , having seen this type of behaviour before, i downloaded combofix from bleeping computer to a thumbdrive, renamed it 123.exe and copied over to infected machine, i let combofix do its thing and yup it found a TDL 4 , corrupt MBR, im glad to say combofix also fixed this laptop which was running xp sp2 java version 5 & slimewire i left a READ ME.txt on desktop prompting owner to delete limewire, and of course i updated java,flash sp3, windows updates ect, so we have a new tdss in our midst and combofix nailed it once more )
My System SpecsSystem Spec
Reply

 tdl3 rootkit browsers hook to directdr.com & urbtk.com




Thread Tools



Similar help and support threads for2: tdl3 rootkit browsers hook to directdr.com & urbtk.com
Thread Forum
Require (Rootkit.TDSS.TDL4) Rootkit Removal & Cleanup walkthrough System Security
salvaging a TDL3 infected HDD System Security
TDL3 Rootkit 64 Bit Driver System Security
x64 TDL3 rootkit - follow up. News
TDL3 rootkit x64 goes in the wild News
Interesting 'Read' about tdl3 rootkit Security News
Hook up Sound & Audio

Our Sites

Site Links

About Us

Find Us

Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

Designer Media Ltd

All times are GMT -5. The time now is 05:39 AM.
Twitter Facebook Google+



Windows 7 Forums

Seven Forums Android App Seven Forums IOS App
  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33