SubSeven Trojan and Router - How Bad?

trudi

Member
Mar 30, 2001
94
0
0
When I scanned my HD it found the SubSeven Trojan, I've read enough that this is an evil evil little program and I know I could have gotten it from a million places - probably not limited to my silly use of Limewire . I assume I should just reinstall Win2K to be sure that all is ok but I have a couple questions if anyone out there knows...
First - I have a cable router hooked up, while I know that this is not foolproof protection it should have offered me some protection. Just because the trojan was there doesn't mean anyone ever got in. I never had things randomly print or files move or any of that really really scary stuff. The only thing that would ever make me think someone else had access to my computer was that sometimes it wouldn't go into screensaver mode but I assumed that had to do with my hard drive and messed up OS settings. Is there anyway to find out if someone accessed my computer?
Second - Is everything I have file wise now contaminated? I just ripped my entire CD collection to MP3 and backed it up on CD (6 CDs better than 10 times that) plus I have assorted other files - are all of those tainted by association now?
 

SaturnX

Diamond Member
Jul 16, 2000
3,415
0
76
I suggest when you reformat, install ZoneAlarm, it's a free firewall and does one great job, this'll stop things like Sub Seven from messing up your comp but not allowing it to connect anywhere.

Zone Labs: Zone Alarm

--Mark
 

trudi

Member
Mar 30, 2001
94
0
0
OK I've got Zone Alarm and AVG. I guess my main issue was more about the files if they can be salvaged in anyway or if I need to get everything new from scratch. I have 2 HD and one was literally reformatted yesterday. I'd LOVE to just pop all of the files onto one of the HD and not lose everything because of this. I'm guessing this is unreasonable though.
 

Chau

Senior member
May 23, 2001
712
4
71
nah your files aren't infected, sub7 is only a single executable file. u ever run a virus scanner to try and remove it? if not u can do it manually...check your startup options like win.ini (after where it says load= or run=), system.ini(check where it says shell=), and registry (software>microsoft>windows>currentversion> then check both run and run services), and see if these are loading any suspicious exe files, if they are, i'd suggest restarting into dos, and deleting the file there
 

jobberd

Banned
Mar 30, 2001
2,057
0
0
well, subseven itself cant infect your files, but anyone who connects to your computer with subseven can do whatever he wants, including rewrite a random executable to a virus. I dont know the chances of this happening, although im betting they are slim, so you probly shouldnt worry about anything of the sort. but even if you did catch a virus through subseven, your mp3 collect should be fine. the only thing that could've happened to them was that the malicious user erased / changed sum of them, or couldve placed a virus such as song.mp3.exe. but again, 1: the chances of sumone doing that to you are very small, and 2: if you have full file name viewing enabled, this shouldnt be a problem
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |