Windows Vista Forums
Vista Forums Home Join Vista Forums Tech Publications Windows 7 Forum Vista Tutorials Webcasts Tags

Welcome to Vista Forums we are your forum for Windows Vista help and discussion. Whether you need help or just want to post an idea you have on Vista, this is the forum for you.
Register at Vista forums...the world biggest Windows Vista resource Join Vista Forums Now

Go Back   Vista Forums > Vista Newsgroups > Vista security

newbie, in new york city, seeks to become reasonably proficient in the security arena

Update your Vista Drivers
Reply
 
Thread Tools Display Modes
Old 04-18-2007   #1 (permalink)
nweissma
Guest


 

newbie, in new york city, seeks to become reasonably proficient in the security arena

I recently came across this while wading through ms's
instruction/explanation notes:

=================================================================

Win32/Alcan creates a hidden folder for itself under the "Program Files"
folder and copies itself there. It will set a registry key to make itself
run on startup out of this folder. This hidden folder will have a name like
"winupdates" or "msconfigs".

It will share itself out via P2P networks using filenames it gathered from
various websites.

When run, it attempts to disable a number of system tools by creating files
matching their filename but with a ".com" extension instead of a ".exe"
extension. When run from the Run window or a command prompt without
explicitly specifying the extension, Windows will report the error "The
NTVDM CPU has encountered an illegal instruction". The tools affected by
this are: cmd, netstat, ping, regedit, taskkill, tasklist, and tracert.
Additionally, taskmgr is opened and locked by Win32/Alcan so that it may not
be run. Attempts to run it will cause Windows to give the error "Another
program is currently using this file".

Some versions of Win32/Alcan will install other malicious software, such as
Win32/Rbot, onto your computer.
====================================================================

can someone translate this into English? what can I read to assist me in my
travails?

is there a group in new york city with whom I can vis-a-vis?

thanks.

--


/s/ Neal Weissman
(212) 591-1531


My System SpecsSystem Spec
Reply
Update your Vista Drivers

Thread Tools
Display Modes



Similar Threads
Thread Thread Starter Forum Replies Last Post
Microsoft seeks patent for office 'spy' software Synapse Syndrome Vista General 4 01-18-2008 08:56 AM
Microsoft seeks patient on immortan computing Bill Yanaire Vista General 2 09-07-2007 06:51 AM
2 separate addresses-can i select, depending on arena? njw Vista mail 5 05-03-2007 10:11 AM
Bill Gates Webcast Jan 29 Times Square New York City Chad Harris Vista General 3 01-29-2007 09:52 AM
via Arena Max Vista hardware & devices 0 09-22-2006 01:50 PM


Complimentary Industry Resources

Vista Forums has joined forces with TradePub.com to offer you a new, exciting, and entirely free professional resource. Visit http://vistax64.tradepub.com today to browse our selection of complimentary Industry magazines, white papers, webinars, podcasts, and more across 34 industry sectors. No credit cards, coupons, or promo codes required. Try it today!




Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media 2005-2008

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51