New User? Need help? Click here to register for free! Registering removes the advertisements.

Computer Cops
image image image image image image image image
Donations
If you found this site helpful, please donate to help keep it online
Don't want to use PayPal? Try our physical address
image
Prime Choice
· Head Lines
· Advisories (All)
· Dnld of the Week!
· CCSP News Ltrs
· Find a Cure!

· Ian T's (AR 24)
· Marcia's (CO8)
· Bill G's (CO12)
· Paul's (AR 5)
· Robin's (AR 2)

· Ian T's Archive
· Marcia's Archive
· Bill G's Archive
· Paul's Archive
· Robin's Archive
image
Security Central
· Home
· Wireless
· Bookmarks
· CLSID
· Columbia
· Community
· Downloads
· Encyclopedia
· Feedback (send)
· Forums
· Gallery
· Giveaways
· HijackThis
· Journal
· Members List
· My Downloads
· PremChat
· Premium
· Private Messages
· Proxomitron
· Quizz
· RegChat
· Reviews
· Google Search
· Sections
· Software
· Statistics
· Stories Archive
· Submit News
· Surveys
· Top
· Topics
· Web Links
· Your Account
image
CCSP Toolkit
· Email Virus Scan
· UDP Port Scanner
· TCP Port Scanner
· Trojan TCP Scan
· Reveal Your IP
· Algorithms
· Whois
· nmap port scanner
· IPs Banned [?]
image
Survey
How much can you give to keep Computer Cops online?

$10 up to $25 per year?
$25 up to $50 per year?
$10 up to $25 per month?
$25 up to $50 per month?
More than $50 per year?
More than $50 per month?
One time only?
Other (please comment)



Results
Polls

Votes: 1170
Comments: 21
image
Translate
English German French
Italian Portuguese Spanish
Chinese Greek Russian
image
 Forum FAQForum FAQ   SearchSearch   UsergroupsUsergroups   ProfileProfile   Login to check your private messagesLogin to check your private messages   LoginLogin   Your Favorite ForumsFavForums 

Backdoor:win32/bbd.a.drop

 
Post new topic   This topic is locked you cannot edit posts or make replies       Computer Cops Forum Index -> TrojanHunter
View previous topic :: View next topic  
Author Message
henriette

Cadet
Cadet



Joined: Jan 16, 2004
Posts: 4
Location: Germany

PostPosted: Fri Jan 16, 2004 10:30 am    Post subject: Backdoor:win32/bbd.a.drop
Reply with quote

hello,
my O/S = W2K Pro.

After an update of my AVK (G DATA, 2 engines: 1 kaspersky other RAV) two days ago, my AV caught several files with the trojan (?):
"Backdoor:Win32/BBD.A.Drop".
One of the files was my "NeroImageDriveInst.exe" plus two update-*.exes, which I urgently need!

Can anyone name this virus - tell me a workaround, removal tool ?
I have searched the internet, asked my support - no results.

This trojan changes the file-icon into a DOS-icon (I can tell from looking at it when I DISable the AV).
Now I got the files in quarantine (except the emails, which I deleted)
NOTE: the emails were dated 1 year ago! Also the "nero...exe" has been there for months.
This makes me think that the trojan cannot be a new one, just was "discovered" and updated by kaspersky 2 days ago(?).

For any kind of help I would be ever so thankful Razz

henriette
Back to top
View users profile Send private message Send email
claire

Site Moderator
Site Moderator
Premium Member
Premium Member


Joined: Apr 21, 2002
Posts: 4866
Location: Belgium

PostPosted: Fri Jan 16, 2004 11:10 am    Post subject:
Reply with quote

Hi Henriette,

Could you send the suspect files to:

With a link to this thread?

Magnus will help you asap .
Back to top
View users profile Send private message
henriette

Cadet
Cadet



Joined: Jan 16, 2004
Posts: 4
Location: Germany

PostPosted: Fri Jan 16, 2004 11:48 am    Post subject:
Reply with quote

Hiya Claire,

I will do so right away.

Thank You

henriette
Back to top
View users profile Send private message Send email
henriette

Cadet
Cadet



Joined: Jan 16, 2004
Posts: 4
Location: Germany

PostPosted: Fri Jan 16, 2004 12:50 pm    Post subject:
Reply with quote

e v e r y t h i n g is fine again,

just was working on email to Magnus, when I received a new update for my AVK!
Kapersky seems to be the only one who thought it was a virus, and they updated the last update - so to speak :=)

This is a lot better than the other way round, isn't it ?

My files have the original icon again, and no scan will "grab" them.

Ufffffff.... I am soooo relieved... and I thank you soooooo much for the quick help you offered me!

Thank you Very Happy

henriette
Back to top
View users profile Send private message Send email
claire

Site Moderator
Site Moderator
Premium Member
Premium Member


Joined: Apr 21, 2002
Posts: 4866
Location: Belgium

PostPosted: Fri Jan 16, 2004 4:32 pm    Post subject:
Reply with quote

You're quite welcome Henriette.

I am glad everything is fine for you now Smile l
Back to top
View users profile Send private message
henriette

Cadet
Cadet



Joined: Jan 16, 2004
Posts: 4
Location: Germany

PostPosted: Sun Jan 18, 2004 8:09 am    Post subject:
Reply with quote

Hello

yes, Claire

After 2 sleepless night and hard days my PC "DONALD" is fine again.

Thank you again! This is a wonderul forum.

henriette (can Buggle Gum again :=)

So I will close this thread.
Back to top
View users profile Send private message Send email
Display posts from previous:   
Post new topic   This topic is locked you cannot edit posts or make replies       Computer Cops Forum Index -> TrojanHunter All times are GMT - 5 Hours
Page 1 of 1

 
 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You can download files in this forum


Powered by phpBB 2.0.8a © 2001 phpBB Group

Version 2.0.6 of PHP-Nuke Port by Tom Nitzschner © 2002 www.toms-home.com
Version 2.2 by Paul Laudanski © 2003-2004 Computer Cops