lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <20040504175735.52949.qmail@web41608.mail.yahoo.com>
From: keydet89 at yahoo.com (Harlan Carvey)
Subject: I'm looking for information about a file called winfix3.exe

Stacey,

It would seem that if you have a copy of the file, you
would be the one to be able to provide information
about it.

You have to remember, you can't necessarily expect to
find much if you're searching based on filename alone,
as that's probably the most easily altered thing about
a file.

Which Registry setting was changed?  Did you capture
any of the traffic it's allegedly generating?  Did you
run openports to determine whether or not the file is
responsible for the traffic?

--- Stacey Katz <skatz@...soncollege.qc.ca> wrote:
> Hi,
> 
> I hope you can help. I'm looking for information
> about a file called 
> winfix3.exe
> 
> We have tried Mcafee, Norton and AdAware to try to
> find the potential virus 
> or piece of malware.
> 
> I have tried google. There is not much information
> out there.
> 
> The application seems to start with windows via a
> reg setting. It generates 
> lots of network traffic.
> 
> Any help or information would be appreciated.
> 
> Stacey
> 
> 
> ===============================
> Stacey Katz <skatz@...soncollege.qc.ca>
> Computer Technician
> Dawson College
> 3040 Sherbrooke West, Room 2H.12
> Westmount, Quebec Canada H3Z 1A4
> 514-931-8731 ex 5149 
> 
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter:
http://lists.netsys.com/full-disclosure-charter.html


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ