Forum     

Go Back   Digit Technology Discussion Forum > Software > Software Q&A
Register FAQ Calendar Mark Forums Read

Software Q&A Having trouble with software? Find solutions here


Closed Thread
 
LinkBack Thread Tools Display Modes
Old 12-04-2009, 05:52 PM   #1 (permalink)
In The Zone
 
mad1231moody's Avatar
 
Join Date: Sep 2007
Posts: 237
Default Kido attack


Hi freinds. My PC was affected by the Kido worm. A trial version of Kaspersky weeded out the worm and I also ran Norton Dawnadup Remover tool. But still every 2 hrs or so My kaspersky detects keylogger activity and when I click on view report I get this message.

Quote:
4/12/2009 5:45:27 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Detected: Keylogger
4/12/2009 5:46:27 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Detected: Keylogger
4/12/2009 5:46:27 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Detected: Keylogger
4/10/2009 9:31:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:32:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:33:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:34:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:35:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:36:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated: Keylogger
4/10/2009 9:37:06 PM Keylogger activity C:\WINDOWS\SYSTEM32\DRIVERS\KBDCAP.SYS Not terminated:
Kaspersky is unable to weed it out and even I am not deleting the KBDcap file as it is a sys file. Please hlep out
mad1231moody is offline  
Advertisements. Register and be a member of the community to get rid of them.
Advertisement

Old 13-04-2009, 06:29 PM   #2 (permalink)
In The Zone
 
mad1231moody's Avatar
 
Join Date: Sep 2007
Posts: 237
Default Re: Kido attack

Hello there, please helpme out this time please
mad1231moody is offline  
Old 13-04-2009, 06:40 PM   #3 (permalink)
lost in my world
 
yippee's Avatar
 
Join Date: Mar 2009
Posts: 90
Default Re: Kido attack

Quote:
The Win32.Worm.Downadup, aka "Conficker" or "Kido," first hit the world last year by exploiting the MS08-067 vulnerability that let it spread in loosely secured networks.
http://www.technewsworld.com/rsstory/65869.html
http://www.viruslist.com/en/alerts?alertid=203996089
see if antivir and comodo can detect it, they both are free
and keep your system updated
yippee is offline  
Old 13-04-2009, 10:55 PM   #4 (permalink)
PhB
Jughead!!!
 
PhB's Avatar
 
Join Date: Sep 2008
Posts: 68
Default Re: Kido attack

See if this helps,

> Goto safe mode or boot from linux
> Navigate to C:\WINDOWS\SYSTEM32\DRIVERS\
> Delete KBDCAP.SYS
> Goto C:\
> Delete autorun.inf (If it's present)
__________________
Lag in my favourite MMO :-(
PhB is offline  
Old 13-04-2009, 11:44 PM   #5 (permalink)
Alpha Geek
 
Join Date: Jan 2007
Location: In your hearts
Posts: 828
Default Re: Kido attack

just download quickheal update it and run a scan after changing it's settings little bit
i was also able to repair my friends pc by quickheal which was also attacked by Kido
abhijangda is offline  
Closed Thread

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


 
Latest Threads
- by Sarath
- by clmlbx
- by ico
- by clinton
- by icebags
- by Charan

Advertisement




All times are GMT +5.5. The time now is 01:36 AM.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.

Search Engine Optimization by vBSEO 3.3.2