SI
SI
discoversearch

We've detected that you're using an ad content blocking browser plug-in or feature. Ads provide a critical source of revenue to the continued operation of Silicon Investor.  We ask that you disable ad blocking while on Silicon Investor in the best interests of our community.  If you are not using an ad blocker but are still receiving this message, make sure your browser's tracking protection is set to the 'standard' level.
Pastimes : Dream Machine ( Build your own PC ) -- Ignore unavailable to you. Want to Upgrade?


To: Dan Duchardt who wrote (12946)11/13/2001 11:29:59 PM
From: Hawkmoon  Respond to of 14778
 
Not to drag this on and inflict my stupidity upon all the readers of this thread.. but I just installed IE 6.0 on Sunday (hoping that would resolve the issue) and it didn't.

Oh well... and I even dedicated 300 meg for my temporary internet files (just in case.. :0)

Btw, an interesting tidbit of trivia for you security minded folks out there:

mischel.dhs.org

Several of these are keys that are put in place by the installation programs of security software such as Conseal PC Firewall and McAfee Firewall. It appears that BioNet looks for the existance of these programs on the compromised computer by looking in the registry. The fact that neither ZoneAlarm nor AVP are queried in this way lead me to believe that the trojan finds these by the name of their executable file name.

nsclean.com

A programmer named "Rezmond" maintains and distributes a remote control trojan horse backdoor program called "BioNet." BioNet has in the past been just another commonplace trojan horse until a new release approximately one month ago. The most recent "312 and 313" releases of BioNet now pose a severe risk as a result of new capabilities which exploit a major shortcoming in the design of ALL versions of Microsoft Windows which permits security software to be shut down without any indication to the user that their protective software is no longer functioning. In addition, the most recent releases of BioNet not only incapacitate security software, they can also corrupt the software in such a manner that it cannot be reloaded or replaced. This new capability destroys popular firewall, antivirus and antitrojan software prior to installing itself into the victim's system. Because of a major design flaw in Windows itself, there is no solution for this problem unless Microsoft redesigns Windows itself. Privacy Software Corporation and others in this business have brought this to Microsoft's attention on numerous occasions to no avail.

I broached this question to a infosec guru the other day, but even he was unaware of the new version out there, and thus, couldn't really give an informed opinion of the veracity of the above analysis.

Consider it FYI..

Hawk



To: Dan Duchardt who wrote (12946)11/13/2001 11:40:40 PM
From: Carolyn  Respond to of 14778
 
Well, I have 5.5 and had the same problem. But your idea worked like a charm. :)