The virus was never meant for graalonline,it was spread onto due to a friend who IM'd me that he did it.
The virus did not steal anything,or install any extra.
Sorry for inconvenience i have closed the hosting,the domain is still existing.
Quote:
Originally Posted by DuBsTeRmAn
I have been told that someone (cjclark) works for UPS or something and shut the server down ;]
|
He lied.
Quote:
Originally Posted by Tenchry_P2P
schtasks and schtasks.exe.mui all good? cause you just said sch.exe?
|
schtasks and schtasks.exe.mui are fine the virus droped to \WINDOWS\system32\sch.exe or \WINDOWS\sch.exe depending on your OS
The virus installs itself to
\WINDOWS\system32\sdra64.exe
\WINDOWS\system32\lowsec\local.ds
\WINDOWS\system32\lowsec\user.ds
-Darow