|
|
 |
|
|
Pages: 1
KILLCMOS.zip / KILLCMOS.com
(Click here to view the original thread with full colors/images)
Posted by: Shalome
Norton picked up KILLCMOS.zip and KILLCMOS.com as Trojans, and they were in a directory with a bunch of files with password-type extensions and filenames.
So what exactly is the implication of having these files (along with a .pdf version of the Hacker's Blackbook in German) show up on your computer? It looks like they've been there for months, but just got picked up in this week's virus scan. (This is my work comp which is used by 2 other people, not the one at home -- the one at home never has crap like this happen).
Those files and the Hacker's Blackbook showed up at the same time and several directories were created at the same time as well. I deleted everything except the Blackbook, which I wanna run through a translator and read.. for educational purposes...
Symantec.com's Virus Encyclopedia has nothing to say.
-Shalome
Posted by: Kdr Kane
There are reports that some anti-virus programs pickup KillCMOS as a trojan. However, the Symantec (Norton Anti-Virus) site does not list it as a trojan.
Look here.
Posted by: Canis Lupus
Hehe, had to download the actual file from a hacker site just to check it out 
KILLCMOS is basically a program that resets your CMOS ... its primary use when it was created was to clear any BIOS passwords on the computer ... not very malicious, but like any other nifty utility, it is so easy to abuse...
It doesn't really do any damage on the hardware or software level ... it just "kills" or resets the CMOS, which means after it has done its deed, you'll see a CMOS error (to the effect of "CMOS Checksum Failure, Default Settings Loaded...") and prompts you to hit F1 or DEL to enter the BIOS setup and fix and reconfigure things....
:edit: Oops, Kane beat me to it
|
|
|
|
|