ext_153449 ([identity profile] jdack.livejournal.com) wrote in [personal profile] palsgraf_polka 2010-03-24 05:06 pm (UTC)

Hm, that sounds a lot like (or just like) the one I removed from my friend's machine recently.

His wife got it by visiting a rigged classic rock radio web site using Internet explorer.

In his case the startup was slow enough that before the malware loaded I was able to install and run process explorer (a task manager replacement) and noticed a weird looking .exe with a random file name running, using up all the cpu/ram.

Deleted that and everything went back to normal.

These programs are usually dug in deeper than that though.

Post a comment in response:

This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting