........................... VIRUS HELP DENMARK ...........................
Hi All.... 08.09.97
There is a BBS trojan out. But the SysOp of the board has to run the program
to start the trojan. After the trojan has been executet, it will delete the
caller.log, that way you can't see what the trojan did. Then it will copy
the user.dat to Libs: as TTA.library. In that way the sysop will have to be
fool'ed to give the 'hacker' the TTA.library (renamed user.data).
VT v2.99, VirusZ II v1.39, VirusWorkshop v6.6 and FastViruskiller v1.8, will
find this trojan....
Here is some info about this trojan & archive:
> ------------------------------- INFO START --------------------------------
Archive name.....: DEC-SCP.LHA
Archive size.....: 41892 bytes (ripped for BBS adds)
Trojan name......: AmixHack0.Exe
AmixHack1.Exe
AmixHack2.Exe
AmixHack3.Exe
AmixHack4.Exe
Trojan size......: 8348 bytes (11644 bytes Unpacked).
File id.Diz......: ..................................
. ______ _____ _____ _____ _____ .
.| | | | | |.
.| ___| __| O | O | O |.
.|___ | | | | ___|.
.|______|_____|_____|_____|_|.....
..................................
.....sCOOP V1.0 - /X hACKER.......
..................................
........mADE bY dECODER...........
..................................
..................................
......DO NOT RUN ON YOUR HD!......
> -------------------------------- INFO END ---------------------------------
Regards....
__ Jan Andersen E-Mail..: jan@vht-dk.dk
__ /// -------------- FidoNet.: 2:237/38.100
\\\/// Virus Help Team Denmark AmyNet..: 39:140/127.100
\XX/ http://www.vht-dk.dk VirNet..: 9:451/247.0