The Mudcat Café TM
Thread #118959   Message #2575947
Posted By: GUEST,morrisbrendon
25-Feb-09 - 06:11 PM
Thread Name: Tech: PDF Reader Attack (Maybe)
Subject: RE: Tech: PDF Reader Attack (Maybe)
I've picked up a trojan that might be related to this. It tries to start with internet explorer but AVG antivirus catches it. It's called "Trojan horse banker 4APVJ" and the path is ">system 32> AcroIEhelpe5.dll" I'm guessing that the "5" on the end is intended to make me think that it's ...helper, which I understand is a genuine file. I've looked in the system32 folder and I find a file called AcroIEhelpe5 but without the .dll This seems to be a text file but to be on the safe side I haven't tried opening it. I've deleted this text file saveral times but next time I look there it is again. The same file with the .dll can't be found. I've tried "Spybot search and Destroy" but it didn't find anything. Since AVG catches it I suppose it isn't doing any harm but I'd like to kill it altogether (along with the guy who created it, of course!).