IH Infector


· Overview ·
· Origins ·
· Operation ·
· Detection and Removal ·
· Research ·



Overview

Vendor Notes:

From the doc: 'This |s another ep|sode of 'TROJAN |N HTML PAGES CONCEPT'.The EXPLO|T was g|ven to me by MaDX and | developed |t |n VB. Open IH-Infector.You w|ll see two Text Boxes.One |s where you put the path of the server(like http://www.coolfreepages.com) where you w|ll 'Host' or 'Upload your f|les'.Just enter the 'URL'.Remember to put 'http://' prefix.Your host should also support 'PHP'.http://www.lycos.co.uk supports php.Enter the URL.(For Expamle: If you are hosting your files on http://www.lycos.co.uk then in the 'Web-URL' text box just enter ,http://www.lycos.co.uk.No need to get frustrated or puzzeled'.All you have to do is to enter the path or you server where you have to host these files. In The other text box,you have to put the name of your trojan.Just rename your trojan to mypic.exe and enter mypic.exe in that text box.Simple :P Now click 'GENERATE'.Two files will be generated.'Index.html and infect.php'.Just Upload Index.html,Infect.php with your trojan on you sepecific host.And (Y) Work done.:) that,s what r u going to do'
From the doc: '1-''The Web-Url field can be left balnk'' 2- select trojan and press Generate 3- upload the three files ( index.html , infect.php , readme.txtprog.exe ) to ur web sit . works on all internet explorer even 6 ( unlless pathecd )'

Category:

Trojan Creation Tool: A program designed to create Trojans. Some of these tools merely wrap existing Trojans, to make them harder to detect. Others add a trojan to an existing product (such as RegEdit.exe), making it a Dropper.

DoS: An exploit whose purpose is to deny somebody the use of the service: namely to crash or hang a program or the entire system. Examples of DoS attacks include flooding the victim with more traffic than can be handled; flooding a service (like IRC) with more events than it can handle bomb; crashing a TCP/IP stack by sending corrupt packets; crashing a service by interacting with it in an unexpected way; or hanging a system by causing it to go into an infinite loop. For example, the Ping of Death exploit crashed machines by sending illegally fragmented packets at a victim. A common word for DoS is ""nuke"", which was first popularized by the WinNuke program.

Variants:

  • IH Infector 1.0
  • Similar Pests:

    Trojan Creation Tool · DoS

    Origins

    Author:

    Faceless Master,

    By This Author:

    Faceless ICQ · Herman Uploader · Herman Uploader 1.0 · Herman Uploader Public Beta 1.0 · Herman Uploader Public Beta 1.1 · IH Infector 1.0 · IH-Infector 1.2 · RAM Eater · RAM Eater 1.2 · Remote VIREUS · Remote VIREUS version 2 · Sin · Sin 1.0b · Sin 2.0 · Sin Static Ip Notifier · Static IP Notifier

    Date of Origin:

    January, 2003

    Operation

    Storage Required:

  • IH Infector 1.0: at least 41 KB
  • Detection and Removal

    Automatic Removal:

    PestPatrol detects this.

    PestPatrol removes this.



    Manual Removal:

    Follow these steps to remove IH Infector from your machine. Begin by backing up your registry and your system, and/or setting a Restore Point, to prevent trouble if you make a mistake.
    Stop Running Processes:

    Kill these running processes with Task Manager:

    Remove Files:

    Remove these files (if present) with Windows Explorer:

    Research

    File Analyses:

    More Info:

  • AllTheWeb, AltaVista, AOL Search, Ask Jeeves, Google, HotBot, Lycos, LookSmart, MSN, Yahoo!
  • Research By:

  • PestPatrol's Pest Research Center
  • Last Revised:

    June 27, 2004