View Full Version : Ok I think have the Direct Connection Shivka Burka virus how can I get rid of it!?!?!
TrevGlas
09-18-03, 11:02 PM
Ok guys I found out I had this trojan doing some online security scans. It is a direct connect trojan that opens up port 1600 on your computer.. how in the HELL do I get rid of this? Do I have to do a clean install? GOD I hope not i just did one like a week ago.
1600 tcp DirectConnection [trojan] Direct Connection
1600 tcp ShivkaBurka [trojan] Shivka-Burka
Trev
cyberskye
09-19-03, 12:50 PM
http://www.anti-trojan.net/en/onlinecheck.aspx
You sure that's what this is?
TrevGlas
09-19-03, 03:11 PM
Well I went through like 100's of port lists, and the only program that opens 1600 is the shivka burka trojan... and I did a security scan on auditmypc.com or something like that, and it said Direct Connect Shivka Burka
Trev
RAAF453_Shep
09-20-03, 10:30 AM
thanks Cybersky , ran that test.. said clean, stealth on all.
Thanks to SG ! bless you all !
TrevGlas
09-20-03, 11:16 AM
Agreed SG is the best forum. Hands down.
Trev
cyberskye
09-20-03, 04:35 PM
and the only program that opens 1600 is the shivka burka trojan
Just FYI - i could write a p2p program (assuming I knew how the hell to do that:)) that binds to tcp 1600...those lists are 'sightings' (shiva-burka v1.1 last seen southbound on tcp 1600) or defaults for popular applications like network games, They aren't hard rules.
Ports 0-1023 are system or reserved ports and require rootly powers to bind to. You have fewer trojans on those lower ports for that reason.
vBulletin® v3.7.3, Copyright ©2000-2008, Jelsoft Enterprises Ltd.