Ok I think have the Direct Connection Shivka Burka virus how can I get rid of it!?!?! [Archive] - SpeedGuide.net Broadband Community

View Full Version : Ok I think have the Direct Connection Shivka Burka virus how can I get rid of it!?!?!


TrevGlas
09-18-03, 11:02 PM
Ok guys I found out I had this trojan doing some online security scans. It is a direct connect trojan that opens up port 1600 on your computer.. how in the HELL do I get rid of this? Do I have to do a clean install? GOD I hope not i just did one like a week ago.

1600 tcp DirectConnection [trojan] Direct Connection
1600 tcp ShivkaBurka [trojan] Shivka-Burka


Trev

cyberskye
09-19-03, 12:50 PM
http://www.anti-trojan.net/en/onlinecheck.aspx

You sure that's what this is?

TrevGlas
09-19-03, 03:11 PM
Well I went through like 100's of port lists, and the only program that opens 1600 is the shivka burka trojan... and I did a security scan on auditmypc.com or something like that, and it said Direct Connect Shivka Burka

Trev

RAAF453_Shep
09-20-03, 10:30 AM
thanks Cybersky , ran that test.. said clean, stealth on all.
Thanks to SG ! bless you all !

TrevGlas
09-20-03, 11:16 AM
Agreed SG is the best forum. Hands down.

Trev

cyberskye
09-20-03, 04:35 PM
and the only program that opens 1600 is the shivka burka trojan

Just FYI - i could write a p2p program (assuming I knew how the hell to do that:)) that binds to tcp 1600...those lists are 'sightings' (shiva-burka v1.1 last seen southbound on tcp 1600) or defaults for popular applications like network games, They aren't hard rules.

Ports 0-1023 are system or reserved ports and require rootly powers to bind to. You have fewer trojans on those lower ports for that reason.