Services    Trojan info    Chat    Downloads      About Us      Contact  Us     Help Forum     Support Us    Search

Beard Trojan
This isn't a remote access trojan , but it is a trojan and it is pretty annoying . When executed the Bearded trojan changes the Windows desktop wallpaper to a sexually explicit image of a woman. It then displays the following message  " You Have Been Bearded " .

Removal : It is pretty easy to remove , firstly delete pic1.bmp from your windows folder then go into windows settings and change your wall paper to something else

Glace Trojan
This is your basic remote access trojan that has a few nasty features , one is that it has the ability to change your regsitry so that every time you open a txt file with notepad it will re infect the victim .

Registry entries are :
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices (Default)="C:\WINDOWS\SYSTEM\Kernel32.exe"

HKLM\Software\Microsoft\Windows\CurrentVersion\Run (Default)="C:\WINDOWS\SYSTEM\Kernel32.exe"

HKLM\Software\Classes\txtfile\Shell\open\command (Default)="C:\WINDOWS\SYSTEM\Sysexplr.exe
%1"

The last registry key will cause the trojan to be activated each time a text file
is opened on the PC. The files Kernel32.exe and Sysexplr.exe both contain copies
of the server component. The client component of the trojan is able to log into
the machine that has had the server component installed. The client is then able
to change the file and directory names and will be able to gain basic control
of the PC.