I occasionaly use my laptop and only have AVG antivirus loaded. Everytime
that I use the laptop I update the AV and then run a full scan. On my last
scan nothing was detected, I used the laptop for a few hours and then shut
it down. This morning I loaded Panda Titianium AV and then ran a full scan
and it told me that it had found three Hacker tools which seemed to be
installed in the system restore files. They had the word PSkill attached to
them, Can anybody tell me what these are and how they could affect me. They
are now deleted. I have run Adaware, Spybot and Panda and seem to have a
clean system. Could any damage have been done.

Re: hack tools detected by Miha

Miha
Mon Nov 08 07:06:07 CST 2004

Hi Tim,

Do you ever use Sysinternals tools -- www.sysinternals.com?

PSKill is legitimate program from mentioned site. Of course like any other
tools it can be used for good or bad...

Mike

"Tim" <noanswer@hotmail.com> wrote in message
news:eO1O9AZxEHA.260@TK2MSFTNGP11.phx.gbl...
>I occasionaly use my laptop and only have AVG antivirus loaded. Everytime
>that I use the laptop I update the AV and then run a full scan. On my last
>scan nothing was detected, I used the laptop for a few hours and then shut
>it down. This morning I loaded Panda Titianium AV and then ran a full scan
>and it told me that it had found three Hacker tools which seemed to be
>installed in the system restore files. They had the word PSkill attached to
>them, Can anybody tell me what these are and how they could affect me. They
>are now deleted. I have run Adaware, Spybot and Panda and seem to have a
>clean system. Could any damage have been done.
>
>



Re: hack tools detected by Tim

Tim
Mon Nov 08 07:30:45 CST 2004

No Miha
I dont use this program, i am however a one for trying out coverdisk
utilities and progs soi might have inadvertantly loaded something? Do you
think that I have been exposed? what can I do to check to see if I have been
compromised?
"Miha Pihler" <mihap-news@atlantis.si> wrote in message
news:uXOE0OZxEHA.3024@TK2MSFTNGP14.phx.gbl...
> Hi Tim,
>
> Do you ever use Sysinternals tools -- www.sysinternals.com?
>
> PSKill is legitimate program from mentioned site. Of course like any other
> tools it can be used for good or bad...
>
> Mike
>
> "Tim" <noanswer@hotmail.com> wrote in message
> news:eO1O9AZxEHA.260@TK2MSFTNGP11.phx.gbl...
>>I occasionaly use my laptop and only have AVG antivirus loaded. Everytime
>>that I use the laptop I update the AV and then run a full scan. On my last
>>scan nothing was detected, I used the laptop for a few hours and then shut
>>it down. This morning I loaded Panda Titianium AV and then ran a full scan
>>and it told me that it had found three Hacker tools which seemed to be
>>installed in the system restore files. They had the word PSkill attached
>>to them, Can anybody tell me what these are and how they could affect me.
>>They are now deleted. I have run Adaware, Spybot and Panda and seem to
>>have a clean system. Could any damage have been done.
>>
>>
>
>
>




Re: hack tools detected by lee

lee
Mon Nov 08 10:43:40 CST 2004


"Tim" <noanswer@hotmail.com> wrote in message
news:eO1O9AZxEHA.260@TK2MSFTNGP11.phx.gbl...
> I occasionaly use my laptop and only have AVG antivirus loaded. Everytime
> that I use the laptop I update the AV and then run a full scan. On my last
> scan nothing was detected, I used the laptop for a few hours and then shut
> it down. This morning I loaded Panda Titianium AV and then ran a full scan
> and it told me that it had found three Hacker tools which seemed to be
> installed in the system restore files. They had the word PSkill attached
to
> them, Can anybody tell me what these are and how they could affect me.
They
> are now deleted. I have run Adaware, Spybot and Panda and seem to have a
> clean system. Could any damage have been done.
>
>
http://vil.nai.com/vil/content/v_99921.htm

http://www.sysinternals.com/ntw2k/freeware/pskill.shtml

It may not be a problem at all, if in fact you've at one time down loaded
PSKill from Sysinternals. However, as the NAI article indicates, this is a
process killer that some Trojans make use of. Further checking on your part
is required. I'd send copies of these files directly to Panda for analysis.