dickjarvinen
IS-IT--Management
Norton recently blocked a program trying to access the Internet from my PC (using TCP/IP) called, of all things, 'iykagzsd.exe'. I'm using Win2K Pro, by the way.
I googled Web and Newsgroups and found nothing on this. Yet about every 1/2 hour, this program pops up twice, always blocked by Norton (which is a good thing, I assume).
Some gritty details: 352,256 bytes long, date tag 7/1/04 at 11:57am
I looked at it in the debugger and it 'seems' to be some sort of old DOS 5.0 program, or something that ripped off an old DOS 5.0 program. Lots of DOS messages imbedded in it.
The only reference in the registry is under HKEY_CURRENT_USER\Software\Microsoft\Current Version\Run in a key named 'lgc'.
One theory (benign) is that somehow one of the kids got a hold of the PC and randomly changed the name of one of the system programs.
Another theory (malignant) is that it is some sort worm or trojan horse or something that changes its name to avoid detection.
I could just delete it, but as it seems to be 'safe' (because of my Norton), I'm leaving it alone until I find out just what the heck is going on.
Any ideas?
Thanks.
I googled Web and Newsgroups and found nothing on this. Yet about every 1/2 hour, this program pops up twice, always blocked by Norton (which is a good thing, I assume).
Some gritty details: 352,256 bytes long, date tag 7/1/04 at 11:57am
I looked at it in the debugger and it 'seems' to be some sort of old DOS 5.0 program, or something that ripped off an old DOS 5.0 program. Lots of DOS messages imbedded in it.
The only reference in the registry is under HKEY_CURRENT_USER\Software\Microsoft\Current Version\Run in a key named 'lgc'.
One theory (benign) is that somehow one of the kids got a hold of the PC and randomly changed the name of one of the system programs.
Another theory (malignant) is that it is some sort worm or trojan horse or something that changes its name to avoid detection.
I could just delete it, but as it seems to be 'safe' (because of my Norton), I'm leaving it alone until I find out just what the heck is going on.
Any ideas?
Thanks.