DUN Settings keep changing after a virus attack
Posted on 2004-04-19
I have just cleaned up virus Trojan.ByteVerify from a client after a great deal of digging and rebooted. Subsequent scans using Norton show no virus. However, his DUN Settings keep replicating and replacing the proper number/login with a premium rate one. The Original one then appears as _OLD
How do I find and kill the payload the virus has left behind? I am planning to run a spyware killer as well as soon as I get back to his desk.
I'm no expert on Windows 2000 SP4 so any help would be good.