Well, I caught the Dnet worm last night after about half an hour of cracking for bymer. It was a matter of coincidence that I noticed it. I rebooted my machine, and it immediately triggered dial-up networking. So I checked the start-up folder(nothing), then checked msconfig and found it. Then I went to the registry, and c:\windows\system, and there were all the files. I checked my log file, and saw that my dnet client was killed about 20 minuted earlier. So I downloaded the wormfree utility from dnet and everything is fine.
The utility told me that I had my c:\ shared over tcp/ip for the dial-up adapter
. It was that darn Internet Connection Sharing that winME did. I think/hope that the virus was the only thing that was modified on my computer! Well, I have learned my lesson
So if you ever see DUN triggered automatically after reboot, the virus might be the problem.
The utility told me that I had my c:\ shared over tcp/ip for the dial-up adapter