OT: Virus help

Zektor

Active member
vacBacker
Feedback
4 (100%)
Credits
312CR
[uk-vac] OT: Virus help
I know there are a few PCexperts on the group and was wondering if anyone could give me advice on how to tackle a virus I have on my PC. I am using an old pc to get on the net. My new PC is pretty messed up. The firewall has been switched off and won't turn back on. The system restore points have all gone, The internet connection has gone and internet explorer won't let me create another connection! Arghhh. When I load a CD, Office 2000 starts to install itself whatever CD i insert. I cxan cancel about 6 times and it will let me install from CD but not write to CD. Is there anyway I can make another partition and install a new version of windows so I can keep my old files until I find a cure? I am running XP profesional SP2 with full version of McAfee which detects nothing. I also tried Stinger (no luck) and a few other....Nothing. Any ideas? Help would be much apprecaited. My laptop has it also except on that it has messed up the keyboard so when you type your name and password it come up with wierd letters and hangs
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
have you tried avg free from grisoft.com is great and free spy bot search and
destroys good too

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> I know there are a few PCexperts on the group and was wondering if anyone
> could give me advice on how to tackle a virus I have on my PC. I am using an
> old pc to get on the net. My new PC is pretty messed up. The firewall has
> been switched off and won't turn back on. The system restore points have all
> gone, The internet connection has gone and internet explorer won't let me
> create another connection! Arghhh. When I load a CD, Office 2000 starts to
> install itself whatever CD i insert. I cxan cancel about 6 times and it will
> let me install from CD but not write to CD. Is there anyway I can make
> another partition and install a new version of windows so I can keep my old
> files until I find a cure? I am running XP profesional SP2 with full version
> of McAfee which detects nothing. I also tried Stinger (no luck) and a few
> other....Nothing. Any ideas? Help would be much apprecaited. My laptop has it
> also except on that it has messed up the keyboard so when you type your name
> and password it come up with wierd letters and hangs
>
>
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
have you tried avg free from grisoft.com is great and free spy bot search and
destroys good too

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> I know there are a few PCexperts on the group and was wondering if anyone
> could give me advice on how to tackle a virus I have on my PC. I am using an
> old pc to get on the net. My new PC is pretty messed up. The firewall has
> been switched off and won't turn back on. The system restore points have all
> gone, The internet connection has gone and internet explorer won't let me
> create another connection! Arghhh. When I load a CD, Office 2000 starts to
> install itself whatever CD i insert. I cxan cancel about 6 times and it will
> let me install from CD but not write to CD. Is there anyway I can make
> another partition and install a new version of windows so I can keep my old
> files until I find a cure? I am running XP profesional SP2 with full version
> of McAfee which detects nothing. I also tried Stinger (no luck) and a few
> other....Nothing. Any ideas? Help would be much apprecaited. My laptop has it
> also except on that it has messed up the keyboard so when you type your name
> and password it come up with wierd letters and hangs
>
>
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
i didnt think avg was free anymore

On 15/03/06, jayjosammorgan@ukonline.co.uk
<jayjosammorgan@ukonline.co.uk> wrote:
> have you tried avg free from grisoft.com is great and free spy bot search and
> destroys good too
>
>
> Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
>
> > I know there are a few PCexperts on the group and was wondering if anyone
> > could give me advice on how to tackle a virus I have on my PC. I am using an
> > old pc to get on the net. My new PC is pretty messed up. The firewall has
> > been switched off and won't turn back on. The system restore points have all
> > gone, The internet connection has gone and internet explorer won't let me
> > create another connection! Arghhh. When I load a CD, Office 2000 starts to
> > install itself whatever CD i insert. I cxan cancel about 6 times and it will
> > let me install from CD but not write to CD. Is there anyway I can make
> > another partition and install a new version of windows so I can keep my old
> > files until I find a cure? I am running XP profesional SP2 with full version
> > of McAfee which detects nothing. I also tried Stinger (no luck) and a few
> > other....Nothing. Any ideas? Help would be much apprecaited. My laptop has it
> > also except on that it has messed up the keyboard so when you type your name
> > and password it come up with wierd letters and hangs
> >
> >
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
i didnt think avg was free anymore

On 15/03/06, jayjosammorgan@ukonline.co.uk
<jayjosammorgan@ukonline.co.uk> wrote:
> have you tried avg free from grisoft.com is great and free spy bot search and
> destroys good too
>
>
> Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
>
> > I know there are a few PCexperts on the group and was wondering if anyone
> > could give me advice on how to tackle a virus I have on my PC. I am using an
> > old pc to get on the net. My new PC is pretty messed up. The firewall has
> > been switched off and won't turn back on. The system restore points have all
> > gone, The internet connection has gone and internet explorer won't let me
> > create another connection! Arghhh. When I load a CD, Office 2000 starts to
> > install itself whatever CD i insert. I cxan cancel about 6 times and it will
> > let me install from CD but not write to CD. Is there anyway I can make
> > another partition and install a new version of windows so I can keep my old
> > files until I find a cure? I am running XP profesional SP2 with full version
> > of McAfee which detects nothing. I also tried Stinger (no luck) and a few
> > other....Nothing. Any ideas? Help would be much apprecaited. My laptop has it
> > also except on that it has messed up the keyboard so when you type your name
> > and password it come up with wierd letters and hangs
> >
> >
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
http://free.grisoft.com/doc/1

have a look at the link i use it and its good try it

Quoting Mike Green <mikedx@gmail.com>:

> i didnt think avg was free anymore
>
> On 15/03/06, jayjosammorgan@ukonline.co.uk
> <jayjosammorgan@ukonline.co.uk> wrote:
> > have you tried avg free from grisoft.com is great and free spy bot search
> and
> > destroys good too
> >
> >
> > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> >
> > > I know there are a few PCexperts on the group and was wondering if
> anyone
> > > could give me advice on how to tackle a virus I have on my PC. I am using
> an
> > > old pc to get on the net. My new PC is pretty messed up. The firewall
> has
> > > been switched off and won't turn back on. The system restore points have
> all
> > > gone, The internet connection has gone and internet explorer won't let
> me
> > > create another connection! Arghhh. When I load a CD, Office 2000 starts
> to
> > > install itself whatever CD i insert. I cxan cancel about 6 times and it
> will
> > > let me install from CD but not write to CD. Is there anyway I can make
> > > another partition and install a new version of windows so I can keep my
> old
> > > files until I find a cure? I am running XP profesional SP2 with full
> version
> > > of McAfee which detects nothing. I also tried Stinger (no luck) and a
> few
> > > other....Nothing. Any ideas? Help would be much apprecaited. My laptop
> has it
> > > also except on that it has messed up the keyboard so when you type your
> name
> > > and password it come up with wierd letters and hangs
> > >
> > >
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
http://free.grisoft.com/doc/1

have a look at the link i use it and its good try it

Quoting Mike Green <mikedx@gmail.com>:

> i didnt think avg was free anymore
>
> On 15/03/06, jayjosammorgan@ukonline.co.uk
> <jayjosammorgan@ukonline.co.uk> wrote:
> > have you tried avg free from grisoft.com is great and free spy bot search
> and
> > destroys good too
> >
> >
> > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> >
> > > I know there are a few PCexperts on the group and was wondering if
> anyone
> > > could give me advice on how to tackle a virus I have on my PC. I am using
> an
> > > old pc to get on the net. My new PC is pretty messed up. The firewall
> has
> > > been switched off and won't turn back on. The system restore points have
> all
> > > gone, The internet connection has gone and internet explorer won't let
> me
> > > create another connection! Arghhh. When I load a CD, Office 2000 starts
> to
> > > install itself whatever CD i insert. I cxan cancel about 6 times and it
> will
> > > let me install from CD but not write to CD. Is there anyway I can make
> > > another partition and install a new version of windows so I can keep my
> old
> > > files until I find a cure? I am running XP profesional SP2 with full
> version
> > > of McAfee which detects nothing. I also tried Stinger (no luck) and a
> few
> > > other....Nothing. Any ideas? Help would be much apprecaited. My laptop
> has it
> > > also except on that it has messed up the keyboard so when you type your
> name
> > > and password it come up with wierd letters and hangs
> > >
> > >
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
ive been using avast on my windows machine recently
On 15/03/06, jayjosammorgan@ukonline.co.uk
<jayjosammorgan@ukonline.co.uk> wrote:
> http://free.grisoft.com/doc/1
>
>
> have a look at the link i use it and its good try it
>
>
>
> Quoting Mike Green <mikedx@gmail.com>:
>
> > i didnt think avg was free anymore
> >
> > On 15/03/06, jayjosammorgan@ukonline.co.uk
> > <jayjosammorgan@ukonline.co.uk> wrote:
> > > have you tried avg free from grisoft.com is great and free spy bot search
> > and
> > > destroys good too
> > >
> > >
> > > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> > >
> > > > I know there are a few PCexperts on the group and was wondering if
> > anyone
> > > > could give me advice on how to tackle a virus I have on my PC. I am using
> > an
> > > > old pc to get on the net. My new PC is pretty messed up. The firewall
> > has
> > > > been switched off and won't turn back on. The system restore points have
> > all
> > > > gone, The internet connection has gone and internet explorer won't let
> > me
> > > > create another connection! Arghhh. When I load a CD, Office 2000 starts
> > to
> > > > install itself whatever CD i insert. I cxan cancel about 6 times and it
> > will
> > > > let me install from CD but not write to CD. Is there anyway I can make
> > > > another partition and install a new version of windows so I can keep my
> > old
> > > > files until I find a cure? I am running XP profesional SP2 with full
> > version
> > > > of McAfee which detects nothing. I also tried Stinger (no luck) and a
> > few
> > > > other....Nothing. Any ideas? Help would be much apprecaited. My laptop
> > has it
> > > > also except on that it has messed up the keyboard so when you type your
> > name
> > > > and password it come up with wierd letters and hangs
> > > >
> > > >
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
ive been using avast on my windows machine recently
On 15/03/06, jayjosammorgan@ukonline.co.uk
<jayjosammorgan@ukonline.co.uk> wrote:
> http://free.grisoft.com/doc/1
>
>
> have a look at the link i use it and its good try it
>
>
>
> Quoting Mike Green <mikedx@gmail.com>:
>
> > i didnt think avg was free anymore
> >
> > On 15/03/06, jayjosammorgan@ukonline.co.uk
> > <jayjosammorgan@ukonline.co.uk> wrote:
> > > have you tried avg free from grisoft.com is great and free spy bot search
> > and
> > > destroys good too
> > >
> > >
> > > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> > >
> > > > I know there are a few PCexperts on the group and was wondering if
> > anyone
> > > > could give me advice on how to tackle a virus I have on my PC. I am using
> > an
> > > > old pc to get on the net. My new PC is pretty messed up. The firewall
> > has
> > > > been switched off and won't turn back on. The system restore points have
> > all
> > > > gone, The internet connection has gone and internet explorer won't let
> > me
> > > > create another connection! Arghhh. When I load a CD, Office 2000 starts
> > to
> > > > install itself whatever CD i insert. I cxan cancel about 6 times and it
> > will
> > > > let me install from CD but not write to CD. Is there anyway I can make
> > > > another partition and install a new version of windows so I can keep my
> > old
> > > > files until I find a cure? I am running XP profesional SP2 with full
> > version
> > > > of McAfee which detects nothing. I also tried Stinger (no luck) and a
> > few
> > > > other....Nothing. Any ideas? Help would be much apprecaited. My laptop
> > has it
> > > > also except on that it has messed up the keyboard so when you type your
> > name
> > > > and password it come up with wierd letters and hangs
> > > >
> > > >
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
i have only used avg better than norton

Quoting Mike Green <mikedx@gmail.com>:

> ive been using avast on my windows machine recently
> On 15/03/06, jayjosammorgan@ukonline.co.uk
> <jayjosammorgan@ukonline.co.uk> wrote:
> > http://free.grisoft.com/doc/1
> >
> >
> > have a look at the link i use it and its good try it
> >
> >
> >
> > Quoting Mike Green <mikedx@gmail.com>:
> >
> > > i didnt think avg was free anymore
> > >
> > > On 15/03/06, jayjosammorgan@ukonline.co.uk
> > > <jayjosammorgan@ukonline.co.uk> wrote:
> > > > have you tried avg free from grisoft.com is great and free spy bot
> search
> > > and
> > > > destroys good too
> > > >
> > > >
> > > > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> > > >
> > > > > I know there are a few PCexperts on the group and was wondering if
> > > anyone
> > > > > could give me advice on how to tackle a virus I have on my PC. I am
> using
> > > an
> > > > > old pc to get on the net. My new PC is pretty messed up. The
> firewall
> > > has
> > > > > been switched off and won't turn back on. The system restore points
> have
> > > all
> > > > > gone, The internet connection has gone and internet explorer won't
> let
> > > me
> > > > > create another connection! Arghhh. When I load a CD, Office 2000
> starts
> > > to
> > > > > install itself whatever CD i insert. I cxan cancel about 6 times and
> it
> > > will
> > > > > let me install from CD but not write to CD. Is there anyway I can
> make
> > > > > another partition and install a new version of windows so I can keep
> my
> > > old
> > > > > files until I find a cure? I am running XP profesional SP2 with full
> > > version
> > > > > of McAfee which detects nothing. I also tried Stinger (no luck) and
> a
> > > few
> > > > > other....Nothing. Any ideas? Help would be much apprecaited. My
> laptop
> > > has it
> > > > > also except on that it has messed up the keyboard so when you type
> your
> > > name
> > > > > and password it come up with wierd letters and hangs
> > > > >
> > > > >
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
i have only used avg better than norton

Quoting Mike Green <mikedx@gmail.com>:

> ive been using avast on my windows machine recently
> On 15/03/06, jayjosammorgan@ukonline.co.uk
> <jayjosammorgan@ukonline.co.uk> wrote:
> > http://free.grisoft.com/doc/1
> >
> >
> > have a look at the link i use it and its good try it
> >
> >
> >
> > Quoting Mike Green <mikedx@gmail.com>:
> >
> > > i didnt think avg was free anymore
> > >
> > > On 15/03/06, jayjosammorgan@ukonline.co.uk
> > > <jayjosammorgan@ukonline.co.uk> wrote:
> > > > have you tried avg free from grisoft.com is great and free spy bot
> search
> > > and
> > > > destroys good too
> > > >
> > > >
> > > > Quoting simonjhanlon <simonjhanlon@btopenworld.com>:
> > > >
> > > > > I know there are a few PCexperts on the group and was wondering if
> > > anyone
> > > > > could give me advice on how to tackle a virus I have on my PC. I am
> using
> > > an
> > > > > old pc to get on the net. My new PC is pretty messed up. The
> firewall
> > > has
> > > > > been switched off and won't turn back on. The system restore points
> have
> > > all
> > > > > gone, The internet connection has gone and internet explorer won't
> let
> > > me
> > > > > create another connection! Arghhh. When I load a CD, Office 2000
> starts
> > > to
> > > > > install itself whatever CD i insert. I cxan cancel about 6 times and
> it
> > > will
> > > > > let me install from CD but not write to CD. Is there anyway I can
> make
> > > > > another partition and install a new version of windows so I can keep
> my
> > > old
> > > > > files until I find a cure? I am running XP profesional SP2 with full
> > > version
> > > > > of McAfee which detects nothing. I also tried Stinger (no luck) and
> a
> > > few
> > > > > other....Nothing. Any ideas? Help would be much apprecaited. My
> laptop
> > > has it
> > > > > also except on that it has messed up the keyboard so when you type
> your
> > > name
> > > > > and password it come up with wierd letters and hangs
> > > > >
> > > > >
 

Zektor

Active member
vacBacker
Feedback
4 (100%)
Credits
312CR
Re: [uk-vac] OT: Virus help
Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
multi AV program. KAV picked up a few Trojan installers, deleted a few but
one it couldn't delete. I looked for the file in search but it doesn't show.
I will try the programs you mentioned and see what happens.
here is the log report
21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13

Version 3.0 build 135
Last update: 15.03.2006, 182511 records.

Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
Profile defdos32.prf (from 15.03.2006 08:48:34)

a:STNG260.EXE packed: UPX

Current object: a:

Sector Objects : 0 Known viruses : 0
Files : 4 Virus bodies : 0
Folders : 1 Disinfected : 0
Archives : 0 Deleted : 0
Packed : 1 Warnings : 0
Suspicious : 0
Scan speed (Kb/sec) : 0 Corrupted : 0
Scan time : 00:00:04 I/O Errors : 0

c:AD-AWA~1AD-AWARE.EXE packed: ASPack
c:AD-AWA~1MANUAL.CHM archive: CHM
c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
c:AV-CLSMULTI_AV.EXE archive: ZIP
c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
c:AV-CLSUNRAR.EXE packed: UPX
c:AV-CLSUNZIP.EXE packed: Diet
c:AV-CLSUNZIP.EXE packed: Com2Exe
c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
c:DESKTOPCMCOPMAN.DOC archive: Embedded
c:DESKTOPUPDCOM.DOC archive: Embedded
c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
packed: Edit
c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN/WISE0010.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0012.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0017.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0023.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0023.BIN/WISE0010.BIN
archive: Mail
c:DOCUME~1DEFAUL~1TEMPLA~1PWRPNT9.POT archive: Embedded
c:DOCUME~1DEFAUL~1TEMPLA~1WINWORD8.DOC archive: Embedded
c
 

Zektor

Active member
vacBacker
Feedback
4 (100%)
Credits
312CR
Re: [uk-vac] OT: Virus help
Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
multi AV program. KAV picked up a few Trojan installers, deleted a few but
one it couldn't delete. I looked for the file in search but it doesn't show.
I will try the programs you mentioned and see what happens.
here is the log report
21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13

Version 3.0 build 135
Last update: 15.03.2006, 182511 records.

Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
Profile defdos32.prf (from 15.03.2006 08:48:34)

a:STNG260.EXE packed: UPX

Current object: a:

Sector Objects : 0 Known viruses : 0
Files : 4 Virus bodies : 0
Folders : 1 Disinfected : 0
Archives : 0 Deleted : 0
Packed : 1 Warnings : 0
Suspicious : 0
Scan speed (Kb/sec) : 0 Corrupted : 0
Scan time : 00:00:04 I/O Errors : 0

c:AD-AWA~1AD-AWARE.EXE packed: ASPack
c:AD-AWA~1MANUAL.CHM archive: CHM
c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
c:AV-CLSMULTI_AV.EXE archive: ZIP
c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
c:AV-CLSUNRAR.EXE packed: UPX
c:AV-CLSUNZIP.EXE packed: Diet
c:AV-CLSUNZIP.EXE packed: Com2Exe
c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
c:DESKTOPCMCOPMAN.DOC archive: Embedded
c:DESKTOPUPDCOM.DOC archive: Embedded
c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
packed: Edit
c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN/WISE0010.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0012.BIN
archive: Mail
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0017.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0023.BIN
archive: WiseSFX
c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.3-FSETUPR~1.EXE/WISE0023.BIN/WISE0010.BIN
archive: Mail
c:DOCUME~1DEFAUL~1TEMPLA~1PWRPNT9.POT archive: Embedded
c:DOCUME~1DEFAUL~1TEMPLA~1WINWORD8.DOC archive: Embedded
c
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
did you try running avg

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
>
> multi AV program. KAV picked up a few Trojan installers, deleted a few but
> one it couldn't delete. I looked for the file in search but it doesn't show.
>
> I will try the programs you mentioned and see what happens.
> here is the log report
> 21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13
>
>
> Version 3.0 build 135
> Last update: 15.03.2006, 182511 records.
>
> Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
> Profile defdos32.prf (from 15.03.2006 08:48:34)
>
> a:STNG260.EXE packed: UPX
>
> Current object: a:
>
> Sector Objects : 0 Known viruses : 0
> Files : 4 Virus bodies : 0
> Folders : 1 Disinfected : 0
> Archives : 0 Deleted : 0
> Packed : 1 Warnings : 0
> Suspicious : 0
> Scan speed (Kb/sec) : 0 Corrupted : 0
> Scan time : 00:00:04 I/O Errors : 0
>
> c:AD-AWA~1AD-AWARE.EXE packed: ASPack
> c:AD-AWA~1MANUAL.CHM archive: CHM
> c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
> c:AV-CLSMULTI_AV.EXE archive: ZIP
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
> c:AV-CLSUNRAR.EXE packed: UPX
> c:AV-CLSUNZIP.EXE packed: Diet
> c:AV-CLSUNZIP.EXE packed: Com2Exe
> c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
> c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
> c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
> c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
> c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
> c:DESKTOPCMCOPMAN.DOC archive: Embedded
> c:DESKTOPUPDCOM.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
> packed: Edit
> c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
> archive: Mail
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: Virus help
did you try running avg

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
>
> multi AV program. KAV picked up a few Trojan installers, deleted a few but
> one it couldn't delete. I looked for the file in search but it doesn't show.
>
> I will try the programs you mentioned and see what happens.
> here is the log report
> 21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13
>
>
> Version 3.0 build 135
> Last update: 15.03.2006, 182511 records.
>
> Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
> Profile defdos32.prf (from 15.03.2006 08:48:34)
>
> a:STNG260.EXE packed: UPX
>
> Current object: a:
>
> Sector Objects : 0 Known viruses : 0
> Files : 4 Virus bodies : 0
> Folders : 1 Disinfected : 0
> Archives : 0 Deleted : 0
> Packed : 1 Warnings : 0
> Suspicious : 0
> Scan speed (Kb/sec) : 0 Corrupted : 0
> Scan time : 00:00:04 I/O Errors : 0
>
> c:AD-AWA~1AD-AWARE.EXE packed: ASPack
> c:AD-AWA~1MANUAL.CHM archive: CHM
> c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
> c:AV-CLSMULTI_AV.EXE archive: ZIP
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
> c:AV-CLSUNRAR.EXE packed: UPX
> c:AV-CLSUNZIP.EXE packed: Diet
> c:AV-CLSUNZIP.EXE packed: Com2Exe
> c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
> c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
> c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
> c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
> c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
> c:DESKTOPCMCOPMAN.DOC archive: Embedded
> c:DESKTOPUPDCOM.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
> packed: Edit
> c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
> archive: Mail
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
christ, i'm glad i dont pay for my emails by the kb!

On 15/03/06, simonjhanlon <simonjhanlon@btopenworld.com> wrote:
> Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
> multi AV program. KAV picked up a few Trojan installers, deleted a few but
> one it couldn't delete. I looked for the file in search but it doesn't show.
> I will try the programs you mentioned and see what happens.
> here is the log report
> 21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13
>
>
> Version 3.0 build 135
> Last update: 15.03.2006, 182511 records.
>
> Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
> Profile defdos32.prf (from 15.03.2006 08:48:34)
>
> a:STNG260.EXE packed: UPX
>
> Current object: a:
>
> Sector Objects : 0 Known viruses : 0
> Files : 4 Virus bodies : 0
> Folders : 1 Disinfected : 0
> Archives : 0 Deleted : 0
> Packed : 1 Warnings : 0
> Suspicious : 0
> Scan speed (Kb/sec) : 0 Corrupted : 0
> Scan time : 00:00:04 I/O Errors : 0
>
> c:AD-AWA~1AD-AWARE.EXE packed: ASPack
> c:AD-AWA~1MANUAL.CHM archive: CHM
> c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
> c:AV-CLSMULTI_AV.EXE archive: ZIP
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
> c:AV-CLSUNRAR.EXE packed: UPX
> c:AV-CLSUNZIP.EXE packed: Diet
> c:AV-CLSUNZIP.EXE packed: Com2Exe
> c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
> c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
> c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
> c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
> c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
> c:DESKTOPCMCOPMAN.DOC archive: Embedded
> c:DESKTOPUPDCOM.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
> packed: Edit
> c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
> archive: Mail
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME
 

MikeDX

Active member
Credits
15CR
Re: [uk-vac] OT: Virus help
christ, i'm glad i dont pay for my emails by the kb!

On 15/03/06, simonjhanlon <simonjhanlon@btopenworld.com> wrote:
> Thanks guys, I have just finished running KAV, SOPHOS, TREND and MCAFEE on a
> multi AV program. KAV picked up a few Trojan installers, deleted a few but
> one it couldn't delete. I looked for the file in search but it doesn't show.
> I will try the programs you mentioned and see what happens.
> here is the log report
> 21:13 15/03/2006þ AVPDOS32 Start 15-03-2006 19:25:13
>
>
> Version 3.0 build 135
> Last update: 15.03.2006, 182511 records.
>
> Command line: /- /E /* /MD /MP /Y /Z- /W+=ScanReport.txt *:
> Profile defdos32.prf (from 15.03.2006 08:48:34)
>
> a:STNG260.EXE packed: UPX
>
> Current object: a:
>
> Sector Objects : 0 Known viruses : 0
> Files : 4 Virus bodies : 0
> Folders : 1 Disinfected : 0
> Archives : 0 Deleted : 0
> Packed : 1 Warnings : 0
> Suspicious : 0
> Scan speed (Kb/sec) : 0 Corrupted : 0
> Scan time : 00:00:04 I/O Errors : 0
>
> c:AD-AWA~1AD-AWARE.EXE packed: ASPack
> c:AD-AWA~1MANUAL.CHM archive: CHM
> c:AD-AWA~1SKINSAD-AWA~1.ASK archive: ZIP
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/arrow2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bck2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt11.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt12.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt13.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt21.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt22.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt23.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt31.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt32.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt33.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt41.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt42.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt43.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt51.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt52.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt53.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt61.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/bt62.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/checkbox4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/default.skn password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/defbtn3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph2.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph3.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph4.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph5.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph6.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/glyph7.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/main.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/preview.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/sprite1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab1.bmp password protected.
> c:AD-AWA~1SKINSAD-AWA~1.ASK/tab2.bmp password protected.
> c:AV-CLSMULTI_AV.EXE archive: ZIP
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Diet
> c:AV-CLSMULTI_AV.EXE/UNZIP.EXE packed: Com2Exe
> c:AV-CLSUNRAR.EXE packed: UPX
> c:AV-CLSUNZIP.EXE packed: Diet
> c:AV-CLSUNZIP.EXE packed: Com2Exe
> c:AV-CLSSOPHOSESDZ.EXE archive: ZIP
> c:AV-CLSSOPHOSSAV32SFX.EXE archive: ZIP
> c:AV-CLSSOPHOSWEB_IDES.EXE packed: UPX
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RarSFX
> c:AV-CLSSOPHOSWEB_IDES.EXE/data.rar archive: RAR
> c:AV-CLSSOPHOSWEB_IDES.EXE archive: RAR
> c:AV-CLSTRENDSYSCLEAN.COM archive: Embedded EXE
> c:DESKTOPCMCOPMAN.DOC archive: Embedded
> c:DESKTOPUPDCOM.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1APPLIC~1PROPEL~1REMOTEMAPSEVOLUT~1MK-425~1.REM
> packed: Edit
> c:DOCUME~1ALLUSE~1DOCUME~1HOLIDAY.DOC archive: Embedded
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP archive: ZIP
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0012.BIN
> archive: Mail
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0017.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME~1PCDJRE~1.ZIP/setupred53.exe/WISE0023.BIN
> archive: WiseSFX
> c:DOCUME~1ALLUSE~1DOCUME
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: virus help
try updating it when yo down load it to your good machine

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> Just saving avg now, will it be up to date as the infected pc can't access
> the net.
>
>
 

arcadejay

Newbie
Credits
3CR
Re: [uk-vac] OT: virus help
try updating it when yo down load it to your good machine

Quoting simonjhanlon <simonjhanlon@btopenworld.com>:

> Just saving avg now, will it be up to date as the infected pc can't access
> the net.
>
>
 
Top