Computing.Net > Forums > Security and Virus > Good or bad?

Computing.Net: Over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to sign up now, it's free!

Good or bad?

Reply to Message Icon

Original Message
Name: Dyspeptic Spirit
Date: March 24, 2007 at 13:04:15 Pacific
Subject: Good or bad?
OS: Win XP
CPU/Ram: 3.2/1024
Model/Manufacturer: AMD
Comment:

Whenever I boot up I get a message from my firewall asking me if I want to allow iexplore.exe and one other exe file to access the internet. I know that these can in certain circumstances be connected to a virus. So far I have denied them access. How do I tell if it is OK to allow access to thee programs.


Report Offensive Message For Removal


Response Number 1
Name: XpUser
Date: March 24, 2007 at 13:45:04 Pacific
Reply: (edit)

For iexplorer.exe THIS may help warn you.

and one other exe file to access the internet

I havbe no clue what you are asking.


i_XpUser


Report Offensive Follow Up For Removal

Response Number 2
Name: Dyspeptic Spirit
Date: March 24, 2007 at 18:03:25 Pacific
Reply: (edit)

Oooooh. Malware found. Thanks for the response. Prevx1 did the job.


Report Offensive Follow Up For Removal

Response Number 3
Name: Derek
Date: March 24, 2007 at 20:18:18 Pacific
Reply: (edit)

For future reference:

explorer.exe is Windows Explorer

iexplore.exe is Internet Explorer

iexplorer.exe is a Virus

So it pays to be quite exact about these files. You struck lucky because XpUser guessed you might be meaning iexplorer.exe rather than iexplore.exe

DerekW


Report Offensive Follow Up For Removal

Response Number 4
Name: Dyspeptic Spirit
Date: March 25, 2007 at 05:12:33 Pacific
Reply: (edit)

I don't think you are right about that. To quote Prevx1:

iexplore.exe 67kb jailed malware location c:\windows/system32

Trojans lurk in unexpected places!


Report Offensive Follow Up For Removal

Response Number 5
Name: Derek
Date: March 25, 2007 at 09:51:49 Pacific
Reply: (edit)

Dyspeptic Spirit

No, #3 is perfectly correct but only a summary not a thesis.

The name of "any" valid system file can be picked up and used as malware/trojan if it is placed in some other location, so it would it would have been foolish of me to deem all system file names as "nasties" when summarizing the general situation. To do so would lead to folk wrecking their machines.

This "file name stealing" is usually intentional in order to fool those who lack detailed knowledge. It is therefore worth folk making themselves aware of as many of the correct locations as possible. Google usually helps define good or bad locations.

DerekW


Report Offensive Follow Up For Removal







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home








Do you have your own blog?

Yes
No
I did before
I will soon


View Results

Poll Finishes In 5 Days.
Discuss in The Lounge
Poll History




Data Recovery Software