Computing.Net > Forums > Security and Virus > Lurking Nasties - Round 2

Computing.Net: Over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to sign up now, it's free!

Lurking Nasties - Round 2

Reply to Message Icon

Original Message
Name: soeastbiker
Date: May 4, 2007 at 15:05:43 Pacific
Subject: Lurking Nasties - Round 2
OS: Windows XP
CPU/Ram: 2.39 GHz/ 1GB Ram
Manufacturer/Model: DELL DIMENSION 4600
Comment:

I'm back again jabuck and Team!

I ran AVG Anti-Spyware this afternoon and it spewed out this little nasty bit of info:

1 object found (2 Traces) Dropper.Agent.bhc

AVG said: This malicious software combines a harmless program with harmful software such as a backdoor.
The bundled harmful part,e.g. the backdoor, will be installed and run without the user's knowledge.

2 Traces detected in the following locations:

C:\QooBox\Quarantine\C\WINDOWS\SYSTEM32\WinFlyer32.dll.vir

C:\System Volume Information\_restore{B37680B2-BAOA-4E5D-BF30-83E44C588624}\RP937\AO200293.dll

Set all elements to: Quarantine
I clicked, Apply all actions


Report Offensive Message For Removal


Response Number 1
Name: Abnormal
Date: May 4, 2007 at 15:30:33 Pacific
Reply:

Looks like you forgot a folder to delete.
C:\QooBox
http://computing.net/security/wwwbo...
and flush system restore.
http://safecomputing.umn.edu/guides...


Report Offensive Follow Up For Removal

Response Number 2
Name: soeastbiker
Date: May 4, 2007 at 15:43:33 Pacific
Reply:

Okie Dokie, C:\QooBox is deleted and System restore has been flushed.

Should I delete all Quarantined High Risk folders in AVG?


Report Offensive Follow Up For Removal

Response Number 3
Name: Abnormal
Date: May 4, 2007 at 15:45:27 Pacific
Reply:

Yes, you had one hell of mess there.


Report Offensive Follow Up For Removal

Response Number 4
Name: soeastbiker
Date: May 4, 2007 at 15:47:23 Pacific
Reply:

All AVG Quaratined High Risk Files are dust in da wind!


Report Offensive Follow Up For Removal

Response Number 5
Name: Abnormal
Date: May 4, 2007 at 15:56:27 Pacific
Reply:

Take care and stay safe.
Prevent_Re-infection


Report Offensive Follow Up For Removal







Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home



Results for: Lurking Nasties - Round 2

Lurking Nasties
    Summary: Recently I downloaded what I thought to be CoffeeCup Jukebox software from LimeWire. Yes, I am finished using LimeWire for programs I scanned the folder with McAfee - it said it was clean. I should ha...
www.computing.net/answers/security/lurking-nasties/20794.html

Received this? Can anyone identify?
    Summary: Please find below a copy of the mail properties, the return path/sender differ between the one I got at home and the one I got at work. The time difference between the two are about 5 mins? The only ...
www.computing.net/answers/security/received-this-can-anyone-identify/5355.html

HijackThis log results help please!
    Summary: well, here are my results: Scanned files: 43364 Scanned directories: 2602 Scanned archives: 1118 Size of the scanned files: 2086680618 Packed files: 559 Known viruses found: 13 Virus bodies: ...
www.computing.net/answers/security/hijackthis-log-results-help-please/5660.html








Which MP3 player do you have?

iPod/iPhone
Zune
Something Else
None


View Results

Poll Finishes Today.
Discuss in The Lounge
Poll History






Data Recovery Software