Computing.Net > Forums > Security and Virus > what is this

what is this

Reply to Message Icon

Original Message
Name: _brandon_
Date: December 15, 2002 at 07:44:19 Pacific
Subject: what is this
OS: Windows ME
CPU/Ram: Pentium 4, Ram: don't kno
Comment:

i reinstalled windows a couple months ago, and ever since then, i hardly went on my computer. Today i checked my computer, and in the windows/system folder, there is a folder called "catroot". It has a couple other folders in it one is: {127D0A1D-4EF2-11D1-8608-00C04FC295EE}
and the other: {F750E6C3-38EE-11D1-85E5-00C04FC295EE}. and it has the files: sysmat.cbd and sysmat.cbk. What is this folder? is it a virus? please help me.


Report Offensive Message For Removal

Response Number 1
Name: capt
Date: December 15, 2002 at 11:28:37 Pacific
Subject: what is this
Reply: (edit)

What does your antivirus scan report say?


Report Offensive Follow Up For Removal

Response Number 2
Name: capt
Date: December 15, 2002 at 11:36:29 Pacific
Subject: what is this
Reply: (edit)

Brandon, for catroot files it could be a trojan called BACKDOOR.IRC FLOOD. Just about any updated antivirus program would detect/remove it, so I am only guessing, since your antiviirus program did not detect it. What firewall do you use?


Report Offensive Follow Up For Removal

Response Number 3
Name: _brandon_
Date: December 16, 2002 at 04:59:07 Pacific
Subject: what is this
Reply: (edit)

I'm using Norton Antivirus with fully updated virus definitions by the way, and it didn't detect a thing. I checked the symantec website, and my computer didn't contain any of the values that it stated. And I'm currently using the zone alarm plus 30 day trial. I checked my zone alarm, and it said that it blocked 9 access atempts. most were from updating programs such as live update for norton, but some of the rest was from some guy in sweeden or something. What should i do?


Report Offensive Follow Up For Removal

Response Number 4
Name: _brandon_
Date: December 18, 2002 at 08:28:01 Pacific
Subject: what is this
Reply: (edit)

more help anyone please?


Report Offensive Follow Up For Removal

Response Number 5
Name: coolmNet4u
Date: December 27, 2002 at 16:07:32 Pacific
Subject: what is this
Reply: (edit)

on my windows 98se machine norton scanned that file and it never told me that it was a virus


Report Offensive Follow Up For Removal







Use following form to reply to current message:

   Name: From My Computing.Net Settings
 E-Mail: From My Computing.Net Settings

Subject: what is this 

Comments:

 


  Homepage URL (*): 
Homepage Title (*): 
         Image URL: 
 
Data Recovery Software