![]() |
![]() | *Warning* for everyone | ![]() |
![]() |
![]() | ![]() |
Toxteth O'Grady
![]() |
![]() |
So, this "infection" occurred while browsing? Once again proof that you can't do without an on-access scanner. On-demand is just not enough for situations like these.
It would have been interesting to see the result of a virus scan before that system restore. Just to see the number of infected items and whether ClamWin would have able to get rid of the infection altogether. Anyway, glad you got things under control again. ![]() And again I'm amazed by the time it takes to do a full system scan win this AV. Over 8 hours is just ridiculous. I have only installed it a few days ago and have no experience with it myself, but from what I read in this forum these scans can take many hours. Is the ClamAV engine that slow or do you guys all have huge hard drives filled with illegal p2p material? ![]() But seriously, does someone know, is ClamAV really that slow? |
|||||||||||
|
![]() |
![]() | Trojan MediaobjectSetup.595.exe and Scan Time | ![]() |
GuitarBob
![]() |
![]() |
Yes, it does seem that malware is getting harder to get rid of once you get it--another sign that they it is done for money now instead of notoriety. If you do a System Restore while malware is on your computer, the Restore point will include the malware--so watch that too.
The free AntiVir Personal Edition Classic antivirus program from Avira (Germany) is a good compliment to ClamWin. Let it take care of resident scanning, and it will also give you a second opinion on ClamWin scanned files. Scan time for ClamWin depends upon your operating system, the number of files, and what else is running alongside the scan. Some help on scan time: 1)Filter ClamWin to scan only for "dangerous file extensions." Google for that topic to find them. 2) Break up a total scan into smaller components and schedule each component separately. 3)Exit other CPU-intensive programs that are running alongside ClamWin. 4)Support ClamWin so the team will be able to work on scan optimization at some point. Regards, |
|||||||||||
|
![]() |
![]() | MediaobjectSetup.595.exe | ![]() |
GuitarBob
![]() |
![]() |
I did a search for that name in the ClamAV signature database and didn't find anything. I also searched for it on Google and two more search engines without any luck. How did you get that name? Sounds like you got some adware.
Regards, |
|||||||||||
|
![]() |
![]() | ![]() |
drgoa.r
![]() |
![]() |
OT:
THIS for sure will increase dramatically scan speed. Tested with my setup here. In one of my HDDs I have more than 200GB of Reason Refills (compressed closed file format, files contains only WAVs and etc. non-dangerous objects). Clamscan tryes to uncompress them, making temporary files, etc... Scanning of those 200GBs can take weeks. When I excluded them from the scan - it finishes in 30 minutes. So, exclude such files, audios, movies, image files of DVDs (when you know what is on them already). |
|||||||||||||
|
![]() |
![]() | ![]() |
sherpya
![]() |
![]() |
@drgoa.r
I'm working on a per filetype based exclusion (not fileext ![]() |
|||||||||||
|
![]() |
![]() | File Type Exclusion | ![]() |
GuitarBob
![]() |
![]() |
Sounds good. BTW, what do you think about speeding up scans by inserting a "cookie" in each directory for the date last scanned by ClamWin? Future scans could check file date(s) against the cookie to see if any files have been changed, and bypass scanning them if the file date hasn't changed. A "smart" virus might change the dates, but this would be a good option to use for "intelligent" scanning when ClamWin goes resident. Hopefully the cookie dates would be more reliable then if the resident scanner caught any changes by a virus.
Regards, |
|||||||||||
|
![]() |
![]() | ![]() |
drgoa.r
![]() |
![]() |
@sherpya
it is always good to hear that you are working on something... good luck:) and you have my sword! (for testing purposes only!) ![]() |
|||||||||||
|
![]() |
![]() | ![]() |
sherpya
![]() |
![]() |
@GuitarBob
we cannot rely on file/dir modification, for this reason we'll have a checksum based cache in the v1 @drgoa.r I'll post info and files on beta forum when I'll back (2-3 jan) you already are in the beta testing group? |
|||||||||||
|
![]() |
![]() | V 1.0 Checksums | ![]() |
GuitarBob
![]() |
![]() |
Sounds like V 1.0 is going to be a very competitive AV software! I'm sure we're all looking forward to it.
Enjoy your time off. Regards, |
|||||||||||
|
![]() |
![]() | ![]() |
chaos31
![]() |
![]() |
Oh ya sorry I didnt re-read this.
I got it from a active x download...I was trying watch a movie trailer...I don't even remember which one. So says you most have the latest so and so and to get it download it through active x...sadly I hadn't slept in 2 days so I was not being very careful so I clicked the thing in toolbar and lcicked download active x. The trailer thne played but then I noticed some new toolbar that could not be removed, new programs slowly appearingo n the desktop and the little balloon poping up in toolbar telling me to click here for great virus protection to get rid of the trojan. Usually I'm smarter than this lol. ALSO is left some nasty spyware I found out yesterday, ran my weekly spyware check and it did leave the 1 spyware that brings that balloon up in toolbar telling you to lcick here cause you have a trojan...so I'm assuming it had some pretty fun spyware in it also lol... David |
|||||||||||
|
![]() |
![]() | ![]() |
sherpya
![]() |
![]() |
you shouldn't use at all internet explorer
![]() and check hide microsoft entries in the options menu then you can see/remove bho startup entries, services etc https://www.microsoft.com/technet/sysinternals/utilities/autoruns.mspx https://www.microsoft.com/technet/sysinternals/utilities/autoruns.mspx |
|||||||||||
|
![]() |
![]() | *Warning* for everyone | ![]() |
|
||
![]() |
![]() |
Powered by phpBB © phpBB Group
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.
Design by phpBBStyles.com | Styles Database.
Content © ClamWin Free Antivirus GNU GPL Free Software Open Source Virus Scanner. Free Windows Antivirus. Stay Virus Free with Free Software.