Neur0tic0
Joined: 03 Dec 2005 |
Posts: 0 |
Location: Spain |
|
 |
Posted: Mon Dec 05, 2005 5:05 pm |
|
 |
 |
 |
 |
First of all I will paste it here, and i will include comments in the report, and questions, using /* and */, like it were C.
--------------------------------------
Scan started: Mon Dec 5 02:29:48 2005
ERROR: Can't open file C:\WINDOWS\system32\config\default
ERROR: Can't open file C:\WINDOWS\system32\config\SAM
ERROR: Can't open file C:\WINDOWS\system32\config\SECURITY
ERROR: Can't open file C:\WINDOWS\system32\config\software
ERROR: Can't open file C:\WINDOWS\system32\config\system
ERROR: Can't open file C:\WINDOWS\system32\drivers\atapi.sys
/*This you told us its a matter of windows protection, everything ok*/
C:\Archivos de programa\Crystal Player\start.exe: Trojan.WinFavorites.Bridge FOUND
/*I think this could be really a troyan in my crystal player, not sure, because it have detected false troyans, youll see them down*/
C:\Documents and Settings\Neurotico\.jpi_cache\jar\1.0\loaderdmitriy.jar-766adaba-557222af.zip: Trojan.Java.ByteVerify FOUND
/*Posibly a troyan too, but in that directory a jar file, could be anything*/
C:\Documents and Settings\Neurotico\Configuraci??n local\Temp\Del381.tmp: Adware.180Solutions-15 FOUND
/*This is really a troyan, without any doubt, delete file, all going well*/
C:\Documents and Settings\Neurotico\Datos de programa\Mozilla\Profiles\default\lg5dlnks.slt\Cache\19E0188Bd01: Trojan.Downloader.Istbar-44 FOUND
/*I use 2 downloading extensions, and fasterfox, a lot of use of the cache, is this really a troyan?*/
C:\Documents and Settings\Neurotico\Datos de programa\Mozilla\Profiles\default\lg5dlnks.slt\Cache\7B283418d01: Trojan.Downloader.JS.IstBar.A-2 FOUND
/*Same as before*/
C:\Documents and Settings\NEUROTIKO\Datos de programa\Sony Ericsson\backups\351965-00-723649-9\Mi P900 2005-03-15 21.07.25.ecs: Suspect.Zip FOUND
/*Nothing suspicious, Its a security copy of a P900 memory*/
C:\juegoslujuria\Rabillo.exe: Joke.Cursor FOUND
/*Well here they are, these are games, not the usuall games, you know, you dont install them, you only play them, I have used a lot of antivirus, and this is the first time they are reported as troyans, and i havent executed them since years, well, I forgot i had them*/
C:\juegoslujuria\Rabillo.zip: Joke.Cursor FOUND
/*Same as before, this is the zip file where the game came, so if it were really a troyan, it would have been a perfect scanning*/
C:\juegoslujuria\Viagra.exe: Joke.ViagRa-2 FOUND
/*Same as before, its not a game, it only makes the mouse cursor, to grow, like it had taken some viagra, funny, not dangerous.
C:\juegoslujuria\Viagra.zip: Joke.ViagRa-2 FOUND
/*Well, same as before*/
C:\WINDOWS\system32\a.exe: Trojan.WinFavorites.Bridge FOUND
/*Bridge again, a.exe?, this really sounds like a troyan, but, system32, is a complicated folder, I think I would delete it, but not really sure*/
C:\WINDOWS\system32\bridge.dll: Trojan.WinFavorites.Bridge FOUND
/*And know a dinamic library, that its called Bridge, like the troyan, what the hell is going on here?*/
-- summary --
Known viruses: 41299
Engine version: 0.87.1
Scanned directories: 9027
Scanned files: 103956
Infected files: 12
Data scanned: 53515.16 MB
Time: 16371.394 sec (272 m 51 s)
-------------------
Completed
------------------
At the end, I dont know if I have a bridge or not, I would like to know your impression of this test, and what would you delete, and take like troyans, and what is not a troyan, I only see one posibble, that bridge, but Its strange, dont know if you understand, but I need help to know if I have to delete them or not, I dont use any of that programs, well the java one I dont know if the JVM is using it, but well, Im a little lost with this report.
Thamks for your reading.
|