wisely
Joined: 14 Aug 2008 |
Posts: 0 |
Location: Asia |
|
 |
Posted: Thu Aug 21, 2008 2:02 pm |
|
 |
 |
 |
 |
There is a dangerous virus/worm on the loose in my office. Both Symantec and Clamwin cannot detect anything.
The virus corrupted the registry so when the user reboot their PC. They will encountered a Blue screen of death.
Trying to restore using Windows CD failed so we install the hard disk as a scondary hard disk on another PC and copy the excel and words files to another hard disk. Then we reformat the infected PC.
The virus infect my PC today and tried to modify the windows registry but spybot teatimer block all the attempts.
My PC is safe for now. But it is very annoying to know that there is a virus on your PC that you cannot find and remove.
Does anyone encounter this virus before ?
|
|
wisely
Joined: 14 Aug 2008 |
Posts: 0 |
Location: Asia |
|
 |
Posted: Sat Aug 23, 2008 4:40 am |
|
 |
 |
 |
 |
I have use HiJackThis to scan my PC and cannot find any suspicious programs.
I suspect that Symantec may be responsible for causing the BSOD ( blue screen of death ).
The BSOD have start to appear in my company after 8th Aug 2008.
The BSOD also appear in Beijing Olympics
https://www.p2pnet.net/story/16702
So I suspect that these incidents may be related.
Those users in my company, who experiences BSOD, encountered a message from Symantec AV requesting a reboot to clean Backdoor.Trojan. After reboot, they encountered BSOD.
There are too much coincidents.
|
|
Theoracle117
Joined: 18 Sep 2008 |
Posts: 0 |
Location: san diego |
|
 |
Posted: Fri Sep 19, 2008 11:34 pm |
|
 |
 |
 |
 |
can you identify what the virus is? what typE?
give us the name of the trojan. If all else fails get THreatfire.( it has a limited ability to scan though but will resopnd when a virus is activated.
|
|
wisely
Joined: 14 Aug 2008 |
Posts: 0 |
Location: Asia |
|
 |
Posted: Sat Sep 20, 2008 4:48 am |
|
 |
 |
 |
 |
The problem may be due to a bug in Symantec Anti-virus and not due to a Trojan.
That is why clamwin cannot detect anything. Sorry for the misinformation.
see links
https://forums.symantec.com/syment/board/message?board.id=endpoint_protection11&message.id=15077&query.id=169884#M15077
https://www.computerworld.com/action/article.do?articleId=9094578&command=viewArticleBasic
I have removed Symantec from my company's PC and replace with another anti-virus program.
I am using clamwin portable anti-virus as a secondary defend.
|
|