PDA

View Full Version : Win32 trojans/worms


dhrandy
04-24-2009, 03:10 AM
I got a computer in yesterday that was infested with the Junk Poly. First I scanned the hard drive in another machine and it had 140 infected files. It seems the Junk Poly attacks the .exe and .sys files. Of course it took out half of the Windows/System 32/ files and I did a system repair.

It seems system repair didn't help too much. Every time I got rid of more infected files, more appeared. It almost had every .exe program files infected. It was real nasty.

I finally gave in (because I would have had to re-install most of the software anyways) and did re-format and re-install. I hadn't seen anything this bad in a while.

The customer said she got the virus after getting an email saying that she needed to update to IE 8 from the email. Funny thing was Norton 360 was installed. The first thing the virus did was disable Norton.

Anyone else had any nice experiences with this one?

dhrandy
04-25-2009, 02:56 PM
No one has had any experience with this? I'm on another clients computer that has the junk poly virus. This thing is pretty nasty.

This thing is so nasty that it jumped from the PC to my thumbdrive and infected my laptop. It didn't matter that I had anti-virus and win-patrol. It got through anyways. So now I'm having to restore my laptop. :confused:

arrow_runner
04-25-2009, 03:16 PM
I finally got a system with the virut virus (similar or same as yours?)

If this thing keeps getting more 'popular', it's going to REALLY suck for us...

dhrandy
04-25-2009, 03:25 PM
Well, the first computer that I had the problem with (posted in the first post) had gotten my usb drive a little, nothing serious. I fixed the usb drive. I guess I should have made a copy of the USB drive before(no big deal). The part that sucks is that I have to figure out how to format my usb drive without infecting another machine.

Just thought of something. I guess I could reformat my thumbdrive on the infected computer. :eek:

arrow_runner
04-25-2009, 04:41 PM
Got a Linux or a Windows boot cd?

nutrafrag
05-11-2009, 04:48 PM
I had many similar problems before getting Cyberdefender. It's awesome and anyone looking into anti-virus software I suggest checking into this as it was truly the answer to my problems.

evilfantasy
05-11-2009, 09:29 PM
I had many similar problems before getting Cyberdefender. It's awesome and anyone looking into anti-virus software I suggest checking into this as it was truly the answer to my problems.

That sounds just like an advertisement, and sorry for being blunt but Cyberdefender sucks! If you are going to pay then get Kaspersky, Nod32 or BitDefender. Cyberdefender is no better than a full blown rouge!

@ dhrandy - Junk Poly is another name for Virut. Do a full reformat and reinstall. Don't back up anything that can be replaced as Virut infects ALL system files and can not be cleaned. Fully scan any backed up documents before putting them back on a machine, Virut spreads through EVERYTHING so it should not be assumed that any file is safe.

More information. Under the Hood: Virut (http://www.teamfurry.com/wordpress/2007/02/15/under-the-hood-virut/) and Virut and other File infectors - Throwing in the Towel? (http://miekiemoes.blogspot.com/2009/02/virut-and-other-file-infectors-throwing.html)

l337
05-12-2009, 04:59 AM
virut got me and owned me a few months ago 2 Full Reinstalls of my work pc cause i was careless with usb drives :S

nutrafrag
05-13-2009, 04:22 AM
That sounds just like an advertisement, and sorry for being blunt but Cyberdefender sucks! If you are going to pay then get Kaspersky, Nod32 or BitDefender. Cyberdefender is no better than a full blown rouge!

Well, I have been happy with it. I don't understand what you mean by full blown rouge?

I have had the software for about 6 months. I know it has caught some infections, and I once call ed the computer help line for what turned out to be a printer driver problem, which they were very helpful for.

So for me, my experience is positive, it does what I paid for it to do - stop virus problems - which it has. At least for me.