Re: win32malum virus



From: "needhelp" <needhelp@xxxxxxxxxxxxxxxxxxxxxxxxx>

| Thanks! socks8b is deleted (though I couldn't find the backup in killbill so
| couldn't submit to virus total.
|
| But the virus isn't gone!!!! It has now infected a00085583.exe located:
| systemvolumeinformation. I can't even find these files (conducted a file
| search). You've been so helpful -- how can I find this file to delete?
|

If I understand you correctrly, this is the WinXP System Restore cache. You can either
leave it there an d it will eventually Cache Out or you can disable the System Restore
cache, reboot the PC and then re-enable the System Restore cache which will purge the System
Restore cache of this file. If you do purge the System FRestore cache, after you re-anble
the cache you should set a new Restore Point.

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm


.



Relevant Pages

  • Re: Trojan.Dropper.Funweb.A
    ... Bud Z: ... First dump the contents of the IE cache.. ... If you are using WinME or WinXP, disable System Restore ...
    (microsoft.public.security.virus)
  • Re: Recover IE 7.0 websites visited?
    ... sites, cache, etc., and SWEARS he hasn't been hanging out at these ... Also - System Restore restores system files - it would have no effect on the ...
    (microsoft.public.windowsxp.general)
  • Downloads Stop At 99%
    ... Hi, I have tried everything, defragged, system restore, disabled my firewall, ... cleared out my cache, ... ran a symantec virus scan, ...
    (microsoft.public.windowsxp.help_and_support)
  • Re: Lost Part of Control Panel - Pls Help
    ... I wonder if its referring to the Temporary Internet Folders cache; ... I forgot - did you ever try a System Restore, ... first significantly sized hail I can recall, or my father, and he is ...
    (microsoft.public.windowsxp.general)
  • Re: Removing Infected Files
    ... Does disabling System Restore do that? ... My recycle bin was empty ... Re-enable the System Restore cache. ...
    (alt.comp.anti-virus)

Loading