Possible virus in System Volume Information



Hello,

About a month ago i got affected with "EXP/HS05-013" <-- ANTIVIR
Located in Temporary Internet Files/content.ie5/vklse 64k/search[1].htm
Website is "crackspider.net"
Now i have formatted and reinstalled windows about 15 times but i'm still
leaking mb's, Messenger keeps turning itself on,
Norton keeps giving "Automatic Rules" for MS Generetic Host Process for
Win32 Server <-- 5-10 popups very rapidly
I also got some Norton Warnings for blokking a Trojan Horse called "BLA"
IP: 81.164.40.115:1042
IP: 84.195.124.142:1042
IP: 81.164.40.89:1042

In Norton LOGBOOK / Firewall settings i find:
Portblokking allows NetBios has changed (15-20 lines in 1 minute)

Because i have formatted the drive and still am affected with something i
wonder if there's a hidden map on the drive that doesn't get cleaned after
formatting ??
I've done another AV-CLS scan with Sopos:
LOG
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP74\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP75\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP76\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP77\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP78\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP79\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP80\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP81\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP82\snapshot\ComDb.Dat (corrupt)
Could not check c:\System Volume
Information\_restore{A1730D64-A90E-42AB-8C97-82C0056C9199}\RP83\snapshot\ComDb.Dat (corrupt)

Is there a chanse that this folder containes a virus and if yes how do i
clean this folder or make it visible??

thnx in advance
omi
.



Relevant Pages

  • Re: message hiding in folder!
    ... message was invisible in the outbox but not in the sent box. ... Re turning off Norton, i feel uncomfortable turning this off because of the ... >> has not gone to the Norton antivirus folder. ...
    (microsoft.public.windows.inetexplorer.ie6_outlookexpress)
  • Re: Networked computer cannot be seen by other computers
    ... I have tried to setup the computer on the network again. ... >on and turning of the firewall, ... >there is something I missed when Norton crashed. ... Check Event Viewer when trying to Start the Server service manually. ...
    (microsoft.public.windowsxp.network_web)
  • Computer shuts down when running scans
    ... My computer has been turning off completely whenever I try to run my Norton ... Antivirus or Adaware scans. ...
    (microsoft.public.windowsxp.general)
  • download.trojan
    ... winxp is infected with download.trojan detected by norton ... turning off system restore and removing it in safe mode ...
    (microsoft.public.windowsxp.security_admin)
  • Re: E-mails not showing up
    ... > Some ISPs protect customers using Norton to scan incoming mail so just ... > turning off the copy of Norton on the machine may not eliminate your ... have a negative impact on the operation of the local machine. ...
    (microsoft.public.windows.inetexplorer.ie6_outlookexpress)