Welcome to SecurityForumz.com!
FAQFAQ      ProfileProfile    Private MessagesPrivate Messages   Log inLog in

redlof virus -- F-PROT cannot disinfect?

 
   Security Forums (Home) -> F-PROT RSS
Next:  fprot for linux, netsky in virlist missing  
Author Message
randy

External


Since: Mar 23, 2004
Posts: 1



(Msg. 1) Posted: Tue Mar 23, 2004 1:33 pm
Post subject: redlof virus -- F-PROT cannot disinfect?
Archived from groups: alt>comp>virus (more info?)

I downloaded the f-prot trial version onto my winxp home version
computer. It came up with a temporary internet file CANEW33H.HTM
which is supposed to be in the temporary internet
files\content.IE5\WPSN07M9 directory, and said it was infected with
the redlof virus, which F-prot says it cannot yet disinfect this
virus.

But I cannot even find the content.IE5/WPSN07M9 directory folder! And
a search the parent directory does not show the CANEW33H.HTM file, and
even when I turn on the "show hidden files" feature, nothing shows up.

What should I do?



-------------
Randy

 >> Stay informed about: redlof virus -- F-PROT cannot disinfect? 
Back to top
Login to vote
"cquirke

External


Since: Jan 22, 2004
Posts: 132



(Msg. 2) Posted: Wed Mar 24, 2004 11:46 pm
Post subject: Re: redlof virus -- F-PROT cannot disinfect? [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

On Tue, 23 Mar 2004 13:33:25 -0600, randy <cryoOfan DeleteThis @mylinuxisp.com>
wrote:

>I downloaded the f-prot trial version onto my winxp home version
>computer. It came up with a temporary internet file CANEW33H.HTM
>which is supposed to be in the temporary internet
>files\content.IE5\WPSN07M9 directory, and said it was infected with
>the redlof virus, which F-prot says it cannot yet disinfect this
>virus.

If you read up on Redlof, you'll see it's safe to deactivate by
renaming away. So instead of asking F-Prot for DOS to disinfect, ask
it to auto-rename. As usual, save the result as a log file.

>But I cannot even find the content.IE5/WPSN07M9 directory folder!

It's hidden; Windows won't show it to you. Just about any DOS file
manager will show it to you via DOS mode, tho.

>a search the parent directory does not show the CANEW33H.HTM file, and
>even when I turn on the "show hidden files" feature, nothing shows up.

See above. Don't try and do this inside Windows, and turn off the
wretched "View As Web Page" junk (which is what Redlof uses)

>What should I do?

Formal virus check, rename away what it can't clean, always save logs.

Also, read up what's detected in www.f-secure.com/v-descs or similar.



>-------------------- ----- ---- --- -- - - - -
Running Windows-based av to kill active malware is like striking
a match to see if what you are standing in is water or petrol.
>-------------------- ----- ---- --- -- - - - -

 >> Stay informed about: redlof virus -- F-PROT cannot disinfect? 
Back to top
Login to vote
Display posts from previous:   
Related Topics:
Run F-PROT for DOS from CD? - Can..
   Security Forums (Home) -> F-PROT All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



[ Contact us | Terms of Service/Privacy Policy ]