Results 1 to 5 of 5
  1. #1
    Experienced User
    Overall activity: 0%

    Join Date
    Apr 2009
    Location
    6°50'55" N - 72°53'3" E
    Posts
    386
    Liked
    1 times
    Points
    7,245

    Bug KIS 2010 virus detection.

    Couple of days back I have upgraded my PC from McAfee Total Protection to KIS 2010 and experiencing PC performance bit slow and KIS identified virus & adware sitting on my PC under system volume information folder. I am unable find any info related to these virus files. Can anyone help me to confirm whether it is genuine virus or KIS is blocking this stuff unnecessarily.

    =================================================
    26/06/2009 20:39:59 Deleted adware not-a-virus:AdWare.Win32.AdBar.l C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092123.exe
    26/06/2009 20:39:59 Deleted adware not-a-virus:AdWare.Win32.AdBar.l C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092123.exe//ASPack
    26/06/2009 20:40:22 Deleted adware not-a-virus:AdWare.Win32.WebSearch.by C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092162.exe
    26/06/2009 20:40:22 Deleted adware not-a-virus:AdWare.Win32.WebSearch.by C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092162.exe//WiseSFXDropper
    26/06/2009 20:40:22 Deleted adware not-a-virus:AdWare.Win32.WebSearch.by C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092162.exe//WiseSFXDropper//WISE0018.BIN
    26/06/2009 20:40:31 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092392.exe
    26/06/2009 20:40:31 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092392.exe//PE_Patch.UPX
    26/06/2009 20:40:31 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092392.exe//PE_Patch.UPX//UPX
    26/06/2009 20:40:31 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092392.exe//PE_Patch.UPX//UPX//0001\F7\pbot.exe
    26/06/2009 20:40:36 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092395.exe
    26/06/2009 20:40:36 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092395.exe//PE_Patch.UPX
    26/06/2009 20:40:36 Deleted auto-dialer not-a-virus:Porn-Tool.Win32.PornBot C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP342\A0092395.exe//PE_Patch.UPX//UPX
    26/06/2009 20:58:35 Deleted virus Worm.Win32.AutoTDSS.akb C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP350\A0095481.exe
    26/06/2009 20:58:35 Deleted virus Worm.Win32.AutoTDSS.akb C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP350\A0095481.exe//data0002
    26/06/2009 20:58:37 Deleted virus Worm.Win32.AutoTDSS.akb C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP350\A0095482.exe
    26/06/2009 20:58:37 Deleted virus Worm.Win32.AutoTDSS.akb C:\System Volume Information\_restore{6D05FAB2-7A62-4A96-A638-2F0B6A273527}\RP350\A0095482.exe//data0002
    Status: Detected (events: 2)
    26/06/2009 22:44:10 Detected network attack Intrusion.Win.MSSQL.worm.Helkern 59.80.95.35
    27/06/2009 11:43:32 Detected legal software that can be used by criminals for damaging your computer or personal data PDM.Keylogger C:\PROGRAM FILES\HP\QUICKPLAY\QP.EXE

    =================================================

    Thanks
    Raju

  2. #2
    Experienced User
    Overall activity: 0%

    Join Date
    Jan 2009
    Posts
    246
    Liked
    0 times
    Points
    9,581
    hi.......turn off windows system restore and scan again with kis......also for a second opinion scan with mbam free.......update mbam before scanning

  3. #3
    Experienced User
    Overall activity: 0%

    Join Date
    Mar 2009
    Location
    Pearl Of The Orient Seas (Perlas ng Silanganan)
    Posts
    1,127
    Liked
    0 times
    Points
    8,875
    pardon me if i'm wrong but if you have been browsing adult content sites you're bound to pick those up. most are only adware, dialers, keylogger and some few worms. try to do a scan with malwarebytes and hijack this log would be nice
    "If at first you don't succeed, try, try again. Then quit. There's no use being a damn fool about it." -- WC Fields

  4. #4
    *nix Technical Support
    Overall activity: 35.0%

    Join Date
    Jan 2009
    Location
    /home/hellnoire
    Posts
    9,845
    Liked
    319 times
    Points
    26,077
    Well, rnbv, if you have WoT, you don't need to worry about that stuff from the adult sites.

    So I've been told by my perverted/horny friends.

    Yet I'm over at their houses once in a while because they got infected with something.

    Go figure, eh?
    pacman -Syyu life not found in sync db

  5. #5
    Experienced User
    Overall activity: 0%

    Join Date
    Mar 2009
    Location
    Pearl Of The Orient Seas (Perlas ng Silanganan)
    Posts
    1,127
    Liked
    0 times
    Points
    8,875
    haha same with me here hellnoire. my friends' pc's are all infected and their homepages keep changing. however better than WoT is not accesing them at all. or just buying cds lol

 

 

Similar Threads

  1. Replies: 213
    Last Post: 12-07-2010, 01:40 PM
  2. Replies: 6
    Last Post: 10-21-2010, 03:34 AM
  3. Replies: 8
    Last Post: 08-18-2010, 02:54 AM
  4. Which anti-virus engines using TrustPort Antivirus 2010?
    By osmandemi in forum General Forum
    Replies: 6
    Last Post: 02-19-2010, 01:17 PM
  5. Replies: 55
    Last Post: 10-19-2009, 07:08 PM
All times are GMT +8. The time now is 09:38 AM.