PDA

View Full Version : Help? Virus?



craic
08-07-2004, 10:35 AM
Just now came across a strange file/symbol in my desktop. Thinking that it must be from a Cirque Du Soleil site I had just registered with, I tried to open it for a look. "Windows cannot open this file need to know the programme etc" came up on the screen. Deleted the file. Anyoneknow if this is the dreaded virus/worm or whatever that has just hit the airwaves?

Tinker
08-07-2004, 11:20 AM
Hard to know from your description craic. If I was you I would definitely run your virus detector now though.
I now use AVG which is free and which delected a virus which Norton anti-virus didn't some months ago.

cheers

madmike
08-07-2004, 11:25 AM
i run zonealarm which tells me each time a program wants to use the net. last night it asked me if i would let norton antivirus to use the net as a server!!!! ran adware and found a bug which i deleted. I always unplug my modem if i'm not using the net...could save a big phone bill!!!

Risk
08-07-2004, 11:37 AM
its unlikely to be a virus, as they dont usually install a new icon on your desktop. (they prefer to do their damage behind the scenes)

Its probably just a new type of file that your computer has not encountered before...deleting the file or shortcut like you did may stop the error message coming up.

warrico
08-07-2004, 12:10 PM
Had a similar problem last week an icon appeared and kept reappearing after it was deleted,when the computer was rebooted,ended up finding a spieware file now running McAfee security system which was recommended as a better option to the Norton system I had.

isack
08-07-2004, 06:38 PM
Always use Ad-Aware to do a scan, there are more spywares/adwares than viruses these days.

coge
08-07-2004, 08:40 PM
AVG, spybot & ad-aware. Update them regularly, & do the microsoft upgrades.

Especially if you're using XP.

craic
08-07-2004, 09:47 PM
Sorry folks. seems likely that my firewall met my McAfee spam filter and Xtra's virus programme and they scared the tar out of each other. Couldnt move log out or shut down. Cut the power and went back to System Restore and all is well. Wil still check my bank accounts hourly for the next week or so.

Bundy
08-07-2004, 10:17 PM
Always run a firewall when you are on line.

Zone Alarm is great, and its free. Helps stop the nasties getting in, and certainly shows up if anything unusual is trying to get out (many virus or worms will often try to contact their host site to upload further files or scripts, and/or propergate).

You wouldn't go out and leave your doors or windows open, yet many people don't bother to protect their PC while on line.

Better to keep them out rather than deal with them once they get in.

Check out Shields Up at https://grc.com/x/ne.dll?bh0bkyd2

Click on proceed, and try some of the tests eg common ports, file sharing etc to see how exposed your PC is...

craic
09-07-2004, 10:27 AM
Yes I have zone alarm and while on the subject. How in hell do you interpret the information that comes on screen when ZA asks if you want to let some programme through? Some are clearly related to something I have been doing like booking airline tickets but I got one this morning that made the Dead Sea Scrolls look like a three-year-olds version of the Cat and The Hat. I said "no" and nothing fell off my PC.

huds
09-07-2004, 10:42 AM
Ad-aware & antivirus software are good, but not full proof. If you suspect you have something on your system that shouldn't be have a look in task manager. (right click on your taskbar) Then verify all processes running. If you are unsure of something, google it.
To go one step further you could download this http://www.neuber.com/taskmanager/ It actually shows all applications, processes running on your computer. Even the ones hidden from task manager. From there it will give you a security risk rating, tell you whether its Microsoft signed, open any text in the file. If you find something suspicious, quarantine first and try google to find out what it is.

Bundy
09-07-2004, 09:01 PM
Craic, does ZA say if its in or outgoing.

If its outgoing, then you may have a problem.

Huds is right, if its new or unusual, ask the question why?

If you are unsure, then try and disable or remove with your favorite software of choice.