+ Reply to Thread
Results 1 to 9 of 9

Thread: Possible Virus

  1. #1
    Senior Member michaeln's Avatar
    Join Date
    Jan 2002
    Location
    Ireland
    Posts
    619

    Possible Virus

    On one of my systems I have 41 occurrences of this file _3_'__.eml ((underscore 3 underscore apostrophie underscore underscore.eml (the 3 is the symboy to the power of 3 and not the number 3))

    My Virus Checker (AVG) does not recognise them as a virus. I cannot read or delete these files in Win98SE. I don't know where they came from. They show a size of 83K. If I check their properties the date Created, date Accessed and date Modified are shown as Unknown.

    Any ideas?

  2. #2
    Ultimate Member muchmark's Avatar
    Join Date
    Jul 2001
    Location
    Toronto, Canada
    Posts
    1,467
    You can do a virus scan online here.

  3. #3
    Senior Member michaeln's Avatar
    Join Date
    Jan 2002
    Location
    Ireland
    Posts
    619
    Originally posted by muchmark
    You can do a virus scan online here.
    Thanx! Just did that now. No virus detected. I still can't explain or account for the files.

  4. #4
    Honorary Admin Fatal_Exception's Avatar
    Join Date
    Feb 2002
    Posts
    371
    the EML extension is normally associated with email

    drop to DOS, move to the directory containing the mystery files, search for them with DIR *.eml and then delete them when you find how DOS is parsing the filenames... you may have to change the attributes before you can delete them

  5. #5
    Senior Member michaeln's Avatar
    Join Date
    Jan 2002
    Location
    Ireland
    Posts
    619
    Originally posted by Fatal_Exception
    the EML extension is normally associated with email

    drop to DOS, move to the directory containing the mystery files, search for them with DIR *.eml and then delete them when you find how DOS is parsing the filenames... you may have to change the attributes before you can delete them
    A funny thing happened. I checked the system with AVG Virus Scan - Negative Results. I then scanned the system online with PC_Cillin - again negative.

    Having read youm message Fatal I decided to pull one of the files across my network to this PC to work on it further. This PC would not allow it in as it said the file was infected with I-WORM/NIMDA virus. The odd thing is that this PC also runs AVG antivirus and has the same updates as the infected PC.

    With regards to your suggestion for a DOS attack, fortunately I have the old DOS application XTree Gold. I dug it up and installed it (which surprised me as I installed it in Win98SE without a hitch). This allowed me access to the full system and I was able to delete all copies of this file, although it's so long since I used XTGold that I had a lot of revising to do before I managed to solve the problem.

    Just goes to show that DOS can do some things that Windows can't.

  6. #6
    Honorary Admin Fatal_Exception's Avatar
    Join Date
    Feb 2002
    Posts
    371
    i thought it might have been nimda, but after your conviction that it wasn't a virus, i was loathe to suggest it...

    you should probably download the antitrojan.exe to make sure you don't have a little devil on your drive generating the worm...

    what folder were the eml files in? could they have been quarantined?

  7. #7
    Senior Member michaeln's Avatar
    Join Date
    Jan 2002
    Location
    Ireland
    Posts
    619
    I d/l'd the antitrojan and am running checks now. The .eml files were in 41 different directories all over the place.

    As for quarantine - i'd prefer rid the system completely of them.

    Thanx for the help!

  8. #8
    Honorary Admin Fatal_Exception's Avatar
    Join Date
    Feb 2002
    Posts
    371
    Originally posted by michaeln
    As for quarantine - i'd prefer rid the system completely of them.
    i agree! i was just curious

  9. #9
    Senior Member
    Join Date
    Nov 2001
    Location
    NJ
    Posts
    656

    vs


Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts







New Security Features Planned for Firefox 4
Another Laptop Theft Exposes 21K Patients' Data
Oracle Hits to Road to Pitch Data Center Plans
Microsoft Preps Array of Windows Patches
Microsoft Nears IE9 Beta With Final Preview
Simplified Analytics Improve CRM, BI Tools
Android Passes RIM as Top Mobile OS in 2Q
VMware Updates Hyperic System Management
File Monitoring Key to Enterprise Security
LinkedIn Snaps Up SaaS Player mSpoke