Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
June 19, 2013, 09:31:24 AM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
668891
Posts
71132
Topics
145738
Members
Latest Member:
ampdraw
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Security Products & Services
Comodo Internet Security - CIS
Help - CIS
AntiVirus Help - CIS
Quarantined Malware... now what?
« previous
next »
Pages:
[
1
]
Author
Topic: Quarantined Malware... now what? (Read 3558 times)
sreaction
Newbie
Offline
Posts: 3
Quarantined Malware... now what?
«
on:
April 10, 2012, 09:16:44 PM »
Malware[at]#34off9k7jm08f C:\System Volume Information\_restore{2D07FD2C-EAEA-4C5D-B012-81E8D54495F8}\RP49\A0002924.dll
The above is malware that was quarantined. I deleted it ran another scan and it have no more negative results. Usually, AV software has a link for a descriptive summary of the revealed malware. Does CIS not have that function? Also, prior to removal, I scanned with Malwarebytes and its scan turned up nothing. Not sure if this is a false positive. However I cant tell since I cant find any info on the suspicious file. Any help clarifying what the above is will be appreciated.
Logged
Maniak2000
Comodo's Hero
Offline
Posts: 312
Re: Quarantined Malware... now what?
«
Reply #1 on:
April 11, 2012, 01:19:57 AM »
CIS \ Comodo doesn't have virus encyclopedia or something similar that I know about.
System Volume Information is a folder where Windows restore points are located, so you might want to clear those and create a new system restore point.
Logged
sreaction
Newbie
Offline
Posts: 3
Re: Quarantined Malware... now what?
«
Reply #2 on:
April 11, 2012, 03:13:47 AM »
Yeah I figured it had something to do with system restore. I turned system restore off shortly after I got the malware notification. I usually don't even have it on so its not a big deal.
Logged
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #3 on:
May 04, 2012, 05:10:41 PM »
Another issue with System Restore...
Logged
EricJH
Global Moderator
Comodo's Hero
Offline
Posts: 16990
Re: Quarantined Malware... now what?
«
Reply #4 on:
May 04, 2012, 05:23:14 PM »
Quote from: upholder on May 04, 2012, 05:10:41 PM
Another issue with System Restore...
What issue? If malware gets caught in System Restore make sure to open the System Restore folders and the av can remove it. This KB article describes how to do this:
http://support.microsoft.com/kb/309531
/
Logged
Please read:
Introduction to the 5.x Sandbox
With CIS v4 my p2p client (uTorrent, e Mule...) is not working properly anymore
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #5 on:
May 04, 2012, 06:36:34 PM »
Obviously, most users will know what System Restore is.
Obviously they will know how to deal with such a simple thing.
Logged
EricJH
Global Moderator
Comodo's Hero
Offline
Posts: 16990
Re: Quarantined Malware... now what?
«
Reply #6 on:
May 04, 2012, 07:54:46 PM »
Quote from: upholder on May 04, 2012, 06:36:34 PM
Obviously, most users will know what System Restore is.
Obviously they will know how to deal with such a simple thing.
One catches flies with syrup not with vinegar. Or in the high tech age one catches answers with Google.....
Logged
Please read:
Introduction to the 5.x Sandbox
With CIS v4 my p2p client (uTorrent, e Mule...) is not working properly anymore
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #7 on:
May 04, 2012, 08:57:01 PM »
Quote from: EricJH on May 04, 2012, 07:54:46 PM
Or in the high tech age one catches answers with Google.....
Or one has the machine messed about, which is what worries me.
And it does worry (last install of CAV was a mess).
Logged
EricJH
Global Moderator
Comodo's Hero
Offline
Posts: 16990
Re: Quarantined Malware... now what?
«
Reply #8 on:
May 05, 2012, 10:49:41 AM »
Quote from: upholder on May 04, 2012, 08:57:01 PM
Or one has the machine messed about, which is what worries me.
And it does worry (last install of CAV was a mess).
Could you elaborate on this?
Logged
Please read:
Introduction to the 5.x Sandbox
With CIS v4 my p2p client (uTorrent, e Mule...) is not working properly anymore
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #9 on:
May 05, 2012, 07:18:24 PM »
Quote from: EricJH on May 05, 2012, 10:49:41 AM
Could you elaborate on this?
Yes, I can.
The usual default settings were up side down (on two installs the settings will be different from each other and from what they were supposed to be). The GUI was unresponsive (it wouldn't close, for a start). My manual options wouldn't stick...
This happend twice in the space of 10 days (CAV 5.10).
The impression from an end user point of view is that of an amateurish approach (not mine).
My machine just had an Image backup restore; no chance of infections/conflicts... so forth.
Logged
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #10 on:
May 08, 2012, 04:19:00 PM »
Eric...
Why is CAV installer behaving randomly?
I'm using NAV at the moment, and not taking the risk at another faulty CAV installl.
Could you elaborate on this?
Logged
EricJH
Global Moderator
Comodo's Hero
Offline
Posts: 16990
Re: Quarantined Malware... now what?
«
Reply #11 on:
May 08, 2012, 08:03:21 PM »
I am not sure what could be causing it.
Usual suspects would be left overs of previously installed security programs or currently installed security programs. But if that is not the case and it is reproducible then I would ask to file a bug report so the Comodo devs can take a closer look at it.
Logged
Please read:
Introduction to the 5.x Sandbox
With CIS v4 my p2p client (uTorrent, e Mule...) is not working properly anymore
upholder
Comodo Member
Offline
Posts: 39
Re: Quarantined Malware... now what?
«
Reply #12 on:
May 16, 2012, 04:31:44 PM »
I decided to give CAV another go and so far so good.
Strange about the previous behaviour, it is the same machine and I'm a very careful user.
Anyway, that's software for you...
Thanks for your attention Eric.
Logged
Tags:
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.055 seconds with 23 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com