Welcome, Guest. Please login or register.
November 18, 2008, 06:33:32 PM

Login with username, password and session length

212233 Posts
24531 Topics
57714 Members

Latest Member: wilhoit

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Internet Security - CIS
| | |-+  Virus/Malware Removal Assistance
| | | |-+  Virus problem with network [Resolved]
« previous next »
Pages: [1] Go Down Print
Author Topic: Virus problem with network [Resolved]  (Read 2023 times)
juraikken
Newbie
*
Offline Offline

Posts: 5


« on: February 01, 2008, 07:24:00 PM »

hello i'm new to COMODO and this forum so i have a few questions. recently my ISP has claimed that i have a malicious virus that disables my firewall to send unwanted emails to other people in the network. and because of this they shut off my computer. then i got COMODO so im hoping COMODO will stop this virus from doing this. i want to know what to do to stop it from doing it because my Windows XP firewall is crap and i was guided to COMODO for help. =)
« Last Edit: February 04, 2008, 02:58:01 PM by Ragwing » Logged
juraikken
Newbie
*
Offline Offline

Posts: 5


« Reply #1 on: February 02, 2008, 12:59:38 PM »

um can anyone help? 96 people have looked at it...no one knows what i can do? =/
Logged
zvaragabor
Comodo Loves me
****
Offline Offline

Posts: 109



« Reply #2 on: February 02, 2008, 02:10:19 PM »

Install a third party firewall (e.g. Comodo Firewall Pro). CFP's HIPS module will probably catch that worm on your machine. XP SP2 built in firewall is a simple inbound packet filter, it can't block outgoing traffic, so that worm can easily connect to anywhere, and can send spam. Actually it can do anything. Smiley

Also install a 3rd party antivirus. Nod32 or Avira are good choices. But you can choose any other big name.

Or even you can run online scanners to find the malware. Just a few of them:
- http://housecall.trendmicro.com/
- http://www.kaspersky.com/virusscanner
- http://support.f-secure.com/enu/home/ols.shtml
- http://www.bitdefender.com/scan8/ie.html
« Last Edit: February 02, 2008, 02:11:51 PM by zvaragabor » Logged
juraikken
Newbie
*
Offline Offline

Posts: 5


« Reply #3 on: February 02, 2008, 02:43:14 PM »

awesome! thank you ill get to it ASAP!  Bounce

btw whats HIPS module?
« Last Edit: February 02, 2008, 02:45:10 PM by juraikken » Logged
Ragwing
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3199


« Reply #4 on: February 02, 2008, 02:49:26 PM »

btw whats HIPS module?

HIPS, which stands for Host Intrustion Prevention System, is a a software (in this case, a part of CFP 3) that will alert you if an unknown .exe tries to run (this will catch the virus). It will also do a lot of other things, like monitor keyboard against unauthorized access (keylogger protection), and tell you if something tries to shutdown your computer, kill your security processes or other things.
So in short words, it's like a firewall for your OS!

Cheers,
Ragwing
Logged

Forum Policy
FAQ's

If you should need help or have a question, feel free to PM me.
juraikken
Newbie
*
Offline Offline

Posts: 5


« Reply #5 on: February 02, 2008, 03:15:59 PM »

cool thanks. i have it set on "train with safe mode" is that ok?
Logged
LeoniAquila
Forum Volunteer
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 4057



« Reply #6 on: February 02, 2008, 06:53:15 PM »

cool thanks. i have it set on "train with safe mode" is that ok?

Yeah, that's a secure mode. Thumb Up

LA
Logged


Moderator: Aims to keep the forum a friendly place. Any concerns? Please send me a PM and/or review the forum policy.
System: 32 bit Windows XP SP3, Comodo Internet Security, Comodo Memory Firewall
Ragwing
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3199


« Reply #7 on: February 03, 2008, 11:11:23 AM »

To follow up your problem, has Defense+ detected the malicious process? I don't really know how Train with Safe Mode works, since I've always used Paranoid Mode for maximum protection.
Else, the firewall should alert you about the malware trying to connect to the Internet.

Cheers,
Ragwing
Logged

Forum Policy
FAQ's

If you should need help or have a question, feel free to PM me.
juraikken
Newbie
*
Offline Offline

Posts: 5


« Reply #8 on: February 04, 2008, 02:33:55 PM »

actually yes, COMODO discovered it trying to send out a signal to an IP Address in New Jersey so it would know what to spam. and once it tried that, COMODO asked me if it was ok, and i saw that it was "trying to connect to another computer" so i denied it. so basically i stopped it from sending out the spam, thanks to COMODO. but that didnt solve the virus problem. i talked to a computer physician who loves to analyze viruses and he discovered a backdoor trojan by the name of "dxdss.sys" that was executing the request and now both COMODO can protect my computer from doing things like that, and the virus is gone. =)
Logged
Ragwing
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3199


« Reply #9 on: February 04, 2008, 02:57:39 PM »

I'm glad you solved the problem Smiley
Defense+ only checks .exe, so that's possible why it didn't catch the backdoor program.
I'll close this thread now that your problem is solved. PM me or another online moderator if you want it opened again for some reason.

Cheers,
Ragwing
Logged

Forum Policy
FAQ's

If you should need help or have a question, feel free to PM me.
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Firewall
Page created in 1.157 seconds with 19 queries.
Powered by SMF 1.1.7 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com