Author Topic: treatment for "virus.win32.virut.ce"  (Read 2642 times)

Offline faraz

  • Jr. Member
  • **
  • Posts: 75
  • Karma: +0/-0
    • View Profile
treatment for "virus.win32.virut.ce"
« Reply #20 on: October 07, 2009, 04:12:56 AM »
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
esets_scanner_update returned -1 esets_gle=53251
esets_scanner_update returned -1 esets_gle=53251
esets_scanner_update returned -1 esets_gle=53251
# version=6
# IEXPLORE.EXE=6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
# OnlineScanner.ocx=1.0.0.6050
# api_version=3.0.2
# EOSSerial=38182b829265dc4e9fa24b50ffbf85b5
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2009-10-06 09:53:37
# local_time=2009-10-06 02:53:37 (+0500, West Asia Standard Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 2
# compatibility_mode=3841 63 0 8 303265436406250
# scanned=42520
# found=11
# cleaned=11
# scan_time=5324
C:\WINDOWS\system32\dllcache\agentsvr.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\at.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\attrib.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\change.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\charmap.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\chglogon.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\chgusr.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\cleanmgr.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\comp.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
C:\WINDOWS\system32\dllcache\compact.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C
E:\faraz\7th Term\Refrigeration\Softwares\Res50.exe   Win32/Virut.NBP virus (cleaned - quarantined)   00000000000000000000000000000000   C

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
treatment for "virus.win32.virut.ce"
« Reply #21 on: October 07, 2009, 08:55:48 PM »
It looks like a lot of legitimate files got infected
The scan from Eset confirms an infection from Virut

I usually like to recommend a clean install of the system
Consideration is, we look like we have cleaned the system, would you like to carry on with some final cleanup instructions
Or clean install the system to ensure your computer security?

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline faraz

  • Jr. Member
  • **
  • Posts: 75
  • Karma: +0/-0
    • View Profile
treatment for "virus.win32.virut.ce"
« Reply #22 on: October 08, 2009, 04:53:45 AM »
yes i would like 2 take some fimal cleanup instructionz......

but can u please xplanin in simple words wat did u mean from these words.....'clean install of the system"