Re: explorer.exe infected virus

"Jacob Weeks" <[email protected]> Fri, 13 Oct 2006 10:46:08 -0600
Newsgroups gmane.comp.security.virus
Message-ID <[email protected]>
depends on how much info would be lost with the computer being
formated... if non, reformat.. however..

one option would be to boot up with a livecd such as Helix
[http://www.e-fense.com/helix/ ] which will give you the ability to
scan the system with clamav, and make sure that's your only problem.

If so, boot into the repair console, and delete the explorer.exe and
replace it with a copy from the windows cd.

boot up to windows, rescan the computer.... and redo the winupdates.
then install an AV that can stop viruses so this doesn' t happen again.


On 10/13/06, boonting <[email protected]> wrote:
>
> Hello, help
>
> System file explorer.exe infected virus. Any Solution ? What should i do ?
> Format machine ?
>
> Report from Bit-Defender
> -----------------------------------
> Virus: Name: Backdoor.Agobot.AGH,
> File: c:\windows\system32\explorer.exe, Object:
> c:\windows\system32\explorer.exe, Status: Infected, Action: Failed to
> delete!, Server: ifcaweb
>
> Your help is appreciated.
> --
> View this message in context: http://www.nabble.com/explorer.exe-infected-virus-tf2436965.html#a6795373
> Sent from the Security - Virus mailing list archive at Nabble.com.
>
>
> ----------------------------------------------------------------------------
> ALERT: "How a Hacker Launches a SQL Injection Attack!" - White Paper
> It's as simple as placing additional SQL commands into a Web Form input box giving hackers complete access to all your backend systems!
>
> https://download.spidynamics.com/1/ad/sql.asp?Campaign_ID=70160000000CZWl
> ----------------------------------------------------------------------------
>
>
>


-- 
-- Never do today, what you can blame someone else for not doing tomorrow.

----------------------------------------------------------------------------
ALERT: "How a Hacker Launches a SQL Injection Attack!" - White Paper
It's as simple as placing additional SQL commands into a Web Form input box giving hackers complete access to all your backend systems!

https://download.spidynamics.com/1/ad/sql.asp?Campaign_ID=70160000000CZWl
----------------------------------------------------------------------------