Jump to content

Recommended Posts

Here's a very short and clear officialish forum thread concurring in the belief that it's a false positive. http://answers.microsoft.com/en-us/protect/forum/mse-protect_scanning/microsoft-essentials-shows-trojan-dropper-on-dell/2134f8e4-9b89-406c-a672-2f94bc6f7dc4


I can see why MSE isn't putting a 3.5GB file into its quarantine folder. Embedded within that is one small file, uninst.exe, for uninstalling the AOL Connectivity Service (ACS), that triggered the alarm.

Loz Wrote:

-------------------------------------------------------

>

> Can you actually see your D drive from explorer?

> On my Dell, I can only see the C drive and the E

> drive (my dvd drive). The recovery partition is

> not actually mounted, so it's not accessible (and

> therefore my AV doesn't scan it).

>



Yes I can see the D drive. Never actually looked at it very closely before :) or indeed at all :)


I think ianr may be right.


Though I have no idea what the AOL Connectivity Service is.


I still have two AOL email accounts which I occasionally check, but I haven't used AOL as a browser for some years. Do I still need ACS or could I just uninstall it and then delete the uninst.exe file?


Also, given that the PC status is now showing as protected, am I OK or not?

As I said, Sue, that partition is just to reinstall the operating system. You can't delete an individual file from it, as it's all packaged up into one big file.


And deleting the corresponding file from the C drive would almost certainly cause other issues, and not solve this one.

Latest version of CCleaner has some startup items management. You can research the items and disable/delete them if they look suspicious. 'Experts' will use tools like Autoruns in the Sysinternals Suite or do a scan with Malwarebytes.


A common way you get these things in the first place is from visiting bootleg websites eg. live sports channels, that trick you into installing a 'required plugin' which of course is infected with said trojan.

Twoddle Wrote:

-------------------------------------------------------

> Latest version of CCleaner has some startup items

> management. You can research the items and

> disable/delete them if they look suspicious.

> 'Experts' will use tools like Autoruns in the

> Sysinternals Suite or do a scan with

> Malwarebytes.

>

A common way you get these things in the first place is from visiting bootleg websites

eg. live sports channels, that trick you into installing a 'required plugin' which of course is infected with said trojan.


This is very true... Watch Live Football for FREE is a classic example...


DulwichFox

AVG is not the worst AV out there - I just find it a bit naggy, as it keeps pestering you to buy the non-free version. That was the big reason I switched to MSE.


Not sure what you mean by for 'online banking / purchasing'. An AV (should) protect you at all times.


Ditto with browsers - I don't think any of them is better/worse in terms of security. I use Firefox as a rule, but often switch to Chrome simply because I don't have any add-ons there, which can seriously reduce your security. The big one is not to let your browser store any login/passwords for anything you want to keep secure. It's a trivial job to see them.

Loz Wrote:

-------------------------------------------------------

> AVG is not the worst AV out there - I just find it

> a bit naggy, as it keeps pestering you to buy the

> non-free version. That was the big reason I

> switched to MSE.


I does pop up and pester, I agree, but would, on balance, prefer to be pestered by something that worked than something that didn't.


Thank you for mentioning MSE, I hadn't previously heard of it but will look into it.

>

> Not sure what you mean by for 'online banking /

> purchasing'. An AV (should) protect you at all times


By online banking I mean giving passwords, answering security questions, where there are bogus websites that say they are rated as 'official' when amending standing orders or setting up direct debits or merely sighning in to check an account balence


by purchasing I mean buying on ebay or amazon etc

>

>

> Ditto with browsers - I don't think any of them is

> better/worse in terms of security. I use Firefox

> as a rule, but often switch to Chrome simply

> because I don't have any add-ons there, which can

> seriously reduce your security. The big one is

> not to let your browser store any login/passwords

> for anything you want to keep secure. It's a

> trivial job to see them.


I never let a browser store my password even for an email address password, however for some sites, even my bank, my browser doesn't automatically ask me, as does yahoo for example when signing into email. I am awaiting a written response from my bank regarding this.


Thank you for your reply Loz

pipsky2008 Wrote:

-------------------------------------------------------

> Thank you for mentioning MSE, I hadn't previously heard of it but will look into it.


MSE is Microsoft Security Essentials, their version of antivirus. Normally I shy away from MS stuff like this, but MSE is pretty damn good and ties in quite nicely with the Windows Firewall. And it's free.


> > Not sure what you mean by for 'online banking / purchasing'. An AV (should) protect you at all

> > times

>

> By online banking I mean giving passwords, answering security questions, where there are

> bogus websites that say they are rated as 'official' when amending standing orders or

> setting up direct debits or merely sighning in to check an account balence


Ah. Whilst some AV's can help, that's not really what they do. The usual advice is NEVER go somewhere like that via clicking on an email or similar. Keep the links in your bookmarks. Personally, I use KeePass, which allows me to store and use a known URL/link to my banking/ebay/paypal/etc.


Malware can, however, redirect even a real URL to a bad site. That's where AV usually should help.


If in doubt, check the security certificate. When you are on the banking site, the URL should start with 'https://' If it doesn't, get out of there. If it does, you should be able to click on the padlock to the left of there and the security certificate details should come up. The Common Name on the certificate should be the expected URL.


Although I don't use it myself, I understand the Trusteer Rapport software that most banks offer to you helps weed out such things.


> I never let a browser store my password even for an email address password, however for some

> sites, even my bank, my browser doesn't automatically ask me, as does yahoo for example when signing into email.


That sounds like something's wrong. I have never encountered that. You can go into the browser's password area and delete them.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Latest Discussions

    • The top front tooth has popped out.  Attempted to fix myself with repair kit bought from Boots, unfortunately it didn’t last long.  Tooth has popped out again.  Unable to get to dentist as housebound but family member can drop off.  I tried dental practice I found online, which is near Goose Green, but the number is disconnected.   The new dental practice in FH (where Barclays used to be) said it’s not something they do.  Seen a mobile dental practice where a technician comes to your home and does the repair but I’m worried about the cost. Any suggestions please? Thank you 
    • So its OK for Starmer to earn £74K/annum by renting out a property, cat calling the kettle black....... Their gravy train trundles on. When the Southport story that involves Starmer finally comes out, he's going to be gone, plus that and the local elections in May 2025 when Liebour will get a drumming. Even his own MP's have had enough of the mess they've made of things in the first three months of being in power. They had fourteen years to plan for this, what a mess they've created so quickly, couldn't plan there way out of a paper bag.   Suggest you do the sums, the minimum wage won't  be so minimum when it is introduced, that and the increase in employers national insurance contributions is why so many employers are talking about reducing their cohort of employees and closing shops and businesses.  Businesses don't run at a loss and when they do they close, its the only option for them, you can only absorb a loss for so long before brining the shutters down and closing the doors. Some people are so blinkered they think the sun shines out of the three stooges, you need to wake up soon. Because wait till there are food shortages, no bread or fresh vegetables, nor meat in the shops, bare shelves in the supermarkets because the farmers will make it happen, plus prices spiralling out of control as a result of a supply and demand market. Every ones going to get on the gravy train and put their prices up, It happened before during lockdown, nothing to stop it happening again. You don't shoot the hand that feeds you. Then you'll see people getting angry and an uprising start to happen.  Hungry people become angry people very quickly. 
    • Eh? Straight ahead of what?  If you turn left at Goose Green, as you also posted above, you end up at the library. Then the Grove. Then, unless you turn right at the South Circular, you end up at Forest Hill!
    • yes I’ve spotted this too — it’s near me and I’m very intrigued to see what it’ll be 👀👀👀👀      
Home
Events
Sign In

Sign In



Or sign in with one of these services

Search
×
    Search In
×
×
  • Create New...