Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Spyware and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

 
Reply to this topicStart new topic
> Scanning Infected Laptop Drive, What tools are available
garmanma
post Jan 20 2008, 04:42 PM
Post #1


Computer Masochist
******

Group: Moderator
Posts: 10,660
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618



My daughter's friend has a laptop that needs a new mother board. She can't afford it at the moment but wants me to try and retrieve her pictures. My daughter informs me that the computer is "infected beyond belief". After I put the drive in an external enclosure and scan it with my anti-virus, are there any other recommended tools I can use so I can transfer/burn the files safely? I'm not that familiar with external drives yet
Thanks
Mark

This post has been edited by garmanma: Jan 20 2008, 04:44 PM


--------------------
Mark

why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
 
+Quote Post
tos226
post Jan 21 2008, 09:05 PM
Post #2


Distinguished Member
*****

Group: Members
Posts: 980
Joined: 21-October 04
Member No.: 3,911



Mark,

I'd backup your own system first, who knows what it'll do to you as you connect smile.gif

I think a good antivirus will catch things on that drive, and then again as you copy so long as you set it to monitor read and write.

The problem is if that drive has some rootkit on it or some other hijacker ...

I'd run more that one AV on that drive and I'd definitely run a-square and on-line Kaspersky and I think NOD32 has an on-line scanner as well. Spyware is minor but superantispyware run might bot be a bad idea.

I really don't know just hinting at possible ways.

This is a very interesting topic. I'll be watching the expert replys!
Go to the top of the page
 
+Quote Post
Teenage.Zombiee
post Jan 21 2008, 09:29 PM
Post #3


Distinguished Member
*****

Group: Members
Posts: 814
Joined: 25-October 07
From: Sydney, AUSTRALIA :]
Member No.: 165,216



tos226 gave you some great advice smile.gif

The main thing is your going to scan it with your anti virus as soon as its hooked up to your computer just so you don't get infected ;)
Online scans are your best bet. Id try Kaspersky, Housecall (Trend Micro) and anothe of your choice. See what they find.

You could maybe run AVG Anti rootkit. Im not exactly sure how that program works but Im pretty sure you could select to scan that drive.

Super Anti Spyware is a good idea to run. Just to be sure.

See what they find.

Also as for transfering the files. I would virus and spyware scan them first. Then either burn to a data CD or put on a flash drive.

Im quiet interested in how this goes garmanma and I hope it all turns out well thumbup.gif


--------------------
"People die of disease and accident. Death comes suddenly and there is no notion of good or bad. It leaves, not a dramatic feeling but great emptiness. When you lose someone you loved very much you feel this big empty space and think, 'If I had known this was coming I would have done things differently.' These are the feelings I wanted to arouse in the players with Aerith's death relatively early in the game. Feelings of reality and not Hollywood." - Yoshinori Kitase
Go to the top of the page
 
+Quote Post
garmanma
post Jan 22 2008, 08:42 AM
Post #4


Computer Masochist
******

Group: Moderator
Posts: 10,660
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618



QUOTE(tos226 @ Jan 21 2008, 09:05 PM) *
Mark,

I'd backup your own system first, who knows what it'll do to you as you connect smile.gif

I think a good antivirus will catch things on that drive, and then again as you copy so long as you set it to monitor read and write.

The problem is if that drive has some rootkit on it or some other hijacker ...

I'd run more that one AV on that drive and I'd definitely run a-square and on-line Kaspersky and I think NOD32 has an on-line scanner as well. Spyware is minor but superantispyware run might bot be a bad idea.

I really don't know just hinting at possible ways.

This is a very interesting topic. I'll be watching the expert replys!

I'll probably start this weekend. I figured I'd try all the online virus scanners. It's the other nasties I'm a little worried about
Mark


--------------------
Mark

why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
 
+Quote Post
boopme
post Jan 22 2008, 02:07 PM
Post #5


To INSANITY and BEYOND !!
******

Group: Moderator
Posts: 10,943
Joined: 10-September 04
From: NJ USA
Member No.: 2,608



Mark after running Online Panda active scan and say eset online scanner and running your A/V, run SuperAntispyware. Alll are on the freeware page, except this one yet
ESET's Online Scanner

Then use steps 1 & 2 here SmitFraudFix

Run Super and`Smit from Safe mode


--------------------
Can you spare some PC cycles to help FIND A CURE .. BC FOLDING TEAM Click me /info..
ThoughtVent a goodplace to discuss.<<>>>Staying Updated Calendar of Updates.
For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....
Go to the top of the page
 
+Quote Post
garmanma
post Jan 22 2008, 03:57 PM
Post #6


Computer Masochist
******

Group: Moderator
Posts: 10,660
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618



Thanks. I'm making up my-to do list now. I'm in for a busy week and week-end. I'll post back with results when I find out
Mark


--------------------
Mark

why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
 
+Quote Post
garmanma
post Feb 8 2008, 07:28 PM
Post #7


Computer Masochist
******

Group: Moderator
Posts: 10,660
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618



Results of what has been done so far:
---------------
AVG anti-virus clean
---------------
AVG anti-spy normal cookies
-----------
TrendMicro normal cookies
-----------------------
Onecare live normal cookies
one high risk win32/NewDotNet also mentioned Kazzaa
------------------
Eset clean
------------------
Bit defender 15 viruses identified
I'll copy/paste the log if anyone cares
--------------
Kapersky
No viruses found

Still have to try SmitfraudFix
Mark

This post has been edited by garmanma: Feb 8 2008, 07:32 PM


--------------------
Mark

why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
 
+Quote Post
ruby1
post Feb 10 2008, 12:34 PM
Post #8


a forum member
******

Group: Members
Posts: 2,360
Joined: 27-August 07
Member No.: 153,171



I would suggest you DO post the results and logs from the scans for the Team to check out;how well does the comp run?
Go to the top of the page
 
+Quote Post
garmanma
post Feb 10 2008, 03:45 PM
Post #9


Computer Masochist
******

Group: Moderator
Posts: 10,660
Joined: 27-January 07
From: Cleveland, Ohio
Member No.: 108,618



QUOTE(ruby1 @ Feb 10 2008, 12:34 PM) *
I would suggest you DO post the results and logs from the scans for the Team to check out;how well does the comp run?

It doesn't. It's a drive from a computer that I'm fixing for a friend, in a USB enclosure. She didn't have the money to fix it right away so I was going to pull the pictures off it. She just dropped off the money last night so I'll probably fix it then do a Hijack log. I'll still probably run Smitfraud as long as it's hooked up to my computer
Mark


--------------------
Mark

why won't my laptop work?

Having grandkids is God's way of giving you a 2nd chance because you were too busy working your butt off the 1st time around
Avatar by Handplane
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 9th January 2009 - 04:22 AM


Advertise   |   About Us   |   Terms of Use   |   Privacy Policy   |   Contact Us   |   Site Map   |   Chat   |   Tutorials   |   Uninstall List
Discussion Forums   |   The Computer Glossary   |   Resources   |   RSS Feeds   |   Startups   |   The File Database   |   Malware Removal Guides

© 2003-2008 All Rights Reserved Bleeping Computer LLC.