Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

ApplicUnwnt.Win32.PSWTool.Cain.A@11865431


  • Please log in to reply
No replies to this topic

#1 arknaz

arknaz

  • Members
  • 476 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:12:21 PM

Posted 21 May 2010 - 11:08 PM

Well since i want to learn more about how to remove/deal with Malware crap i figured i should post this to ask about it.

I am using Comodo FV+AV, rest of my specs are in my Sig, and for about the last month or so it has randomly popped up an alert saying it quarantined a trojan or what not. The last 3 it has done are called ApplicUnwnt.Win32.PSWTool.Cain.A@11865431 Backdoor.Win32.IRCBot.ai003@101919592 (has 2 of this one), located in my C:\System Volume Information\_restore{72BA6E44-E15D-4A8E--BE08-71453620409E}\RP396\A0120651.exe 652.exe and 653.exe.

I cant access the folder, says i dont have permissions as the admin.

It hasnt done anything really..just quarantined it, then i delete it, then it finds another one..so kind of more of an annoyance then anything.

-Scott

Let me know what logs you want me to post, i have most of the programs used here
Samsung Chromebook +
  • Intel i5-2500K 3.3Ghz - Replaced with I7 3770k 3.5Ghz
  • 80G SSD, 640G/1TB/3TB Sata  
  • Palit GTX560 TI 2GB 
  • 16g G.Skill Sniper DDR3

BC AdBot (Login to Remove)

 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users