AV scan an NTFS drive in DOS

AV scan an NTFS drive in DOS

Secure Home | Search | About
 Microsoft Antivirus Discussions    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
AV scan an NTFS drive in DOS BC 01-08-2006
Posted by =?Utf-8?B?QkM=?= on January 8, 2006, 4:32 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Is there a way to boot a NTFS drive into DOS and use an AV program that will
run from a floppy or CD that can id and remove viruses?


Posted by David H. Lipman on January 8, 2006, 4:54 pm
If you were  Registered and logged in, you could reply and use other advanced thread options

| Is there a way to boot a NTFS drive into DOS and use an AV program that will
| run from a floppy or CD that can id and remove viruses?

Yes. And here is one of those tools. The following contains the AV part. Read
teh PDF
Help File about booting from DOS and using NTFS4DOS..

Download MULTI_AV.EXE from the URL --
http://www.ik-cs.com/programs/virtools/Multi_AV.exe

To use this utility, perform the following...
Execute; Multi_AV.exe { Note: You must use the default folder C:\AV-CLS }
Choose; Unzip
Choose; Close

Execute; C:\AV-CLS\StartMenu.BAT
{ or Double-click on 'Start Menu' in C:\AV-CLS }

NOTE: You may have to disable your software FireWall or allow WGET.EXE to go
through your
FireWall to allow it to download the needed AV vendor related files.

C:\AV-CLS\StartMenu.BAT -- { or Double-click on 'Start Menu' in C:\AV-CLS}
This will bring up the initial menu of choices and should be executed in Normal
Mode.
This way all the components can be downloaded from each AV vendor's web site.
The choices are; Sophos, Trend, McAfee, Kaspersky, Exit this menu and Reboot the
PC.

You can choose to go to each menu item and just download the needed files or you
can
download the files and perform a scan in Normal Mode. Once you have downloaded
the files
needed for each scanner you want to use, you should reboot the PC into Safe Mode
[F8 key
during boot] and re-run the menu again and choose which scanner you want to run
in Safe
Mode. It is suggested to run the scanners in both Safe Mode and Normal Mode.

When the menu is displayed hitting 'H' or 'h' will bring up a more comprehensive
PDF help
file. http://www.ik-cs.com/multi-av.htm


* * * Please report back your results * * *


--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm



Posted by cquirke (MVP Windows shell/use on January 9, 2006, 6:54 am
If you were  Registered and logged in, you could reply and use other advanced thread options
On Sun, 8 Jan 2006 13:32:01 -0800, "BC" wrote:

>Is there a way to boot a NTFS drive into DOS

No. DOS won't load from NTFS, so it can't get running to the point
that it could load drivers that can read NTFS.

>and use an AV program that will run from a floppy or CD that
>can id and remove viruses?

Abstract what you want, and your mileage will improve ;-)

It's not really "DOS" you want here, it is a maintenance OS (mOS) that
can boot and run scanners etc. without running the infected contents
of the NTFS volume(s). There are several ways to attain this...

http://cquirke.mvps.org/whatmos.htm

...and while a DOS 1.44M diskette boot with NTFS drivers is one of
these, it is probably not the best choice.

I've tried that, running F-Prot for DOS in this manner. It does run
in hte tiny amount of DOSmemory left after 300k of NTFS driver TSR has
loaded, but it can only read NTFS, not write to it (and thus no clean
anything). More to the point, it is unable to scan an entire volume;
attempts to do scans on a few subtrees and files, as if there's a
failure to properly recurse and traverse the NTFS file system.

I get far better results using Bart PE as the mOS, booting this off
CDR and using Bart's plugin system to redirect access to the HD's
registry hives (RnScanner) and run various tools, such as McAfee and
F-Prot CLI Win32 scanners, Trend SysClean, Stinger, AntiVir, AdAware,
Spybot, HiJackThis, all the NirSoft integration checkers, etc.

If you're a Linux fundi, you can choose one of several Linuxes
bootable from CDR, but the abandoned "capture" project never got
beyond reading NTFS to safely writing to it.



>---------- ----- ---- --- -- - - - -
Don't pay malware vendors - boycott Sony
>---------- ----- ---- --- -- - - - -

Similar ThreadsPosted
Drive listed twice - virus? November 10, 2006, 11:22 am
Partitioning the hard drive May 29, 2007, 10:51 pm
Cannot open drive from My Computer February 11, 2008, 4:10 pm
Right-Click any drive ---> Autoplay Option November 3, 2006, 8:22 am
remove malware - drive cleaner January 13, 2007, 1:09 pm
Symantec Antivirus Corporate 10 not scanning all files on the drive January 22, 2007, 11:35 am
first time internet exp 7 user - drive cleaner popup warning January 13, 2007, 12:09 am
Can't run online scan November 19, 2005, 3:46 pm
GMER Scan. September 21, 2008, 8:30 pm
PC shuts off on Virus Scan September 23, 2005, 7:22 pm

The site map in XML format XML site map

Contact Us | Privacy Policy