Trojan-Horse PUSHU    Cannot be deleted using anti-virus software.

Trojan-Horse PUSHU Cannot be deleted using anti-virus software.

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Trojan-Horse PUSHU Cannot be deleted using anti-virus software. CiscoGEEK J. 04-01-2007
Posted by =?Utf-8?B?Q2lzY29HRUVLIEou?= on April 1, 2007, 11:06 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
I've recently reinstalled my computer with Windows xp home edition several
times this weekend for software testing and developement. Now, I am no
"PORNO-FREAK". The reason I said that is because, while updating my PC with
Microsoft's updates just after installing the Operating system, I get this
virus infected on my PC. This is very strange, because it's said that the
virus is downloaded through emails when I didn't have time to visit my email
account and when I did there wasn't any "Porn Spam". I believe that this
virus has a multiple entry operation into computers other than through email
spam. Since it was self-installed during the installation of an OS and again
after my SOPHOS anti-virus (Spy Sweeper w/ anti-virus from sophos)
quarantined and deleted it, the possibiltiy that a vulnerability in Windows'
remote access software,etc. could be the problem.

One more thing regarding security, I have a firwalled router using simple
blocking tools to block WAN requests, multicast, and NAT redirection.

Posted by PA Bear on April 2, 2007, 1:22 am
If you were  Registered and logged in, you could reply and use other advanced thread options
Did you format & reinstall Windows or do a Repair Install?

Run a /thorough/ check for hijackware, including posting your hijackthis log
to an appropriate forum.

Checking for/Help with Hijackware
http://aumha.org/a/parasite.htm
http://aumha.org/a/quickfix.htm
http://aumha.net/viewtopic.php?t=5878
http://wiki.castlecops.com/Malware_Removal_and_Prevention:_Introduction
http://mvps.org/winhelp2002/unwanted.htm
http://inetexplorer.mvps.org/data/prevention.htm
http://inetexplorer.mvps.org/tshoot.html
http://www.mvps.org/sramesh2k/Malware_Defence.htm
http://defendingyourmachine.blogspot.com/
http://www.elephantboycomputers.com/page2.html#Removing_Malware

When all else fails, HijackThis v1.99.1
(http://aumha.org/downloads/hijackthis.zip) is the preferred tool to use.
It will help you to both identify and remove any hijackware/spyware with
assistance from an expert. **Post your log to
http://forums.spybot.info/forumdisplay.php?f=22,
http://castlecops.com/forum67.html,
http://forums.subratam.org/index.php?showforum=7,
http://aumha.net/viewforum.php?f=30, or other appropriate forums for expert
analysis, not here.**

If the procedures look too complex - and there is no shame in admitting this
isn't your cup of tea - take the machine to a local, reputable and
independent (i.e., not BigBoxStoreUSA) computer repair shop.
--
~Robear Dyer (PA Bear)
MS MVP-Windows (IE, OE, Security, Shell/User)
AumHa VSOP & Admin; DTS-L.org


CiscoGEEK J. wrote:
> I've recently reinstalled my computer with Windows xp home edition several
> times this weekend for software testing and developement. Now, I am no
> "PORNO-FREAK". The reason I said that is because, while updating my PC
> with
> Microsoft's updates just after installing the Operating system, I get this
> virus infected on my PC. This is very strange, because it's said that the
> virus is downloaded through emails when I didn't have time to visit my
> email
> account and when I did there wasn't any "Porn Spam". I believe that this
> virus has a multiple entry operation into computers other than through
> email
> spam. Since it was self-installed during the installation of an OS and
> again
> after my SOPHOS anti-virus (Spy Sweeper w/ anti-virus from sophos)
> quarantined and deleted it, the possibiltiy that a vulnerability in
> Windows'
> remote access software,etc. could be the problem.
>
> One more thing regarding security, I have a firwalled router using simple
> blocking tools to block WAN requests, multicast, and NAT redirection.


Posted by David H. Lipman on April 2, 2007, 11:34 am
If you were  Registered and logged in, you could reply and use other advanced thread options

| I've recently reinstalled my computer with Windows xp home edition several
| times this weekend for software testing and developement. Now, I am no
| "PORNO-FREAK". The reason I said that is because, while updating my PC with
| Microsoft's updates just after installing the Operating system, I get this
| virus infected on my PC. This is very strange, because it's said that the
| virus is downloaded through emails when I didn't have time to visit my email
| account and when I did there wasn't any "Porn Spam". I believe that this
| virus has a multiple entry operation into computers other than through email
| spam. Since it was self-installed during the installation of an OS and again
| after my SOPHOS anti-virus (Spy Sweeper w/ anti-virus from sophos)
| quarantined and deleted it, the possibiltiy that a vulnerability in Windows'
| remote access software,etc. could be the problem.
|
| One more thing regarding security, I have a firwalled router using simple
| blocking tools to block WAN requests, multicast, and NAT redirection.

Which is it ?

The subject says "trojan" the body says "virus".

Did Sophos detect it ?
If Sophos did what was the name Sophos gave it and what was the fully qualified
name and
path to the file(s) deemed to be infected ?

--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm



Similar ThreadsPosted
2) Trojan-Horse PUSHU Cannot be deleted using anti-virus software April 3, 2007, 5:28 pm
Cannot install any antivirus software March 15, 2006, 5:56 am
How to detect antivirus software on a system December 20, 2007, 4:34 am
What's it in for the makers of free antivirus software? March 28, 2008, 9:19 am
Windows XP unable to load Antivirus software June 1, 2006, 10:07 am
Posting deleted? August 7, 2005, 4:30 pm
Who deleted the folder? January 25, 2007, 12:13 pm
retrieve deleted history January 19, 2006, 8:58 am
Recover deleted EFS Certificate June 18, 2006, 6:50 am
RE: Moved & Deleted Files July 26, 2006, 1:16 pm

The site map in XML format XML site map

Contact Us | Privacy Policy