View Single Post
Old 04-27-2006, 02:59 AM   #18 (permalink)
MoralTerror
Analyst, Security Team
 
MoralTerror's Avatar
 
Join Date: Nov 2005
Location: UK
Posts: 1,968
OS: xp


First I have my own family matters to deal with so if I've delayed too much then I apologize

Second I stated at the start of this thread that I am consulting with the experts on this and any other log I take. These experts also all have their own family matters so if they have delayed in getting back to me before I get back to you then again I apologize.

3rd we are all volunteers here providing you and many many others FREE support

Fourth we have already told you that your P2P activity and your cracked software is the root cause of this infection. We have also told you that cleaning of this infection is NOT guaranteed and that re-installation is the best step to take.

The files quaranteed by Norton cannot be cleaned due to polymorphic code being injected into their executable files. The only way to get rid of these is to delete them from quarantine following the guide I gave you already. However as you are aware many of these programs will not work. We have already told you that this infection is too difficult to clean and re-installation is the best solution for you.

As for CleanUp your version is a newer version than mine. My version needs that "scan drives for temporary files" unchecked so that Office files are not deleted. Your version does not require this option. You have already been told this.

The questions we asked were to try and determine the cause of your important files being deleted however we were unable to gather enough information to determine the most likely cause.

The Polip version you have is very new and as far as we aware Symantec can't clean it wholly. We DO NOT rely on 1 source alone for information we use many sources to confirm our findings. Our findings are that most if not then all Anti-virus products are unable to fully clean this infection. With even traces of it left you will quickly be infested again. We have suggested the best route for you is to re-install.

I have passed this on to more senior analysts. I wish you luck with your problem. Have a nice day
MoralTerror is offline