What is this virus ? - description inside


  1. Posts : 5
    Windows 7 Enteprise x64 SP1
       #1

    What is this virus ? - description inside


    Hi all,

    A friend handed me a software (legit) under the ISO format.

    What I usually do is mount these with Daemon Tools. This works great most of the time.

    Except for this one. What happens is that, I start the setup.exe, shortly after, the system shuts down and reboots.

    After that, the Windows installation is totally corrupt. I think it messes up the 100mb active partition, also corrupts ci.dll.

    The system cannot be repaired at all.

    If I restore an image (done with Windows' own image utility), no luck as the image does not have (it seems) the content of this crucial 100mb partition.

    So you have to reinstall Windows, which recreates this 100mb part. and THEN restore the image.

    Anyways, I tought this was Daemon Tools' SPTD fault as I heard bad things about it. So I uninstalled DT, extracted the ISO instead of mounting it, ran the setup.exe once again, then Action Center said "Windows has detected potentially harmful software" and BOOM reboot and same thing as mentionned above.

    So it seems it's a virus, but I'd like to know if someone ever had this one and what is its name ? Malware Bytes did not detect anything and it's usually pretty good...

    Thanks!
      My Computer


  2. Posts : 5,056
    Windows 7 x64 pro/ Windows 7 x86 Pro/ XP SP3 x86
       #2

    Nobody can help you unless you tell us what exactly that software is.

    BTW, such "legit" software from friends are usually cracked copies of commercial software. Even then, you must have ran the setup.exe despite windows' warning otherwise if you had cancelled you would have been fine.

    Please stick to legit software that is either freeware or you have purchased yourself.
      My Computer


  3. Posts : 1,800
    Windows 7 Pro x64 SP1
       #3

    redeyedbass said:
    Hi all,

    A friend handed me a software (legit) under the ISO format.

    So it seems it's a virus, but I'd like to know if someone ever had this one and what is its name ? Malware Bytes did not detect anything and it's usually pretty good...

    Thanks!
    Welcome redeyebass to the windows 7 forums.

    question. What was the software and how do you know it was legit?

    Also, did you make a DVD/CD of the iso and then scan it with malwarebytes?

    I don't believe that mwb can scan an .ISO to check for bad guys.

    If you make the .iso into a dvd/cd then it can be checked with mwb.

    Rich
      My Computer


  4. Posts : 5
    Windows 7 Enteprise x64 SP1
    Thread Starter
       #4

    Guys, I'm not looking for help per se. I fixed the issue already.

    I was just curious about the virus name and if anyone ever had it before.

    I also had MWB scan the contents of the ISO once it was extracted to a directory.

    The virus rebooted the computer before I could even completely read the Action Center's message.
      My Computer


  5. Posts : 19,383
    Windows 10 Pro x64 ; Xubuntu x64
       #5

    Hi,

    There is no way to tell which virus family your are referring to, let alone the name (there are too many variants out there). As Bill suggested, tell us what the program ISO was called, and that could be a clue we need to take a guess.

    Regards,
    Golden
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 20:13.
Find Us