 |
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows 7. The Windows 7 forum also covers news and updates and has an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.
Windows 7 - MSE unable to detect infection on an infected usb flash |
01-31-2012
|
#1 | | Windows 7 Home Premium 64bit |
MSE unable to detect infection on an infected usb flash I just ran a scan of my wife's infected flash (she gave it to a friend at work to copy her movie) using an up-to-date MSE on Windows 7 Home Premium 64-bit and it DID NOT detect anything at all. When I opened the flash I see duplicates of its original contents that have their icon's edge sort of blurry so I know the infection is still there so I quickly (just pulled it out) unplug it. I ran a full system scan and "...winmaximizer" was detected as a severe threat and fortunately MSE was able to remove it.
now I am afraid to use this flash again since I am sure it is still infected. i've already tried to remove its infection using MSE again on my HP Vista Home Premium 32-bit and got the same result. i will run a full system scan on my vista laptop later BUT please assist on how to detect and remove infection from potentially infected usb flashes.
many thanks in advance.
| My System Specs | | System Manufacturer/Model Number LENOVO B570/1068A8U OS Windows 7 Home Premium 64bit |
01-31-2012
|
#2 | | Windows 7 Ultimate x64 SP1 |
Hello Zeamann,
You might see if doing a full scan of it and your system, along with any other system it was connected to, with MalwareBytes free may help. However, if there's nothing on the USB flash drive that you must have, formatting it should wipe it clean of malware as well.
Hope this helps,
Shawn | My System Specs | | System Manufacturer/Model Number Self built custom OS Windows 7 Ultimate x64 SP1 CPU Intel i7-980X 3.3 Ghz (3.48 Ghz OC'd) Motherboard ASUS P6X58D Premium Memory 12 GB (2GBx6) DDR3 PC3-16000 2000 MHz Kingston HyperX Graphics Card Sapphire HD5870 Eyefinity 6 2GB Sound Card Realtek HD Audio ALC889 Integrated Chip Monitor(s) Displays 3x 27" Asus VE278Q Screen Resolution 1920x1080 Keyboard Logitech Cordless Desktop MX 5500 Revolution Mouse Logitech Cordless Desktop MX 5500 Revolution PSU OCZ Series Gold OCZZ1000M 1000W Case Corsair Obsidian 800D Cooling Thermalright Ultra 120 Extreme Copper CPU heat sink w/120 MM Hard Drives 160GB OCZ RevoDrive X2
** 2 x 1TB Samsung HDD HD154UI SATA Internet Speed 50 Mb/s Download and 2 Mb/s Upload Other Info Microsoft LifeCam Cinema
** Lite-On iHBS212 12x BD Writer
** Samsung CLX-3175FW Printer
** Netgear WNDR3800 Router
** Motorola SBG6580 Cable Modem
** 2x APC Back-UPS XS 1500 |
01-31-2012
|
#3 | | windows 7 home premium 64/SP1 |
If you have a infected flash drive wipe the drive is the normal thing to do but when you plug it into a computer to wipe it it can infect your computer in micro seconds. My self I would just bite the bullet and throw it away.It's not worth the trouble to wipe the flash drive and repair the computer you plugged it into.
People who put infection on flash drive don't intend to infect flash drives only; they intend to infect the computers they get plugged into. If it was me I would smash the flash drive and throw it away and then run scans on any computer it was plugged into and what ever network the computer was on. | My System Specs | | System Manufacturer/Model Number Home made OS windows 7 home premium 64/SP1 CPU Intel i7-960-3.2 @ 4.25 Motherboard ASUS P6X58D-E Memory KINGSTON KHX2000C9, Hyper X,12 GIGS with Corsair cooler Graphics Card MSI/Nvidia/460GTX-Cyclone 1GD5/OC Monitor(s) Displays DYNEX 40 IN. Screen Resolution 1920-1080 Keyboard M/S 3000 v 2.0 wireless Mouse M/S 5000 wireless PSU Corsair AX-850 Plus Gold Case Corsair 600T (Black) + side panel with 2 140 mm Noctua fans Cooling Corsair H50/2 Noctua NF-P12 (120 mm) Push/Pull Hard Drives INTEL SSD 120GB-SER 510
Seagate 1TB SATA 600 7200 rpm Hard Drive Internet Speed 3.0 mb Other Info LG BluRay-Read/Write
Sound system
KLipsch-THX
Asus Router RTN-12 |
02-01-2012
|
#4 | | Windows 7 Ultimate x64 SP1, LinuxMint 9 LTS x64, Debian 6, Ubuntu 10.04 LTS x64 |
Hi,
Panda will allow you to vacinate your computer prior to plugging in the USB drive. After that, you can use it to vacinate the USB drive to avoid it being infected in the future. http://www.pandasecurity.com/homeuse...ds/usbvaccine/
Regards,
Golden | My System Specs | | System Manufacturer/Model Number Golden Mk. I.3 OS Windows 7 Ultimate x64 SP1, LinuxMint 9 LTS x64, Debian 6, Ubuntu 10.04 LTS x64 CPU Intel i7 860 @ 2.80 GHz Motherboard Gigabyte P55A-UD3R Rev.1. Award BIOS F13 Memory 16GB Corsair Vengance DDR3 @ 661 MHz Dual Channel (9-9-9-24) Graphics Card EVGA NVidia GTX 560 1024MB Sound Card Realtek Integrated Monitor(s) Displays Dual Samsung SyncMaster 2494HS Screen Resolution 1920*1080 and 1920*1080 Keyboard Logitech G110 Mouse Logitech MX518 PSU Thermaltake ToughPower QFan 750W Case Thermaltake Element S VK60001W2Z Cooling Corsair H60 Water Cooling, 2*230mm and 2*80mm case fans Hard Drives 1*OCZ Vertex 2 60GB SSD;
2*Samsung F3 SpinPoint 1TB in RAID0;
2*Samsung F1 SpinPoint 1TB in RAID1;
1*Western Digital WD10EARS 1TB
1*Western Digital 500GB External USB 3.0
1*Seagate 500GB External USB 2.0 Internet Speed Not fast enough!!! |
02-01-2012
|
#5 | | Windows 7 Home Premium 64bit |
thank you all guys for the help and tips. surprisingly, this morning MSE able to find "trojan:win32/otran" and removed it except several shortcuts of original flash content and a few other alien files so i just deleted them. anyways, does having both MSE free and MalwareBytes free running on 1 PC okay? pls respond on this.
tho my wife and i are happy now, i am still curious as to why MSE couldn't detect any infection yesterday. thank you all again and God Bless,
oh, 1 more thing. i've been scanning/cleaning a lots of my friends usb flashes and mp3 players so i'm kinda familiar with worm/trojan names but this one is really new to me. it is the first time i see "otran" | My System Specs | | System Manufacturer/Model Number LENOVO B570/1068A8U OS Windows 7 Home Premium 64bit |
02-01-2012
|
#6 | | Windows 7 Ultimate x64 SP1 |
That's great news Zeamann.
Yes, it's fine to have both MSE and MalwareBytes running at the same time.
There could be a number of reasons why MSE didn't detect it right away. It may not have been included in the MSE definitions until the last update before it was detected, or it just didn't trip any red flags for MSE until then. | My System Specs | | System Manufacturer/Model Number Self built custom OS Windows 7 Ultimate x64 SP1 CPU Intel i7-980X 3.3 Ghz (3.48 Ghz OC'd) Motherboard ASUS P6X58D Premium Memory 12 GB (2GBx6) DDR3 PC3-16000 2000 MHz Kingston HyperX Graphics Card Sapphire HD5870 Eyefinity 6 2GB Sound Card Realtek HD Audio ALC889 Integrated Chip Monitor(s) Displays 3x 27" Asus VE278Q Screen Resolution 1920x1080 Keyboard Logitech Cordless Desktop MX 5500 Revolution Mouse Logitech Cordless Desktop MX 5500 Revolution PSU OCZ Series Gold OCZZ1000M 1000W Case Corsair Obsidian 800D Cooling Thermalright Ultra 120 Extreme Copper CPU heat sink w/120 MM Hard Drives 160GB OCZ RevoDrive X2
** 2 x 1TB Samsung HDD HD154UI SATA Internet Speed 50 Mb/s Download and 2 Mb/s Upload Other Info Microsoft LifeCam Cinema
** Lite-On iHBS212 12x BD Writer
** Samsung CLX-3175FW Printer
** Netgear WNDR3800 Router
** Motorola SBG6580 Cable Modem
** 2x APC Back-UPS XS 1500 |
02-02-2012
|
#7 | | Windows 7 Home Premium 64bit |
thanks a lots again u all and especially you Brink. I will now download MalwareBytes free and have it running on all 6 laptops. thanks again guys and God Bless,
Zeamann. | My System Specs | | System Manufacturer/Model Number LENOVO B570/1068A8U OS Windows 7 Home Premium 64bit |
02-02-2012
|
#8 | | windows 7 home premium 64/SP1 |
Malwarebytes is a great program. Keep in mind the free version is a stand alone product. It only runs when you tell it to. You have to tell it to update and scan. It doesn't run in the background protecting your computer like MSE does. In order to get live protection you must update to Malwarebytes Anti Malware Pro. IMHO which ever one you choose Malwarebytes is a great program and has saved many computers. | My System Specs | | System Manufacturer/Model Number Home made OS windows 7 home premium 64/SP1 CPU Intel i7-960-3.2 @ 4.25 Motherboard ASUS P6X58D-E Memory KINGSTON KHX2000C9, Hyper X,12 GIGS with Corsair cooler Graphics Card MSI/Nvidia/460GTX-Cyclone 1GD5/OC Monitor(s) Displays DYNEX 40 IN. Screen Resolution 1920-1080 Keyboard M/S 3000 v 2.0 wireless Mouse M/S 5000 wireless PSU Corsair AX-850 Plus Gold Case Corsair 600T (Black) + side panel with 2 140 mm Noctua fans Cooling Corsair H50/2 Noctua NF-P12 (120 mm) Push/Pull Hard Drives INTEL SSD 120GB-SER 510
Seagate 1TB SATA 600 7200 rpm Hard Drive Internet Speed 3.0 mb Other Info LG BluRay-Read/Write
Sound system
KLipsch-THX
Asus Router RTN-12 |
02-03-2012
|
#9 | | Windows 7 Home Premium 64bit |
you are right Layback Bear. comparing it with MSE, MalwareBytes was smoothly installed and updated the first time I ran it on a HP Pavilion p6617 PC two days ago while MSE, I tried to update it for almost 4 days earlier to no avail. It was able to get fully updated only after Malwarebytes had cleaned the PC. Running MSE's full scan after updating did not find anything at all.
I believe MSE and MalwareBytes must be married for better protection. thanks again you all and God Bless,
Zeamann. | My System Specs | | System Manufacturer/Model Number LENOVO B570/1068A8U OS Windows 7 Home Premium 64bit |
02-05-2012
|
#10 | | Windows 7 Ultimate x64, XP Mode(VPC and VMLite), VM Player 4.02, W8 CPreview |
Another program I found effective isn't free however except for the 30 day trial. I use this for everything these without the need for several program. When plugging in any flash drive since I two cases full of them you will immediately be prompted to scan the flash drive itself.
Having used first VIPRE Home Premium av now called VIPRE Internet Security 2012 the program's initial scan found trojans hidden inside zip files downloaded supposedly being older XP Utilities that for some reason were never opened. No other program MS Security Essential, AVG, Malwarebytes, Avast, Spyware Terminator, and several others over a several year period ever detected anything!
VIPRE will scan, quaranteen, and have the option to delete any bugs uncovered as well as any new ones you encounter. I used to have to run 3 or 4 programs for what only one does now. I now never have to worry about passing a bug from one machine to the next when going to transfer files. No need to toss flash drives if you find another program that will do the same. | My System Specs | | OS Windows 7 Ultimate x64, XP Mode(VPC and VMLite), VM Player 4.02, W8 CPreview CPU AMD Phenom II X4 Deneb 3.4 Motherboard Gigabyte GA-790XTA-UD4 Memory Kingston Hyper X DDR3 1600 8gb 1.5v Graphics Card MSI Radeon 5750 1gb Sound Card Creative Labs X-Fi XtremeGamer Monitor(s) Displays 2 x Acer P191W 19" widesscreen Screen Resolution 1440x900 native Keyboard Microsoft Recusa Razor Mouse MS Trackball Explorer PSU Corsair 750TX Case Antec 900-2 - SSD compatible Cooling Zalman CNPS9900A Hard Drives WD Black Edition 1tb Sata 6.0 = 2
WD Black Edition 1tb Sata 3.0 = 2 (OS drives)
WD 1tb Green Power sata = 2 1 external
usb flash drives = 15 Internet Speed 30mbps upgrade MSE unable to detect infection on an infected usb flash problems? All times are GMT -5. The time now is 01:21 AM. |  |