install.exe found on external drive - how do I find out what it is?

Page 2 of 4 FirstFirst 1234 LastLast

  1. Posts : 19,383
    Windows 10 Pro x64 ; Xubuntu x64
       #11

    Only from a DVD/USB - its specifically designed this way to outsmart malware that requires booting into Windows to become 'aware' and then avoid detection, or hamper the malware detection process.
      My Computer


  2. Posts : 109
    Windows 7 32 bit
    Thread Starter
       #12

    Okay... have run Quick Scan.... (full scan to follow ) Trojan found Win32/Sirefef

    BUT... is not able to be removed with this message: Windows defender offline encountered an error: Error code Ox800704ec "This program is blocked by group policy. For more information contact your system administrator.

    So.. how do I remove this file and what is it?
      My Computer


  3. Posts : 6,330
    Multi-Boot W7_Pro_x64 W8.1_Pro_x64 W10_Pro_x64 +Linux_VMs +Chromium_VM
       #13

    You can upload the install.exe file to VirusTotal
    https://www.virustotal.com/
    It will scan it and you may find more info on what malware is found in the file.
      My Computer


  4. Posts : 109
    Windows 7 32 bit
    Thread Starter
       #14

    unable to upload the file there...


    Hi.. we have tried that but when we try to upload it it says we don't have (administrator) permission to do so....
      My Computer


  5. Posts : 19,383
    Windows 10 Pro x64 ; Xubuntu x64
       #15

    Is this a work computer?
      My Computer


  6. Posts : 109
    Windows 7 32 bit
    Thread Starter
       #16

    Home computer


    It is a home computer on a 'home network' with two computers in total... connected by cable... they were bought form new and have always been used as home computers....

    I 'think' I have managed to remove the Sirefef Trojan... from a link elsewhere on this forum... touch wood it has worked...

    http://malwaretips.com/Thread-How-to...-Removal-Guide
    Last edited by Neil2305; 31 Jan 2013 at 17:39.
      My Computer


  7. Posts : 19,383
    Windows 10 Pro x64 ; Xubuntu x64
       #17

    Reboot your computer, and run an online scanning using this:

    Free Online Virus Scanner | ESET
      My Computer


  8. Posts : 25,847
    Windows 10 Pro. 64/ version 1709 Windows 7 Pro/64
       #18
      My Computer


  9. Posts : 2,470
    Windows 7 Home Premium
       #19

    Neil3205,

    If Sirefef was found on your computer, your interests are well served by running tools that query/diagnose the system prior to Windows starting.

    Although some programs may come up clean, malware could still be lurking somewhere, particularly if it is a Rootkit.


    So, if you agree, let’s take a look before Windows starts, but, need some info from you:

    Do you have the Repair your computer option in the Advanced Boot Options menu?


    To find out:

    Restart the computer.
    As soon as the BIOS is loaded begin tapping the F8 key until the Advanced Boot Options menu appears.
    Is the Repair your computer option listed?


    If you do not have the option, do you have your Windows installation CD/DVD available?


    And last, do you have a USB flash drive available, and access to a clean computer?
     
      My Computer


  10. Posts : 109
    Windows 7 32 bit
    Thread Starter
       #20

    Installed Windows Offline Defender


    I am running this on my own computer on our home 'network'... as earlier advice in the thread... I have downloaded Windows Offline Defender on a CD and changed the BIOS to boot via the CD and did the scan by that... (at least a quick scan).... I will run a full scan while I sleep tonight as I fear that might take a few hours... the last re-boot I did the Sirefef wasn't showing.... now running an ESET scan....
      My Computer


 
Page 2 of 4 FirstFirst 1234 LastLast

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 12:57.
Find Us