PDA

View Full Version : Question of technique


capitalcan
12-12-2008, 02:49 AM
Hi....

I have a question. Currently, if I have suspected virus on a computer, I connect that computers hard drive as a slave on a computer I use only for scanning other computers hard drives and do a custom scan using Spyware Doctor with Antivirus.

When I do this, and find and fix problems is this as effective as running Spyware Doctor with Antivirus on that system?

All the help you have is appreciated!

AChen
12-12-2008, 03:00 AM
Hi capitalcan,

By using this method to scan, it will only clean whatever is in the harddrive, basically files. However, infections could hide in the registry which are not getting cleaned ;)

So the best thing to do is to run a Scan with SD+AV on that particular system.

capitalcan
12-12-2008, 03:02 AM
So, what would be a better method? Also, can I add a question. Does Spyware Doctor with Antivirus look for and clean IRC bots? Would those be specific to the registry?

haapy
12-12-2008, 05:29 AM
The better method is to run the SD/AV scan with the drive mounted in the PC that is using it, not as a slave.

AChen
12-12-2008, 05:42 AM
Does Spyware Doctor with Antivirus look for and clean IRC bots? Would those be specific to the registry?

SD will look for these type of infections :)
For more info, you can check http://www.pctools.com/mrc/infections/

Examples:
Backdoor.IRC.ABN Backdoor.IRC.ABN is a backdoor which allows an attacker unauthorized remote ...
Backdoor.IRC.Besik Backdoor.IRC.Besik is a malicious application that runs in the background and ...
Backdoor.IRC.Bnc.A Backdoor.IRC.Bnc.A allows an attacker unauthorized access to an infected ...
Backdoor.IRC.Client.a This backdoor opens port 6667 in the windows firewall. It then lies dormant ...
Backdoor.IRC.Flood Backdoor.IRC.Flood is a backdoor Trojan. It installs an mIRC client that has ...
Backdoor.IRC.Kelebek Backdoor.IRC.Kelebek is a backdoor which allows an attacker unauthorized remote ...
Backdoor.IRC.Logare Backdoor.IRC.Logare is a tool for generating IRC backdoor trojans which can ...
Backdoor.IRC.LSA Backdoor.IRC.LSA attempts to connect to an external IRC server to allow an ...
Backdoor.IRC.Mimic Backdoor.IRC.Mimic installs its own modified version of mIRC client onto ...
Backdoor.IRC.Zapchast Backdoor.IRC.Zapchast installs IRC clients on infected machines and serves as a ...
Backdoor.IRCBot Backdoor.IRCBot is a family of IRC backdoors allowing unauthorized access to an ...
Backdoor.IRCBot_FactorLibrary ...
Backdoor.IRCBot.AAC Backdoor.IRCBot.AAC starts up when Windows starts and tries to connect to an ...
Backdoor.IRCBot.AAQ Backdoor.IRCBot.AAQ is an IRC backdoor that attempts to connect to a predefined ...
Backdoor.IRCBot.ACD Backdoor.IRCBot.ACD is backdoor worm that spreads through Microsoft instant ...
Backdoor.IRCBot.ACF Backdoor.IRCBot.ACF connects to the internet to download further malware and ...