arethinn: glowing green spiral (tech (agent geek squad))
Apparently Norton thinks the autorun.inf file on my USB stick (which, guess what, launches the U3 system -- and which I don't use anyway as I have this kind of autorun functionality turned off in Windows) is a Trojan horse. *eyeroll* Every so often it keeps "quarantining" it when I plug it in (note: not every time, not even most of the time) and periodically asking me did I want to clean the file (note: often when it's not even inserted). grr.

Date: Oct. 27th, 2009 08:25 pm (UTC)From: [identity profile] elven-ranger.livejournal.com
sounds like Norton. AVG rules! :D

Date: Oct. 27th, 2009 08:33 pm (UTC)From: [personal profile] arcanetrivia
arcanetrivia: a light purple swirl on a darker purple background (Default)
This is my work computer so I don't have a choice. I don't even run any antivirus software on my home computer, actually.

Date: Oct. 28th, 2009 01:10 am (UTC)From: [identity profile] valkyriur.livejournal.com
That's because it pretty much is a virus. :P

Date: Oct. 28th, 2009 08:26 am (UTC)From: [identity profile] sylvanawood.livejournal.com
Norton complains because you've caught a nasty bug.
http://vil.nai.com/vil/content/v_142438.htm
http://vil.nai.com/vil/SystemHelpDocs/DisableSysRestore.aspx
It's a bit of a pain to get rid of it. The best method is to go via console, take over posession of all the files on your stick, display the hidden files, and then look for the Recycler. The files you want to remove are usually in there (you don't see the recycler on the stick, and can't usually access it). The file used to be: c:\recycler\...\ise32.exe
Go into the registry, search for ise32.exe and remove that, too.
Afterwards, block the autorun function on your computer (see second link). If you don't remove it, it spreads merrily from stick to stick. Even if it is quarantined, it manages to annoy you and your system with constant warnings.
Been there, done that, peace now.

Date: Oct. 29th, 2009 09:34 am (UTC)From: [identity profile] sylvanawood.livejournal.com
Not the recovery console. The command window should be sufficient for that. But I'm not familiar with the newest version of that worm, you'll have to look it up yourself, likewise the filenames. You'll find the detailed descriptions of all these variants (and tips how to remove them by hand when they mess up your virus scanner) on all major antivirus websites. We have McAffee here, and I just gave you our old links as an example. There's no use sending you my tutorial, since it's in German.

The crux of all the chatter is that it is something that needs to be taken seriously because it's spread like wildfire through usb sticks and the like, but also well known and can be removed.

It's also important to keep the patches and security updates up-to-date, but you know that already.

Profile

arethinn: glowing green spiral (Default)
Arethinn

January 2026

S M T W T F S
    123
45678910
11121314151617
18192021222324
25262728 293031

Expand Cut Tags

No cut tags

Style Credit

Page generated Feb. 22nd, 2026 08:19 pm
Powered by Dreamwidth Studios