A Windows 98 & ME forum. Win98banter

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

Go Back   Home » Win98banter forum » Windows ME » General
Site Map Home Authors List Search Today's Posts Mark Forums Read Web Partners

wi32.exe



 
 
Thread Tools Display Modes
  #1  
Old May 1st 05, 05:10 PM
Farhan
external usenet poster
 
Posts: n/a
Default wi32.exe

I have a file wi32.exe in my startup list, What is this?

Is it save to have there?


Farhan


  #2  
Old May 2nd 05, 10:17 PM
David H. Lipman
external usenet poster
 
Posts: n/a
Default

From: "Farhan"

| I have a file wi32.exe in my startup list, What is this?
|
| Is it save to have there?
|
| Farhan
|


Please submit "wi32.exe" to Virus Total --
http://www.virustotal.com/flash/index_en.html
The submission will then be tested against 18 different AV vendor's scanners.

Another way to submit is to send the suspect file to the following email address
scanatvirustotal.com
{ replace at with @ } with only the word SCAN as the subject.

Please post back the EXACT results.


--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm


  #3  
Old May 4th 05, 10:44 PM
Farhan
external usenet poster
 
Posts: n/a
Default

| From: "Farhan"
|
|| I have a file wi32.exe in my startup list, What is this?
||
|| Is it save to have there?
||
|| Farhan
||
|
|
| Please submit "wi32.exe" to Virus Total --
| http://www.virustotal.com/flash/index_en.html
| The submission will then be tested against 18 different AV vendor's
| scanners.
|
| Another way to submit is to send the suspect file to the following email
| address scanatvirustotal.com
| { replace at with @ } with only the word SCAN as the subject.
|
| Please post back the EXACT results.

Virus Total
_______________________________________________

Scan results
File: wi32.exe
Date: 05/03/2005 23:37:08 (CET)
----
AntiVir 6.30.0.7/20050503 found [TR/Dldr.Lager.C.2]
AVG 718/20050502 found nothing
BitDefender 7.0/20050503 found [BehavesLike:Trojan.Downloader]
ClamAV devel-20050501/20050503 found nothing
DrWeb 4.32b/20050503 found [Trojan.Lopata]
eTrust-Iris 7.1.194.0/20050503 found nothing
eTrust-Vet 11.9.1.0/20050503 found [Win32.Sinteri.D]
Fortinet 2.51/20050503 found nothing
Ikarus 2.32/20050503 found nothing
Kaspersky 4.0.2.24/20050503 found nothing
McAfee 4483/20050503 found [Downloader-ZQ]
NOD32v2 1.1087/20050503 found [probably unknown NewHeur_PE virus]
Norman 5.70.10/20050503 found [W32/Downloader]
Panda 8.02.00/20050503 found [Adware/Trustbid]
Sybari 7.5.1314/20050503 found [Downloader-ZQ]
Symantec 8.0/20050503 found nothing
VBA32 3.10.3/20050503 found [suspected of Unknown.Win32Virus]

_______________________________________________
VirusTotal is a free service offered by Hispasec Sistemas. There are no
guarantees about the availability and continuity of this service. Do not
reply to this message. It has been generated by an automatic address that
will not handle any reply. Although the detection rate afforded by the use
of multiple antivirus engines is far superior to that offered by just one
product, these results DO NOT guarantee the harmlessness of a file.
Currently, there is not any solution that offers a 100% effectiveness rate
for detecting viruses and malware.

_______________________________________________
Servidor Antivirus HispaSec Sistemas
(c) Hispasec Sistemas, 1998-2005
http://www.hispasec.com

Now what David?


Farhan


  #4  
Old May 4th 05, 10:44 PM
Farhan
external usenet poster
 
Posts: n/a
Default

| From: "Farhan"
|
|| I have a file wi32.exe in my startup list, What is this?
||
|| Is it save to have there?
||
|| Farhan
||
|
|
| Please submit "wi32.exe" to Virus Total --
| http://www.virustotal.com/flash/index_en.html
| The submission will then be tested against 18 different AV vendor's
| scanners.
|
| Another way to submit is to send the suspect file to the following email
| address scanatvirustotal.com
| { replace at with @ } with only the word SCAN as the subject.
|
| Please post back the EXACT results.

Virus Total
_______________________________________________

Scan results
File: wi32.exe
Date: 05/03/2005 23:37:08 (CET)
----
AntiVir 6.30.0.7/20050503 found [TR/Dldr.Lager.C.2]
AVG 718/20050502 found nothing
BitDefender 7.0/20050503 found [BehavesLike:Trojan.Downloader]
ClamAV devel-20050501/20050503 found nothing
DrWeb 4.32b/20050503 found [Trojan.Lopata]
eTrust-Iris 7.1.194.0/20050503 found nothing
eTrust-Vet 11.9.1.0/20050503 found [Win32.Sinteri.D]
Fortinet 2.51/20050503 found nothing
Ikarus 2.32/20050503 found nothing
Kaspersky 4.0.2.24/20050503 found nothing
McAfee 4483/20050503 found [Downloader-ZQ]
NOD32v2 1.1087/20050503 found [probably unknown NewHeur_PE virus]
Norman 5.70.10/20050503 found [W32/Downloader]
Panda 8.02.00/20050503 found [Adware/Trustbid]
Sybari 7.5.1314/20050503 found [Downloader-ZQ]
Symantec 8.0/20050503 found nothing
VBA32 3.10.3/20050503 found [suspected of Unknown.Win32Virus]

_______________________________________________
VirusTotal is a free service offered by Hispasec Sistemas. There are no
guarantees about the availability and continuity of this service. Do not
reply to this message. It has been generated by an automatic address that
will not handle any reply. Although the detection rate afforded by the use
of multiple antivirus engines is far superior to that offered by just one
product, these results DO NOT guarantee the harmlessness of a file.
Currently, there is not any solution that offers a 100% effectiveness rate
for detecting viruses and malware.

_______________________________________________
Servidor Antivirus HispaSec Sistemas
(c) Hispasec Sistemas, 1998-2005
http://www.hispasec.com

Now what David?


Farhan


  #5  
Old May 5th 05, 01:42 AM
David H. Lipman
external usenet poster
 
Posts: n/a
Default

From: "Farhan"


| McAfee 4483/20050503 found [Downloader-ZQ]

Download CLEAN.EXE from the URL --
http://www.ik-cs.com/programs/virtools/clean.exe

It is a self-extracting ZIP file that contains the Kixtart Script Interpreter {
http://kixtart.org Kixtart is CareWare } three batch files, two Kixtart scripts, two Link
(.lnk) files and a PDF instruction file.

GETFILES.BAT -- For downloading (FTP) the files needed to run the McAfee Command Line
Scanner. If you are using Windows XP, you may have to disable the Windows XP FireWall to
allow the FTP utility to download the needed files

CLEAN.BAT -- For running within Windows after running c:\mcafee\GetFiles.BAT. If you choose
to scan again at a future date, run this batch file. It will automatically check the date
of the McAfee DAT files and if it is a couple of days old, it will download (FTP) the latest
signature files and install them before performing the scan.

DOSCLEAN.BAT -- For use on a Win9x/ME PC or on a Win2K/WinXP PC that is using FAT32 after
you have booted from an Emergency Boot Disk or DOS disk and have already executed;
c:\mcafee\GetFiles.BAT from within Windows. DOS disk boot images can be obtained from;
http://www.bootdisk.com/bootdisk.htm

I need you to perform the following...

Execute; CLEAN.EXE
Choose; Unzip
Choose; Close

Execute; c:\mcafee\GetFiles.BAT
{ or Double-click on 'GetFiles Link' in c:\mcafee }

Reboot the PC into Safe Mode [F8 key during boot]

Shutdown as many applications as possible !
It would also help for you to read - "How to perform a clean boot in Windows XP"
http://support.microsoft.com/kb/310353

Execute; c:\mcafee\CLEAN.BAT
{ or Double-click on 'Clean Link' in c:\mcafee }


--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm


 




Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 05:20 AM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Copyright ©2004-2024 Win98banter.
The comments are property of their posters.