View Full Version : Removing win32 Puce.b worm
Albinoni
July 26th, 2006, 12:21 PM
Anyone know how to remove this worm. I'm having pros trying to delete the infected file and when I do so I get an error message telling me it cannot read from the source file or disk.
Also will BD Pro 9 delete.
I just cant seem to get rid of it, just seems to stay and doesnt want to be deleted.
dan_maran
July 26th, 2006, 12:54 PM
-{ Quote: "Anyone know how to remove this worm. I'm having pros trying to delete the infected file and when I do so I get an error message telling me it cannot read from the source file or disk.
Also will BD Pro 9 delete.
I just cant seem to get rid of it, just seems to stay and doesnt want to be deleted." }-
PUCE is a file infector, So any running files/processes will be infected.
Easiest solution is to find a program that can cure the files instead of delete them. Try Drweb CureIt!
http://www.sophos.com/security/analyses/w32puceb.html
-{ Quote: "
This section contains the description and advanced technical information
W32/Puce-B is a file infecting virus.
W32/Puce-B infects executable files and stores the host in the resource section. The infected file will have the same icon as the original host.
If run on the 26th of January, April, July or October, the virus will cause the cursor to move randomly around the desktop." }-
Albinoni
July 26th, 2006, 01:14 PM
My Q here now is why has Sophos got a cure for this and BD hasn't. Just doesnt sound right.
Don Pelotas
July 26th, 2006, 02:01 PM
-{ Quote: "Just doesnt sound right." }-
Why does it not sound right?
Albinoni
July 27th, 2006, 12:04 AM
-{ Quote: "Why does it not sound right?" }-
Well if Sophos has a cure for it than really shouldnt BD, if BD is rated as one of the best AntiVirus out there, same also applies to NOD32.
kjempen
July 27th, 2006, 12:46 AM
-{ Quote: "Well if Sophos has a cure for it than really shouldnt BD, if BD is rated as one of the best AntiVirus out there, same also applies to NOD32." }-
So NOD32 couldn't cure/disinfect this virus either?
Back to BitDefender, perhaps try to contact Softwin support and explain the situation and ask why their product is unable to clean the virus?
Anyway, according to checkvir.com (http://www.checkvir.com/), it seems that Trend Micro is doing a consistently good job at cleaning viruses (always getting the "Advanced" certificate in their tests). Try their HouseCall (http://housecall.trendmicro.com/) online scanner maybe, as it should be able to detect the virus at least? (Disable BitDefender or any other antivirus you have running while using the online scanner, so that it may gain access to and clean any infected files it finds.)
Albinoni
July 27th, 2006, 01:57 AM
-{ Quote: "So NOD32 couldn't cure/disinfect this virus either?
Back to BitDefender, perhaps try to contact Softwin support and explain the situation and ask why their product is unable to clean the virus?
Anyway, according to checkvir.com (http://www.checkvir.com/), it seems that Trend Micro is doing a consistently good job at cleaning viruses (always getting the "Advanced" certificate in their tests). Try their HouseCall (http://housecall.trendmicro.com/) online scanner maybe, as it should be able to detect the virus at least? (Disable BitDefender or any other antivirus you have running while using the online scanner, so that it may gain access to and clean any infected files it finds.)" }-
No, this PC isnt using NOD32 when I said NOD32 I was only using an example. I'm sure it does cure it.
I have already emailed Softwin and atm waiting for their reply. Also currently I'm doing a full virus scan on the C drive and it already has picked up 6 viruses, so hopefully its doing its job. Some of these being Trojans as well. I'm sure Bitdefender does detect this virus.
Yes and I'm sure so does NOD32 and Bitdefender both do an excellent job at cleaning viruses, same prob applies to others as well.
Don Pelotas
July 27th, 2006, 04:42 AM
-{ Quote: "Well if Sophos has a cure for it than really shouldnt BD, if BD is rated as one of the best AntiVirus out there, same also applies to NOD32." }-
BD is a good AV, but just like any other AV, it will miss some even when other AV's are already covering it.:)
vBulletin® Copyright ©2000-2012, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2012, Wilders Security Forums