PDA

View Full Version : Backdoor-CFB virus


OAPChas
September 18th, 2004, 10:25 AM
>:( I wish I could get rid of this little bugger hiding in c:\windows\system32\comaf.dll

Now I've tried every posible virus detector that's supposed to delete this virus inc stinger, McAfee Virusscan 8 and a whole host of others do not detect it.

However if I run Spybot or Adaware and when they start to check through system32 the McAfee Virusscan popup does bonkers saying it's detected this backdoor-CFB but cannot clean or quarantine. It also does this if I physically click on the comaf.dll file in windows explorer.

Please help this is driving me nutts everytime I run Adaware or Spybot.

steve1955
September 18th, 2004, 10:29 AM
have you tried scanning in safe mode?What app is comaf.dll associated with I dont have it on my system?

OAPChas
September 18th, 2004, 10:33 AM
certainly have no luck............... :(

steve1955
September 18th, 2004, 10:40 AM
Hi
Removal instructions here(using McAFee)
http://vil.nai.com/vil/content/v_126106.htm#RemovalInstructions

Matt_Smi
September 18th, 2004, 11:56 AM
This thing is a real pain; see this thread I started for lots of details. http://www.wilderssecurity.com/showthread.php?t=40262

OAPChas
September 19th, 2004, 06:37 AM
:-[ Right I've read the other threads and I'm keeping the virus, simple as that as a complete novice I'm not even gonna entertain edit registry's and all of that.

Sad but I'll live with it, stil cannot believe that even something like Stinger that claims to remove the Backdoor-CFB will not even detect it on my system, odd?

Tried Trend Micro's PC-Cillin no detection but it certainly manages to trigger the McAfee popup.

steve1955
September 19th, 2004, 11:04 AM
Have you tried to contact McAFee? they might be able to help(without editing reg:-according to their site if latest dat file is installed it should be able to cure problem automatically on reboot!)
If other AVs dont detect it could possibly be a false +ve drop them an email,I'm sure they can throw some light on prob(you've nothing to loose anyway)
Steve