IMON preventing UBCD4Win download

Discussion in 'NOD32 version 2 Forum' started by enduser999, Jun 22, 2006.

Thread Status:
Not open for further replies.
  1. enduser999

    enduser999 Registered Member

    Joined:
    Apr 17, 2005
    Posts:
    418
    Location:
    The Peg
  2. NOD32 user

    NOD32 user Registered Member

    Joined:
    Jan 23, 2005
    Posts:
    1,766
    Location:
    Australia
    Just download it from the proper site and it should be OK - I've never heard of it having anything malicious in it before.
    http://www.ultimatebootcd.com/
     
  3. enduser999

    enduser999 Registered Member

    Joined:
    Apr 17, 2005
    Posts:
    418
    Location:
    The Peg
    Last edited: Jun 22, 2006
  4. NOD32 user

    NOD32 user Registered Member

    Joined:
    Jan 23, 2005
    Posts:
    1,766
    Location:
    Australia
    I would certainly be interested to see a detailed NOD32 scan result of the file you have there...
     
  5. enduser999

    enduser999 Registered Member

    Joined:
    Apr 17, 2005
    Posts:
    418
    Location:
    The Peg
    Attached is the scan log file for the downloaded file.
     

    Attached Files:

  6. NOD32 user

    NOD32 user Registered Member

    Joined:
    Jan 23, 2005
    Posts:
    1,766
    Location:
    Australia
    Number of threats found: 3
    As you can see already the detections are for Potentially Dangerous Applications:-

    G:\UBCD4WinV30.exe ... keyfinder.exe »RAR »xpkey.exe - Win32/PSWTool.RAS.A application - was a part of the deleted object
    G:\UBCD4WinV30.exe ... keyfinder.exe »RAR »officekey.exe - Win32/PSWTool.RAS.A application - was a part of the deleted object
    G:\UBCD4WinV30.exe ... nc.exe - Win32/RemoteAdmin.NetCat application - was a part of the deleted object

    When downloading such things it is necessary to disable PDA checking in IMON and AMON.

    HTH :)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.