EICAR_Test virus

Discussion in 'malware problems & news' started by Shiri, Nov 18, 2014.

  1. Shiri

    Shiri Registered Member

    Joined:
    May 11, 2013
    Posts:
    49
    Location:
    USA
    004.JPG

    Has anybody received the EICAR_Test virus? Yes, the famous EICAR test has turned into a virus. Probably just a copy cat. I got about 8 or 10 of these so far. :(






    o_O
     
  2. SweX

    SweX Registered Member

    Joined:
    Apr 21, 2007
    Posts:
    6,429
    No. But how did you Receive it, spam email or?
     
  3. subhrobhandari

    subhrobhandari Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    708
    Why is the image crooked like that?
     
  4. SweX

    SweX Registered Member

    Joined:
    Apr 21, 2007
    Posts:
    6,429
    I reckon it's not a screenshot, but a picture taken with a phone for example.
     
  5. Shiri

    Shiri Registered Member

    Joined:
    May 11, 2013
    Posts:
    49
    Location:
    USA
    It just shows up when the antivirus gets it (real time). I changed to Avira 2015 to see if it made any difference, but Avira real time picks it up too :eek: No e-mail or program released it, just shows up like a hungry dog. I delete it every time but it comes back.



    :blink:
     
  6. Shiri

    Shiri Registered Member

    Joined:
    May 11, 2013
    Posts:
    49
    Location:
    USA
    I used my digital camera since it was next to me, you have a problem with that :D



    ;)
     
  7. subhrobhandari

    subhrobhandari Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    708
    Screenshot would've been easier, imho. :p
     
  8. SweX

    SweX Registered Member

    Joined:
    Apr 21, 2007
    Posts:
    6,429
    So you don't know how you "received" it and how it got into your system? And if it comes back just like that you might have something more to take care of.
     
  9. mick92z

    mick92z Registered Member

    Joined:
    Apr 27, 2007
    Posts:
    499
    Location:
    Nottingham
    I have a funny feeling this is not a virus, but a file mistaken for Eicar. I have read it may be related to Bitdefender. Have you got Bitdefender on your machine, or even multiple AV programs
     
  10. Shiri

    Shiri Registered Member

    Joined:
    May 11, 2013
    Posts:
    49
    Location:
    USA



    I think I found out what happened. I did some digging into how it gets sent out every hour and saw an 'Emsisoft Anti-Malware' address attached to the malware link o_O Below ↓ shows it's gone after I uninstalled Emsisoft . The RED highlighted is the malware caught, then it stops. Don't know how that happened :doubt:


    001.JPG
     
  11. htc4

    htc4 Registered Member

    Joined:
    Nov 23, 2014
    Posts:
    1
    Approx. 2014-11-18 the EICAR_Test (or "EICAR Test") threat appeared repeatedly and I chose "remove" but soon AVG re-detects it in c:\windows\temp folder. After several days of not finding solutions on internet, I made a fluke-guess about a second anti-virus BitDefender interferring and after I did uninstall BD (via Windows 7 control panel), plus ran the BitDefender uninstall tool (from their web site). Afterwards, AVG no longer complained. If anyone has a second anti-virus program running (be it BD, Avira, Zone-Alarm, McAfee, .. etc.), do try to remove it first. Be sure to visit each anti-virus developer's web site to determine how to uninstall specific anti-virus program cleanly.
     
  12. fax

    fax Registered Member

    Joined:
    May 30, 2005
    Posts:
    3,723
    Location:
    localhost
    .... Here you have, another reason not to run two AVs at the same time unless they are designed to do so.
     
  13. SweX

    SweX Registered Member

    Joined:
    Apr 21, 2007
    Posts:
    6,429
    Sometimes, finding the cause for a problem is very easy, I like that :thumb:
     
  14. Shiri

    Shiri Registered Member

    Joined:
    May 11, 2013
    Posts:
    49
    Location:
    USA

    I only use 1 anti-virus on mine. I uninstalled the AVG and installed Avira Pro to see if it did the same, it did. Lucked out when I saw the 'Emsisoft' attached to the EICAR link :cool:







    :)
     
Loading...