Adware.admoke.da

Greatbigmouth
edited September 2007 in Malware talk

Hi. I ran a deep system scan today and BitDefender detected the following virus: Adware.Admoke.DA


It can't, however, remove the file since it's in an archive. The only problem is that I can't find the destination folder on my C:/ Drive. Here is the path of the infected file, along with the scan report.


How do I delete this file?


Thanks in advance,


Werner


C:\System Volume Information\_restore{25A38CFE-6B42-400C-94CB-B41AE3CC5D69}\RP130\A0037898.exe=]wise0281

/applications/core/interface/file/attachment.php?id=661" data-fileid="661" rel="">1190492186_9_02.xml

Comments

  • Hello Greatbigmouth


    The two reasons why you can't find that folder is because it's a hidden folder and an important system folder. These are hidden because they are essential for the proper working of system restore in this case.


    If you want to see them go to start,my computer,double click on the icon of your hard disc go to the tools,folder options,display (view) uncheck hide system protected operating system files and check show hidden files and folders confirm by pressing on apply. Now you will find that folder.


    You have to temporary disable realtime protection otherwise BitDefender will not allow to empty your system restore points. Rightclick on the red BitDefender icon near the system clock choose settings,antivirus,shield uncheck realtime protection for the newest 2008 productline. For the earlier versions of BitDefender you can choose for antivirus,click on enable realtime-protection. If you have done that go to start,right click on my computer,choose properties,press on the system restore tab,check the option disable system restore on all stations and press on apply to confirm everything will grey out. When that occurs uncheck disable system restore on all stations and press on apply again. You will loose all your system restore points.


    Now re-enable realtime protection by leftclick on realtime protection or in the newest version of BitDefender going to settings,antivirus,and check realtime protection again.


    Best regards


    Niels

  • Hi Niels,


    Thanks for the advice. I managed to clear my restore points and remove the virus. However, can you tell me how it got there in the first place? I don't recall receiving a warning from BitDefender that my PC is infected. :huh:


    Regards,


    Werner

  • Hello Greatbigmouth


    Windows makes a system restore point every day. So what happened is the following BitDefender cleared the adware but the references to the infected files are stored in the system restore point. BitDefender thinks that the virus is still there but the executables and infected files are gone so you can't activate the malware. Other vendors do the same.


    Glad that I could help you.


    Best regards


    Niels