IPB

Welcome Guest ( Log In | Register )

 
Closed TopicStart new topic
> Virus.Win32.Tenga.a, and file installation
Tybilly
post 11.12.2005 17:37
Post #1


Kaspersky fan
********

Group: Gold beta testers
Posts: 1650
Joined: 1.06.2005
From: Paris, France




Hi,

After a full scan of my computer with KIS6 6.0.0.238, several objects has been detected as Virus.Win32.Tenga.a (see screenshot). This files are installation files of known application (like KAV Personal 5.0.388 installation file), that i gather in a folder.

According to Viruslist.com :
QUOTE
Tenga infects PE exe files. The virus can also act as a Network-Worm on machines with an unpatched DCOM RPC vulnerability. Microsoft Security Bulletin MX03-026 details the vulnerability. After launch, Tenga checks if the domain vx9.users.freebsd is available and attempts to dowload Trojan-Downloader.Win32.Small.bdc from http://**nt*.lycos.it/v**/dl.exe Tenga is a classic appending virus that increases the size of infected files by 3 KB.


Detection of RiskWare are activated in the parameters of KIS6.

So should I delete this file and download again?

How can this file has been infected?

Thanks for Reply



--------------------
My personal spam pot: billy11@free.fr
Go to the top of the page
 
+Quote Post
Sanja
post 11.12.2005 22:44
Post #2


Advanced Member
******

Group: Gold beta testers
Posts: 817
Joined: 7.04.2005




btw grnic - look - message looks strange - "detected: virus Virus" smile.gif maybe rename "Virus" to "FileVirus"?


--------------------
IT Analyst / Developer
Go to the top of the page
 
+Quote Post
Leo Max
post 13.12.2005 23:22
Post #3


Kaspersky fan
********

Group: Gold beta testers
Posts: 1362
Joined: 26.05.2005
From: California, USA




QUOTE(Tybilly @ Dec 11 2005, 06:37 AM)
Hi,

After a full scan of my computer with KIS6 6.0.0.238, several objects has been detected as Virus.Win32.Tenga.a (see screenshot). This files are installation files of known application (like KAV Personal 5.0.388 installation file), that i gather in a folder.

According to Viruslist.com :
Detection of RiskWare are activated in the parameters of KIS6.

So should I delete this file and download again?

How can this file has been infected?

Thanks for Reply
 

*


I had this issue with Java installation.


--------------------
Kaspersky logo Wallpapers

ASUS G50VT-X8TW | C2D P8600 @ 2.4 | 9800M GS @ 600/1500/850 @ 0.95v.

if (KIS8_INSTALLED && PROTECTION_ENABLED) {SECURITY_LEVEL = "VERY_HIGH"} else {UNINSTALL_CURRENT_AV; INSTALL_KIS}
Go to the top of the page
 
+Quote Post

Closed TopicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 



Lo-Fi Version Time is now: 22.11.2009 11:33