View Single Post
  #20  
Old November 25th 09, 01:39 AM posted to microsoft.public.security.virus,microsoft.public.windowsxp.help_and_support
NT Canuck[_3_]
external usenet poster
 
Posts: 3
Default Infection messages?

"Daave" wrote in message
...


Could be indicative of a program of a legitimate program
(antimalware) that is installed that is processing a deletion request
that is intended to occur PRIOR to the GUI being loaded and where
most file handles would be in use.


That is a good point. It could be anything. Unfortunately, I don't speak
French and the best I could come up with is this Google translation:


I'd suspect something along the lines of Internet track/trace evidence
removal program (adaware or similar), since the index.dat in that
location is a system file (locked/used by Explorer/IE/OutlookExpress
and a few others like the A/V in use etc.) that it has to be (if done)
deleted/moved during boot up before the OS logon and this is
likely the screen shown...boot phase, logging the boot sequence
(like shown on display during safe mode start up) would help.

snip
The screen shot:

http://dl.toofiles.com/uc4yon/images...7yj-ziucmm.jpg

I don't have Vista, so I don't know what a BSOD looks like in it, but an
XP BSOD would be *all blue* and not what this French poster submitted.


My comments earlier, typically it's not a bad file...very seldom a threat.

hth

--
'Seek and ye shall find'
NT Canuck


Ads