Link to home
Start Free TrialLog in
Avatar of HenryWilfred
HenryWilfredFlag for United States of America

asked on

Can AVG remove these viruses?

I have a computer that is supposed to be protected by AVG Anti-Virus Network Edition 8.5, yet AVG has detected several viruses and worms that it did not automaticaly heal or delete. AVG also did not give any obvious warning that there was a problem - until I looked in the detailed scan history. The email system being used is Thunderbird, and the majority of the infections are in the email.

Questions:
0. Are there other programs than AVG that would clearly warn the user to the infections? Or did AVG not warn of the problem well because the viruses are affecting it?
1. Can AVG remove these viruses (see avg report at the bottom)?
2. Would some other program be better at removing the viruses? Such as Norton Anti-Virus?
3. I see that both AVG and Norton sell special services to remove viruses rather than directing the user to simply download their standard anti-virus programs - so I gather then that neither of there basic anti-virus programs are effective for virus removal? Does anybody recommend the special virus removal services that AVG or Norton offers?
4. I noticed that several viruses in Thunderbird went unnoticed by AVG until I ran IMAPSize to try to convert the emails from mboxtoeml format. Does this mean that AVG is poor at detecting infected emails downloaded via Thunderbird? Is there another anti-virus program that works better with Thunderbird? Or is it best simply to switch to Microsoft Outlook?

HERE ATTACHED IS THE AVG VIRUS INFECTION REPORT - Note that it did not say the files were "Deleted" until after I viewed the detailed scan history and selected "Remove all unhealed infections". At that point it complained that some of the files were too big to remove. Did it really remove them?
"C:\ARCDATA\Users\ehonecker\Mail\Inboxold";"Virus identified I-Worm/Generic.CBM";"Deleted"
"C:\ARCDATA\Users\ehonecker\Mail\Inboxold:\body.zip";"Virus identified I-Worm/Mydoom.A";"Deleted"
"C:\ARCDATA\Users\ehonecker\Mail\Inboxold:\Cudy.scr";"Virus identified I-Worm/Generic.CBM";"Deleted"
"C:\ARCDATA\Users\ehonecker\Mail\Inboxold:\gegen.scr";"Virus identified I-Worm/Generic.CBM";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7801_20100305_115208_478.eml";"Trojan horse Generic16.BNVD";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7801_20100305_115208_478.eml:\open.zip";"Trojan horse Generic16.BNVD";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7801_20100305_115208_478.eml:\open.zip:\open.exe";"Trojan horse Generic16.BNVD";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7805_20100305_115208_962.eml";"Trojan horse Downloader.Generic9.AVHI";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7805_20100305_115208_962.eml:\open.zip";"Trojan horse Downloader.Generic9.AVHI";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7805_20100305_115208_962.eml:\open.zip:\open.exe";"Trojan horse Downloader.Generic9.AVHI";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7812_20100305_115209_040.eml";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7812_20100305_115209_040.eml:\open.zip";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7812_20100305_115209_040.eml:\open.zip:\open.exe";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7824_20100305_115209_743.eml";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7824_20100305_115209_743.eml:\open.zip";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Conflicker.B Infection Alert_7824_20100305_115209_743.eml:\open.zip:\open.exe";"Virus identified Win32/Cryptor";"Deleted"
"C:\convertedemail\Inbox\Congratulations_6757_20100305_115034_900.eml";"Trojan horse Generic15.ARXB";"Deleted"
"C:\convertedemail\Inbox\Congratulations_6757_20100305_115034_900.eml:\winner.zip";"Trojan horse Generic15.ARXB";"Deleted"
"C:\convertedemail\Inbox\Congratulations_6757_20100305_115034_900.eml:\winner.zip:\winner.exe";"Trojan horse Generic15.ARXB";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6499_20100305_115004_681.eml";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6499_20100305_115004_681.eml:\install.zip";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6499_20100305_115004_681.eml:\install.zip:\install.exe";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6500_20100305_115004_712.eml";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6500_20100305_115004_712.eml:\install.zip";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6500_20100305_115004_712.eml:\install.zip:\install.exe";"Trojan horse SHeur2.BLNK";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6502_20100305_115004_806.eml";"Trojan horse Crypt.ICL";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6502_20100305_115004_806.eml:\install.zip";"Trojan horse Crypt.ICL";"Deleted"
"C:\convertedemail\Inbox\Microsoft Outlook Notification for the bhonecker@arcse-mn.org_6502_20100305_115004_806.eml:\install.zip:\install.exe";"Trojan horse Crypt.ICL";"Deleted"
"C:\convertedemail\Inbox\UPS Invoice 5305325782943_6630_20100305_115021_321.eml";"Trojan horse Agent2.YLH";"Deleted"
"C:\convertedemail\Inbox\UPS Invoice 5305325782943_6630_20100305_115021_321.eml:\RESU8723.zip";"Trojan horse Agent2.YLH";"Deleted"
"C:\convertedemail\Inbox\UPS Invoice 5305325782943_6630_20100305_115021_321.eml:\RESU8723.zip:\RESU8723.exe";"Trojan horse Agent2.YLH";"Deleted"
"C:\convertedemail\Inbox\Your internet access is going to get suspended_7695_20100305_115205_134.eml";"Trojan horse FakeAV.GH";"Deleted"
"C:\convertedemail\Inbox\Your internet access is going to get suspended_7695_20100305_115205_134.eml:\report.zip";"Trojan horse FakeAV.GH";"Deleted"
"C:\convertedemail\Inbox\Your internet access is going to get suspended_7695_20100305_115205_134.eml:\report.zip:\report.exe";"Trojan horse FakeAV.GH";"Deleted"
"C:\convertedemail\Inbox\You've received a postcard_6469_20100305_114947_290.eml";"Virus found FakeAlert";"Deleted"
"C:\convertedemail\Inbox\You've received a postcard_6469_20100305_114947_290.eml:\ecard.zip";"Virus found FakeAlert";"Deleted"
"C:\Documents and Settings\Bethh\Application Data\Thunderbird\Profiles\9im1z7cu.default\Mail\mail.arcse-mn.org\Inboxold";"Virus identified I-Worm/Generic.CBM";"Deleted"
"C:\Documents and Settings\Bethh\Application Data\Thunderbird\Profiles\9im1z7cu.default\Mail\mail.arcse-mn.org\Inboxold:\body.zip";"Virus identified I-Worm/Mydoom.A";"Deleted"
"C:\Documents and Settings\Bethh\Application Data\Thunderbird\Profiles\9im1z7cu.default\Mail\mail.arcse-mn.org\Inboxold:\Cudy.scr";"Virus identified I-Worm/Generic.CBM";"Deleted"
"C:\Documents and Settings\Bethh\Application Data\Thunderbird\Profiles\9im1z7cu.default\Mail\mail.arcse-mn.org\Inboxold:\gegen.scr";"Virus identified I-Worm/Generic.CBM";"Deleted"

THE REST OF THE AVG VIRUS REPORT - THE SPYWARE SECTION:
"C:\ARCDATA\Users\efockler\Trash.sbd\Mail\Office People.sbd\Marta";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\efockler\Trash.sbd\Mail\Office People.sbd\Marta:\INFO.EXE";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\efockler5\News\Trash.sbd\Mail\Office People.sbd\Marta";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\efockler5\News\Trash.sbd\Mail\Office People.sbd\Marta:\INFO.EXE";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\ehonecker\Mail\Office People.sbd\Marta";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\ehonecker\Mail\Office People.sbd\Marta:\INFO.EXE";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\ehonecker\Trash.sbd\Mail\Office People.sbd\Marta";"Potentially harmful program Joke.BO";"Deleted"
"C:\ARCDATA\Users\ehonecker\Trash.sbd\Mail\Office People.sbd\Marta:\INFO.EXE";"Potentially harmful program Joke.BO";"Deleted"
ASKER CERTIFIED SOLUTION
Avatar of johnb6767
johnb6767
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of HenryWilfred

ASKER

It deleted them but not automaticaly as I had told it to in the options, and it complained a lot on delete.

I do not see an option to not nofity the user anywhere.
Ill have to see if I can get on a machine with 8.5 Network Version........