B
Buzzard
My aunt has the obfustat virus on her computer.
Specifially, "obfustat.UVE".
It resides in "c:\windows\system32\pccapcc.dll".
AVG free, up-to-date, detects it, but cannot delete it.
(select "heal", or "put in vault", and it thinks it did,
but the file is still there in system32).
Safe-mode boot, no difference.
I found several references to pccapcc.dll in the
registry, 2 under CLSID/{big_long_gobbeldygook_keycode},
and one under windows services, so I think its being
loaded as a service (under svchost perhaps?)
What I would like to know is:
Is pccapcc.dll a file that is supposed to be in XP and
the virus has simply infected it, or is this a bogus dll
that has no business being there in the first place?
In other words, is it safe to chop out all references to
pccapcc.dll in the registry, so that XP will allow me to
delete the file without "access denied" ?
(The file permissions on pccapcc.dll look like deletion
is allowed, but any deletion attempt is still denied)
Anyone else out there had problems with an obfustat virus
that AVG couldn't remove?
Specifially, "obfustat.UVE".
It resides in "c:\windows\system32\pccapcc.dll".
AVG free, up-to-date, detects it, but cannot delete it.
(select "heal", or "put in vault", and it thinks it did,
but the file is still there in system32).
Safe-mode boot, no difference.
I found several references to pccapcc.dll in the
registry, 2 under CLSID/{big_long_gobbeldygook_keycode},
and one under windows services, so I think its being
loaded as a service (under svchost perhaps?)
What I would like to know is:
Is pccapcc.dll a file that is supposed to be in XP and
the virus has simply infected it, or is this a bogus dll
that has no business being there in the first place?
In other words, is it safe to chop out all references to
pccapcc.dll in the registry, so that XP will allow me to
delete the file without "access denied" ?
(The file permissions on pccapcc.dll look like deletion
is allowed, but any deletion attempt is still denied)
Anyone else out there had problems with an obfustat virus
that AVG couldn't remove?