Any idea if this is a virus, very little info on axel.dav.
A bit of "googling" produced these results:
It seems to be a virus and the writer is from Europe.
The leftover files are hard to get rid of, not even with a reinstall.
Only Fdisk and Format will do the trick.
Good luck.
Harry.
I don't think this is a Virus. All references tie axel.dav to HP computers so it may very
well be HP software realted.
I dealt with theis a while back and I think there was a false positive for the VBS:Redlof on
that file.
Just to be sure...
Please submit a sample of "axel.dav" to Virus Total --
http://www.virustotal.com/flash/index_en.html
The submission will then be tested against many different AV vendor's scanners.
That will give you an idea what it is and who recognizes it. In addition, unless told
otherwise, Virus Total will provide the sample to all participating vendors.
You can also submit a suspect, one at a time, via the following email URL...
mailto:sc...@virustotal.com?subject=SCAN
When you get the report, please post back the exact results.
--
Dave
http://www.claymania.com/removal-trojan-adware.html
http://www.ik-cs.com/got-a-virus.htm
Yeah, he's the lead singer for Guns n' Roses.
--
Ragdollbaby1208
------------------------------------------------------------------------
Ragdollbaby1208's Profile: http://forums.techarena.in/member.php?userid=40562
View this thread: http://forums.techarena.in/showthread.php?t=694144
> the Recovery disc's from HP is the axel.dav virus over 3000 files, it
> has trashed my computer, porgrams and alot of my files, still HP don't
> hold themselves responsible for this problem and basically called me a
Did it ever occur to you, that the recovery partition may have been fine,
until your computer became infected? Just because the recovery partition
is not normally made visible to regular applications, does not mean it can
not be written to, and infected. If you're running xp, as an administrator,
the virus doesn't even need to escalate privleges, to write to the recovery
partition. If you are running as an unpriveledged user, it can still be
done, by a variety of priveledge escalation methods.
Format & re-install, requires installing from known clean media. It does
not mean re-install, from a writable hard drive, on the already infected
computer.
--
Change nomail.afraid.org to ody.ca to reply by email.
(nomail.afraid.org has been set up specifically for
use in usenet. Feel free to use it yourself.)
Therefore, either it came with the recovery partition already infected
from the factory, ups pulled the computer in the warehouse, opened it
up and infected the recovery partitition, or the blank cds were
infected from the store, now with that said what would be the most
likely case scenerio.
> Format & re-install, requires installing from known clean media. It
> does
> not mean re-install, from a writable hard drive, on the already
> infected
> computer.
>
Exactly and that is how it was discovered, the system was being
formated and re-installed from the initial recovery disks not the
harddrive itself, that were made up receiving the computer. This was
full format not just a partition format. Therefore the computer had to
been infected prior to arrival.
When you restored, did you boot windows from the HD and
then insert the recovery CD's, or did you coldboot the
computer *from* the first recovery CD?
--
Buzzard
del C:\axel.dav /s /q
and let it run till it stops. if it says the command in the titlebar,
its still running. it'll delete most of the axel.dav files in ur system,
which could take a while to find and get rid of. once its done that,
type in:
del C:\axel.dav /s /q /a:h
and that will delete the rest. both things can(and probably will) take
a while, while it searches
PS: if you're wondering, /s means delete specified file in all
sub-directories, /q tells it not come up with a confirmation box, and
/a:h tells it to delete hidden files. the command you put in first only
deleted ones that werent hidden, and the second one would only delete
ones that are (leaving the ones that arent)
--
kkaionsg
------------------------------------------------------------------------
kkaionsg's Profile: http://forums.techarena.in/members/160205.htm
View this thread: http://forums.techarena.in/security-systems/694144.htm