Author Topic: Get rid of worm msgfix.exe  (Read 3861 times)

0 Members and 1 Guest are viewing this topic.

ymai

  • Guest
Get rid of worm msgfix.exe
« on: May 05, 2004, 05:44:01 PM »
Hello everybody
How can I get rid of msgfix.exe worm?
My firewall (Sygate) denies any outgoing traffic from msgfix.exe trying to connect to several Undernet servers. So, it's not a really big problem.
But...
Avast Home Antivirus (0419-0) doesn't even see it while Trend Micro online antivirus scanner appearently detects and destroys it.

My big problem is that msgfix.exe came back after destruction and Registry cleaning (all msgfix.exe entries) a few days ago. It came back this morning at a time (says my firewall) I wasn't even home and nobody used my computer... Maybe it stays hidden somewhere.
Rather confusing.
Why doesn't Avast clean it?
Help anybody?
Y. Mairesse

hungrylilboy

  • Guest
Re:Get rid of worm msgfix.exe
« Reply #1 on: May 05, 2004, 05:48:07 PM »
ru running xp? if so u will need to turn ur system restore off and then run the anti virus and delete it that way.

also stop the process first (ctrl, alt and del, opens task manager, then look for the .exe and right click and end process)

this should allow u to delete it. Make sure ur system restore is off.

use trend and delete it, then remember to turn ur system restore back on.

I dont know why avast isnt finding it.

ymai

  • Guest
Re:Get rid of worm msgfix.exe
« Reply #2 on: May 06, 2004, 05:16:50 PM »
Thanks for the answer.
I'm running W2k.
Deleting msgfix.exe isn't possible through the task manager while msgfix.exe is running.
Didn't come back since two days know. Hope it's gone.
Y. Mairesse

hungrylilboy

  • Guest
Re:Get rid of worm msgfix.exe
« Reply #3 on: May 06, 2004, 07:45:59 PM »
Thanks for the answer.
I'm running W2k.
Deleting msgfix.exe isn't possible through the task manager while msgfix.exe is running.
Didn't come back since two days know. Hope it's gone.
Y. Mairesse

u mis read what i suggested. u need to close the process in task manager and then go to where the file is and delete it that way after turning off ur system restore.

remember to turn it back on after