Go Back   CA Home and Home Office Forum > Virus/Spyware > Malware Removal
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Closed Thread
 
Thread Tools Search this Thread Display Modes
  #1  
Old 07-08-2009, 10:38 PM
kayakdude kayakdude is offline
Junior Member
 
Join Date: Jul 2009
Posts: 7
kayakdude is on a distinguished road
Default win32/amalum.zznra win32/amalum.zzoiz

CA came up and said it quarantined these items, now windows is asking me to insert the CD for Windows service pack 3 because "files that are required for windows to operate properly have been replaced by unrecognized versions. To maintain system stability, Windows must restore the original versions of these files. Insert your Windows XP Home Edition Service Pack 3 CD now." When you click cancel, you get a warning "Windows File Protection. You chose not to restore the original versions of the files. This may affect Windows stability. Are you sure you want to keep these unrecognized file versions? Yes / No "

Several other members of Bleepingcomputers.com have the exact same problem and all are running CA anti-virus.

What's going on here and how do we fix it. None of us have a SP 3 CD as it was downloaded. If we clik No on the unrecognized file versions are we gonna mess up windows?

Thanks

edit: I have the following win32/amalum. ZZNRA,ZZOAF,ZZNPB,ZZOKH, ZZNXU

Last edited by kayakdude; 07-08-2009 at 11:21 PM.
  #2  
Old 07-08-2009, 10:40 PM
kayakdude kayakdude is offline
Junior Member
 
Join Date: Jul 2009
Posts: 7
kayakdude is on a distinguished road
Default

felt i need to note, running most current version of CA anti-virus.
  #3  
Old 07-08-2009, 10:50 PM
nelsonrph nelsonrph is offline
Junior Member
 
Join Date: Jul 2009
Posts: 1
nelsonrph is on a distinguished road
Default Win32/AMalum

My system has also been infected by the Win32/AMalum virus in several files. I have updated and scanned but the system is not placing the files into quarantine. How can I remove this virus? Thanks.
  #4  
Old 07-08-2009, 11:33 PM
cathib cathib is offline
Junior Member
 
Join Date: Jul 2009
Posts: 1
cathib is on a distinguished road
Default Same thing

DITTO! Helloooooo??? Is anybody in here?
  #5  
Old 07-08-2009, 11:36 PM
Ozgal Ozgal is offline
Junior Member
 
Join Date: Jul 2009
Posts: 2
Ozgal is on a distinguished road
Default

Yep same here, quarantined 3 of the AMalum files but one it didnt. I opened a folder and CA immediately reported another instance of the infection. Windows Alerts is saying its system files have been changed and SP3 CD is needed. Running the latest virus signatures.

Checked on the net and this one is appearing all over forums as of today, CA Virus Scanner seems to be the only one reporting this

A Response is sorely needed on this one.

***go search at yahoo *** someone posted that they had spoken to a CA tech and its a false positive..


Could someone please post here so we are assured that this information is correct

Last edited by Ozgal; 07-08-2009 at 11:42 PM. Reason: Additional info
  #6  
Old 07-09-2009, 12:02 AM
CKoehn CKoehn is offline
Junior Member
 
Join Date: Jul 2009
Posts: 1
CKoehn is on a distinguished road
Default

I am having the same issues. CA is removing files that Windows needs to operate. I snoozed my AV and retored all the files and am not getting any messages anymore, but I am very close to removing CA AntiVirus and switching to someone else. This is BS and it should not be happening. I sent some of the files to friends and they scanned with their AV and they all turned out clean.

My vote is that it's a false positive, and it's only a matter of time before someone makes the mistake of deleting the files and will have no way to restore them.

My XP CD is SP 1a so I was unable to restore from CD like windows wanted me to.

On top of that I find that I NOW need to pay $19.95 for 1 incident phone support? That's absolutely REDICULOUS! I work in the customer support industry and most customer's that I deal with have told me if they had to pay for support, they'd find another product.
  #7  
Old 07-09-2009, 12:56 AM
pc2870 pc2870 is offline
Junior Member
 
Join Date: Jul 2009
Posts: 1
pc2870 is on a distinguished road
Angry

I spoke today 9/7 to CA australia who confirmed that it was a false alarm and will be corrected by tomorrow (supposedly).

Doesn't help solve all the windows issues today though!!!
  #8  
Old 07-09-2009, 01:01 AM
kayakdude kayakdude is offline
Junior Member
 
Join Date: Jul 2009
Posts: 7
kayakdude is on a distinguished road
Default

OK. This is definitely a CA anti-virus problem - it was identifying windows components as a virus. When the files were quarantined, that is what caused the windows errors. I de-quarantined the affected files, re-scanned and had no problem.
  #9  
Old 07-09-2009, 01:20 AM
Diablo Diablo is offline
Junior Member
 
Join Date: Jul 2009
Posts: 2
Diablo is on a distinguished road
Default

When will this be fixed? Around when is the next update? I'm getting scared my computer is messed up, my firefox doesnt load pages but my internet explorer does..
  #10  
Old 07-09-2009, 01:36 AM
lafreedom lafreedom is offline
Junior Member
 
Join Date: Jul 2009
Posts: 1
lafreedom is on a distinguished road
Exclamation win32/AMalum virus

this virus popped up on my two sons two computers minutes apart. I feel bad i got a little mad at them thinking they had downloaded some cheats for their games or something. I have CA antivirus on 3 computers along with Webroot spysweeper. still the virus got thru. Malwarebytes anti-malware got it off my sons computers but guess what it just popped up on my computer. first run using malwarebytes in quickscan mode came up blank, running a second time in deep scan mode right now.....so far i got one infected file.

Quote:
Originally Posted by kayakdude View Post
CA came up and said it quarantined these items, now windows is asking me to insert the CD for Windows service pack 3 because "files that are required for windows to operate properly have been replaced by unrecognized versions. To maintain system stability, Windows must restore the original versions of these files. Insert your Windows XP Home Edition Service Pack 3 CD now." When you click cancel, you get a warning "Windows File Protection. You chose not to restore the original versions of the files. This may affect Windows stability. Are you sure you want to keep these unrecognized file versions? Yes / No "

Several other members of Bleepingcomputers.com have the exact same problem and all are running CA anti-virus.

What's going on here and how do we fix it. None of us have a SP 3 CD as it was downloaded. If we clik No on the unrecognized file versions are we gonna mess up windows?

Thanks

edit: I have the following win32/amalum. ZZNRA,ZZOAF,ZZNPB,ZZOKH, ZZNXU
Closed Thread

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 01:57 AM.


Powered by vBulletin® Version 3.8.2
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.