Page 1 of 1

UBCD ID'd as a Virus

Posted: Sun Jan 30, 2011 3:16 am
by watcher
Over the last few years I have downloaded UBCD 502, 503 and I even have some old ones like 411 and UBCD24.exe and have played around with Bart-PE trying to get a bootable disk for Malware cleaning, seems to be pretty complicated so I gave up.

Then I found some bootable "Rescue Disks" like Avira's "AntiVir Rescue Disk" and burned their iso file to a CD. I ran it on 2 different computers and EVERY copy that I have of UBCD was ID's as a virus by Avira AntiVir Rescue Disk. At least 3 of the copies I downloaded from the following link: http://www.ultimatebootcd.com/download.html

I downloaded the files from the mirrors: 'Older Geeks' and 'AusGamers'. The older ones I do not remember?

I just downloaded another copy from 'Michigan Tech Linux/UNIX Users Group' and will test it tomorrow.

So do you think that they are REAL viruses or False-Positives. Thanks for Your Help

Re: UBCD ID'd as a Virus

Posted: Sun Jan 30, 2011 3:59 am
by Icecube
Always check if the MD5sum or SHA1 sum of the ISO match with the value on the UBCD site.

Some programs inside UBCD are detected as "virusses" because they do things that you normally don't want to see: like resetting BIOS paswords, ...

Can you tell which files on UBCD where detected by Avira?

Re: UBCD ID'd as a Virus

Posted: Sun Jan 30, 2011 7:09 pm
by watcher
No Antivir only ID'd the whole program as an virus. I have not checked MD5 sums for a file in a long time so I do not remember how to do it?? And I have never checked a or SHA1 sum.

I used the Antivir Rescue Disk because it does not delete or quarantine the files but merely renames them so I still have them to check the MD5 sums.

Re: UBCD ID'd as a Virus

Posted: Sat Feb 05, 2011 12:07 am
by StopSpazzing
Whole program identified as a virus? UBCD is a collection of tools not a program you just run. Please elaborate on what it detects and what are you scanning? CD? USB?

Re: UBCD ID'd as a Virus

Posted: Sun Feb 06, 2011 3:03 am
by watcher
Well I am NOT sure now? :roll:

I cannot access that computer right now but they were executable files, not .iso files that I had downloaded, such as UBCD501.exe and UBCD24.exe (an old file year 2005).

When I look now all I see is iso files. :shock: So I'll have to wait until I can access that other computer (next week) that I had the files ID'd as viruses on.

So I'll get back to you in 3-5 days. THANKS :D :D

Re: UBCD ID'd as a Virus

Posted: Sun Feb 06, 2011 8:20 pm
by StopSpazzing
UBCD download is an ISO file, not an executable. I not sure where you downloaded these files but they are not from here...


Make sure you download the files from one of the mirrors located here: http://ultimatebootcd.com/download.html

Also make sure after the download that the MD5/SHA1 Checksum matches.

Re: UBCD ID'd as a Virus

Posted: Mon Mar 07, 2011 11:45 am
by aminou
hello everyone,please help me,i used ubcd v4.10 and my antivirus said me that it have a trojan,in this directory(E:\dosapps\astra\astra.prg) and the name of the virus is (backdoor.darkmoon.kj)
please help me,im so woried,if is a dangerous trojan,i woried if it ran rob me private files,thanks in advance

Re: UBCD ID'd as a Virus

Posted: Mon Mar 07, 2011 4:21 pm
by Icecube
UBCD v4.10 is very old, try a newer version.