Results 1 to 5 of 5

Thread: Virus scan with Knoppix?

  1. #1
    Member registered user
    Join Date
    Mar 2004
    Posts
    46

    Virus scan with Knoppix?

    With Knoppix, I understand that I can run a virus
    scan on a (potentially infected) Windows NTFS PC.

    How should I do this?
    Which application does this?
    How will it get the latest virus definitions?

  2. #2
    Senior Member registered user
    Join Date
    Aug 2004
    Location
    In a house... hopefully
    Posts
    554
    NOT RECOMENDED!! to what i know... it isnt recomended to edit any NTFS file system.... but if you want to risk it... i would sugggest

    f-prot or Av-clam (it could be called av-clan)...

    those two are good linux virus scanners....

  3. #3
    Administrator Site Admin-
    Join Date
    Apr 2003
    Location
    USA
    Posts
    5,441
    Chris, it was a valid question. No one said anything about editing files on a NTFS partitiion (which is a bad idea™), but scanning a Windows system with something other than that copy of Windows itself can be important. Once a nasty virus gets into a system (and this is true for any OS, not just Windows) it can gain enough control to hide itself from virus scanners. All virus scanners that run under Windows make API or System Calls to the operating system to request things like the disk sectors they want to scan. If a virus is clever enough (and this ain't rocket science), it can watch these calls and when the call that would return it's location on the disk and reveal it is made, it can just return emptry blocks or some other part of the disk. The scanner never knows it is being lied to. There are, of course, plenty of other ways to fool a scanning program once you have control of the system. Even most experienced users would never detect them. So scanning with software completely independent of the infected system is important. If you get a clean scan you have no need to write to the NTFS partition. If you detect a virus that conceals itself with a "root kit", this may be the only reasonable way that you could detect it. Only then do you need to decide what to do about it, which may well be salvage all of your data with Knoppix, reformat the disk, and completely reinstall.

  4. #4
    Senior Member registered user
    Join Date
    Aug 2004
    Location
    In a house... hopefully
    Posts
    554
    oh ok... me mistake...


    thanks.. i cant wait until we would be able to edit NTFS... then we can all be evil (especially me)

  5. #5
    Senior Member registered user
    Join Date
    Apr 2005
    Location
    italy
    Posts
    245

Similar Threads

  1. Virus Scan from LiveCD
    By patches1391 in forum General Support
    Replies: 8
    Last Post: 04-01-2009, 12:47 AM
  2. knoppix and virus scan
    By mid1700s in forum MS Windows & New to Linux
    Replies: 3
    Last Post: 04-09-2007, 04:32 PM
  3. Trying to virus scan a networked Windows PC from Knoppix
    By Synthpopalooza in forum Networking
    Replies: 2
    Last Post: 09-22-2005, 01:10 PM
  4. newbie - auto myconfig=scan home=scan
    By eentonig in forum General Support
    Replies: 0
    Last Post: 01-11-2005, 10:57 AM
  5. Using F-Prot to Virus Scan Windows Partitions
    By cascadefx in forum Tips and Tricks
    Replies: 1
    Last Post: 07-01-2003, 09:13 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Supermicro 4U 36 Bay Storage Server 2.4Ghz 8-C 128GB 1x1280W Rails TrueNAS ZFS picture

Supermicro 4U 36 Bay Storage Server 2.4Ghz 8-C 128GB 1x1280W Rails TrueNAS ZFS

$712.98



Dell PowerEdge R630 8SFF 2.6Ghz 20-Core 128GB Mem 2x10G+2x1G NIC 2x750W PSU picture

Dell PowerEdge R630 8SFF 2.6Ghz 20-Core 128GB Mem 2x10G+2x1G NIC 2x750W PSU

$399.04



CSE-118 Supermicro 1U 3x GPU Server  2.6Ghz 20-C 128GB CX353A 2x1600W PSU Rails picture

CSE-118 Supermicro 1U 3x GPU Server 2.6Ghz 20-C 128GB CX353A 2x1600W PSU Rails

$454.03



Dell Poweredge R640 Server | 2x Xeon Gold 6132 | 128GB | H730P | 8x HDD Trays picture

Dell Poweredge R640 Server | 2x Xeon Gold 6132 | 128GB | H730P | 8x HDD Trays

$1849.00



Intel Xeon E5-2680 v4 SR1N7 2.4GHz 14-Core 3.5MB 35MB Socket 2011-3 Server CPU picture

Intel Xeon E5-2680 v4 SR1N7 2.4GHz 14-Core 3.5MB 35MB Socket 2011-3 Server CPU

$11.99



Intel Xeon E5-2697A V4 2.6GHz CPU Processor 16-Core Socket LGA2011 SR2K1 picture

Intel Xeon E5-2697A V4 2.6GHz CPU Processor 16-Core Socket LGA2011 SR2K1

$39.99



Intel Xeon E5-2680 v4 2.4GHz 35MB 14-Core 120W LGA2011-3 SR2N7 picture

Intel Xeon E5-2680 v4 2.4GHz 35MB 14-Core 120W LGA2011-3 SR2N7

$17.99



SR1XP Intel Xeon E5-2680 v3 12 Core 30MB 2.5GHz LGA 2011-3 A Grade Processor picture

SR1XP Intel Xeon E5-2680 v3 12 Core 30MB 2.5GHz LGA 2011-3 A Grade Processor

$5.09



HP Workstation Z640 2x Xeon E5-2623V4 32GB Ram Dual 256GB SSD K420 Linux GA picture

HP Workstation Z640 2x Xeon E5-2623V4 32GB Ram Dual 256GB SSD K420 Linux GA

$234.98



Rare WaterCooled HP Z800 Workstation Dual Xeon X5680 16GB RAM 120GB SSD Nvidia picture

Rare WaterCooled HP Z800 Workstation Dual Xeon X5680 16GB RAM 120GB SSD Nvidia

$279.56