clamscan found this: BOOTx64.EFI: Win.Trojan.Agent-1428496 FOUND

Liam Proven lproven at gmail.com
Thu Aug 25 11:52:36 UTC 2016


On 25 August 2016 at 01:32, Joel Rees <joel.rees at gmail.com> wrote:
> Then I took the liveUSB home and scanned it with clamscan on my home
> box. Found this:
>
>>  /media/Ubuntu 14.04 ja amd64/EFI/BOOT/BOOTx64.EFI: Win.Trojan.Agent-1428496 FOUND
>
> I built the live USB back in April 2014, apparently.


My interpretation would be that your USB key has been infected by
malware on your friend's troublesome Wndows machine. EFI boot
partitions are FAT32; so are live keys. They're both readable &
writable by Windows.

-- 
Liam Proven • Profile: http://lproven.livejournal.com/profile
Email: lproven at cix.co.uk • GMail/G+/Twitter/Flickr/Facebook: lproven
MSN: lproven at hotmail.com • Skype/AIM/Yahoo/LinkedIn: liamproven
Cell/Mobiles: +44 7939-087884 (UK) • +420 702 829 053 (ČR)




More information about the ubuntu-users mailing list