mentby.com
Blog | Jobs | Help | Signup | Login

Hi,
I have dell inspiron 5010 with windows 7 with microsoft security essentials as antivirus software. I installed ubuntu 10.04 on the machine. I think it works good. But when I start windows it itells me there is a trojan in the boot sector on the HDD. Removing it is okay, but at the next restart the same warnning pops up again.
Could it be possible that microsoft security essentials considers the grub as trojan??
 
thanks
ali


Ali Hassan Sat, 27 Nov 2010 15:52:49 -0800

<snicker> I'd say you're asking for weirdness like that when you mix
anything Microsoft with the free unixverse.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Mark Hull-Richter Sat, 27 Nov 2010 19:06:23 -0800

Wait a minute!  I thought dual-booting created partitions that cannot be
breached!
--N.B.
--
Please avoid sending me Word or PowerPoint attachments.
See  http://www.gnu.org/philosophy/no-word-attachments.html


Nathan Bahn Sat, 27 Nov 2010 19:21:45 -0800

No.  Windows has almost non-existent support for any filesystem not it's
own, and therefore can't access the files on Linux partitions that are
not formatted as FAT or NTFS, but that has nothing to do with
un-breachable partitions.  Regardless, all Operating systems have to
share the same Master boot record; there is only one for the system.


rashkae Sat, 27 Nov 2010 19:56:39 -0800

But wait...  Windows *can* access a Linux partition, though it does
require installing third party software to enable it to do so.

--

Roy Smith
Linux Mint 10 \ Thunderbird 3.1.6
Registered Linux User #488144
11/27/2010 11:13:22 PM


Roy Smith Sat, 27 Nov 2010 21:17:43 -0800

Aside from the fact that this is almost certainly a dangerously foolish ida....

Wubi will install Ubuntu inside a Windows system, though I don't know
the details.

I consider anything requiring Windows that runs other than as a VM on
top of Linux is a mistake unless you have a really good reason to boot
Windows on the hardware (like CAD and other, similar things that are
hard to find for Linux systems).

And that's just me....

OT: I just found this page of nice slogans about this very subject: http://humorix.org/slogans/

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Mark Hull-Richter Sat, 27 Nov 2010 21:38:12 -0800

Ali, as you are probably aware, most of us here don't use microsoft
security essentials, but can you let us know the name of the 'trojan'
which you deleted harmlessly?

Regards - Goh Lip


Goh Lip Sat, 27 Nov 2010 22:35:19 -0800

Yes, that's just you.....    :)


Goh Lip Sat, 27 Nov 2010 22:36:20 -0800

A good reason to use dual boot rather than running windows in a VM is
if one bought a PC with Windows installed and it did not come with a
set of install CDs, only the recovery discs that restore the whole
disc to it's initial state.  I believe one does not have the option in
that case.

Colin


Colin Law Sun, 28 Nov 2010 01:55:30 -0800

Yes, it's possible.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Sun, 28 Nov 2010 02:41:52 -0800

core.img is embedded into the post-MBR gap and not a partition.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Sun, 28 Nov 2010 02:42:50 -0800

It's neither dangerous nor foolish. You might want to access your "~"
from Windows. I've done so pre-Win7 regularly with, IIRC, ext2fs.sys.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Sun, 28 Nov 2010 02:45:43 -0800

1

to have Win7 Pro or Win7 Ultimate in order to install Win7 legally in
a VM. I can't find anything on its web site about this so it may not
(no longer) be the case.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Sun, 28 Nov 2010 03:11:25 -0800

Thanks guys,
 
As for Goh's question:
 
Trojan:DOS/Alureon.A
boot:\\.\PHYSICALDRIVE0\(MBR)\(MBR)

Now two days, Ubuntu and Windows are working, but the warning of the Trojan is still there.
 
Thanks,
ali
 
PS: I like ubuntu and use it for work (research), I use windows for home & entertainment  ...


Ali Hassan Sun, 28 Nov 2010 04:43:00 -0800

What do you need Windows for that you cannot do in Ubuntu?

Colin

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listinfo/ubuntu-users


Colin Law Sun, 28 Nov 2010 05:22:20 -0800

Not from grub.
but see below to get rid of the windows trojan.

http://www.microsoft.com/security/portal/Threat/Encyclopedia[..]

http://forums.cnet.com/7723-6132_102-330853.html

Good luck - Goh Lip


Goh Lip Sun, 28 Nov 2010 05:49:25 -0800

Try watching a Netflix streaming movie.

Try installing Microsoft Streets and Trips.

Try getting a Wacom pad to work. Mine's a CT-460, Bamboo pen and touch.

--
"A good moral character is the first essential in a man." George Washington

_ _...  ..._ _
_._  ._  .....  ._..  ...  .._


Billie Erin Walsh Sun, 28 Nov 2010 06:25:55 -0800

I was only asking.

Colin

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listinfo/ubuntu-users


Colin Law Sun, 28 Nov 2010 06:31:35 -0800

ext2fs.sys won't work with ext4 IIRC. The dangerous part is if you use
ext2fs.sys to access your ext2/3 with write permissions. I do it, but
unless you know what you are doing, and are *very* careful, it is quite
possible to wipe out important chunks of your linux install from Win.
You also run the risk of a Virus infected Win writing to the mounted
linux partition without realizing that it has.


NoOp Sun, 28 Nov 2010 10:51:28 -0800

T.H.--

I am sorry, but I know what neither a core.img nor a post-MBR gap is.  May I
trouble you for a link to some references?

--N.B.
--
Please avoid sending me Word or PowerPoint attachments.
See  http://www.gnu.org/philosophy/no-word-attachments.html


Nathan Bahn Sun, 28 Nov 2010 15:09:35 -0800

Maybe these will help:

$ locate core.img
/boot/grub/core.img

and

http://www.gnu.org/software/grub/manual/grub.html#Images
<quote>
On PC systems using the traditional MBR partition table format, the core
image is usually installed in the "MBR gap" between the master boot
record and the first partition, or sometimes it is installed in a file
system and read directly from that. The latter is not recommended
because GRUB needs to encode the location of all the core image sectors
in diskboot.img, and if the file system ever moves the core image around
(as it is entitled to do) then GRUB must be reinstalled; it also means
that GRUB will not be able to reliably find the core image if it resides
on a different disk than the one to which boot.img was installed.
</quote>

There can be issues is the "MBR gap" is too small, or the core.img/grub
is too large. Sample: https://bugs.launchpad.net/ubuntu/+source/grub2/+bug/423412
[karmic alpha: grub2 core.img with mdraid & lvm too big to embed]


NoOp Sun, 28 Nov 2010 15:34:59 -0800

NoOp--
Thank you.
--N.B.
--
Please avoid sending me Word or PowerPoint attachments.
See  http://www.gnu.org/philosophy/no-word-attachments.html


Nathan Bahn Sun, 28 Nov 2010 16:33:58 -0800

One has the option to get the install CDs or ask for money back.


goodwin Sun, 28 Nov 2010 18:17:06 -0800

No, /I/ wouldn't want to do that - sorry.


goodwin Sun, 28 Nov 2010 18:24:54 -0800

Works fine.


No thank you, it is microsoft and I don't want it in even the same room as any
of my computers.

I don't have one, never have, and if they don't support Linux they will never
sell me one either.

--
73 de N7PSV aka Pastor JW <n><   PDGA# 35276 http://the-inner-circle.org   _Registered Kubuntu User: #27403 http://groups.yahoo.com/group/the_original_inner_circle http://h.webring.com/hub?ring=universalministr


Pastor JW Sun, 28 Nov 2010 20:20:10 -0800

Says OS not supported and requires Silverlight. I would be interested in
how you managed.

Regardless who makes it it's the best map software around. A GPS device
with a 17 inch, at least on my laptop, screen. Way better than Tom Tom.

It's not that they don't support Linux. Linux doesn't support it. As
all was lost. Would have to jump through the hoops again every time you
boot the computer. Just more trouble than it's worth.

--
"A good moral character is the first essential in a man." George Washington

_ _...  ..._ _
_._  ._  .....  ._..  ...  .._


Billie Erin Walsh Sun, 28 Nov 2010 20:39:56 -0800

There have been cases where MS and other Windows software has killed
grub2's core.img but flagging it as a known trojan? I don't think so.


Tom H Sun, 28 Nov 2010 23:49:46 -0800

ext4 support is unfortunately non-existent as is Win7 support.

The same applies to mounting an ntfs partitions with write
permissions... Or using "sudo"/"sudo -s"/"sudo -i"... Or...

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Sun, 28 Nov 2010 23:54:29 -0800

Heard of Google?

Anyway:

Core.img is grub2's equivalent of grub1's stage 1.5.

If you run "fdisk -lu /dev/sda", you'll see that /dev/sda1 starts at
63 (for a default Ubuntu install; Lubuntu and Fedora start at 2048).
Sector 0 is the MBR and sectors 1-62 are the post-MBR gap.

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listino/ubuntu-users


Tom H Mon, 29 Nov 2010 00:13:30 -0800

T.H.--
Thanks for the info.
--N.B.
--
Please avoid sending me Word or PowerPoint attachments.
See  http://www.gnu.org/philosophy/no-word-attachments.html


Nathan Bahn Mon, 29 Nov 2010 01:41:15 -0800

Not when one bought the laptop several years ago one doesn't.

Colin

--
ubuntu-users mailing list
ubuntu-users*******
Modify settings or unsubscribe at:  https://lists.ubuntu.com/mailman/listinfo/ubuntu-users


Colin Law Mon, 29 Nov 2010 03:24:45 -0800



Related Topics

Post a Comment