LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Non-*NIX Forums > General
User Name
Password
General This forum is for non-technical general discussion which can include both Linux and non-Linux topics. Have fun!

Notices


Reply
  Search this Thread
Old 04-16-2008, 08:28 PM   #1
btbx
Member
 
Registered: Jun 2007
Posts: 67

Rep: Reputation: 15
Smile Cleaning Infected Windows Document Using Linux LiveCD


Some MS Word and PDF documents are infected by virus, worm, spyware, trojan etc.
Is it possible to CLEAN infected Windows Document files / PDF using Linux LiveCD?

My idea:
1. Use Linxu LiveCD with OpenOffice.
This version of open office can read/write MS Word Document.
2. The LiveCD can read/write NTFS or FAT partition.
3. Read the infected MS Word document using open office.
4. Write the document using new OpenOffice format.
5. Delete the old infected MS Word files.
6. Convert the OpenOffice format to MS Word document format.

For PDF:
1. Convert infected PDF to Postscript using PDF2PS.
2. Delete the old infected PDF file.
3. Convert the Postscript to PDF using PS2PDF.

Is the above idea possible?
Can this method clean every malware on the document file?

Thank you.
 
Old 04-16-2008, 09:30 PM   #2
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
Quote:
Originally Posted by btbx View Post
Some MS Word and PDF documents are infected by virus, worm, spyware, trojan etc.
Is it possible to CLEAN infected Windows Document files / PDF using Linux LiveCD?
Well, ClamAV doesn't have support for cleaning infected files last time I checked, but I would imagine some closed-source proprietary GNU/Linux anti-virus products do. If you find one, you could just add it to the live CD (as long as you aren't violating the license agreement).

Quote:
My idea:
1. Use Linxu LiveCD with OpenOffice.
This version of open office can read/write MS Word Document.
2. The LiveCD can read/write NTFS or FAT partition.
3. Read the infected MS Word document using open office.
4. Write the document using new OpenOffice format.
5. Delete the old infected MS Word files.
6. Convert the OpenOffice format to MS Word document format.

For PDF:
1. Convert infected PDF to Postscript using PDF2PS.
2. Delete the old infected PDF file.
3. Convert the Postscript to PDF using PS2PDF.

Is the above idea possible?
Can this method clean every malware on the document file?

Thank you.
Well, this idea is a completely different approach than using an anti-virus like you first described. I think your idea sounds really weird in theory (at least to me), but should actually work in practice, at least in cases where the information you want hasn't been corrupted by the infection. If you desperately need to access the information in an infected document then using a live CD is definitely one way to do it. However, I'd suggest disconnecting your hard drive and stuff so that you don't risk affecting your real installation in case there's more to the infected file than a Windows-only virus. Having your network firewall isolate the box you are doing this on might also be a good idea.

Last edited by win32sux; 04-16-2008 at 09:59 PM.
 
Old 04-17-2008, 12:24 AM   #3
ronlau9
Senior Member
 
Registered: Dec 2007
Location: In front of my LINUX OR MAC BOX
Distribution: Mandriva 2009 X86_64 suse 11.3 X86_64 Centos X86_64 Debian X86_64 Linux MInt 86_64 OS X
Posts: 2,369

Rep: Reputation: Disabled
Some time ago I was talking to my computer supplier about Window viruses and he told me that there is not one virus scanner
for windows who can detect and destroy all viruses ,malware and so on He said if you like to be sure that you,re computer
is totally free of all that nasty stuff run two or three virus scanner I really do not know if he is right or not


all the best
 
Old 04-17-2008, 12:38 AM   #4
billymayday
LQ Guru
 
Registered: Mar 2006
Location: Sydney, Australia
Distribution: Fedora, CentOS, OpenSuse, Slack, Gentoo, Debian, Arch, PCBSD
Posts: 6,678

Rep: Reputation: 122Reputation: 122
Isn't the easy version of what you are trying to do in approach (1) just to strip out any macros in word docs? My virus knowledge is pretty poor, but I thought infested office docs had macro issues rather than text problems.

On the accuracy issue, I've never seen one of those side-by-side reviews/tests of virus checkers get what I'd call all that close to 100% The odd one is in the 90's and generall downhill from there.
 
Old 04-17-2008, 01:29 AM   #5
win32sux
LQ Guru
 
Registered: Jul 2003
Location: Los Angeles
Distribution: Ubuntu
Posts: 9,870

Rep: Reputation: 380Reputation: 380Reputation: 380Reputation: 380
Because this thread is about fixing infected Windows files I've moved it to General. I'll leave a redirect in Security for a couple weeks, however, as even though this deals primarily with Windows, the methods chosen by the OP do involve GNU/Linux - albeit indirectly.

Last edited by win32sux; 04-17-2008 at 01:31 AM.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Building a Windows LiveCD with Bart's PE for Linux users spurious LinuxQuestions.org Member Success Stories 2 10-06-2007 11:01 PM
Using Windows boot manager without Linux LiveCD install EisBlade Linux - Newbie 2 04-10-2007 04:31 AM
More Than 90% Of Linux Systems Have Never Been Infected By A Virus masand Linux - News 11 10-14-2004 11:29 PM
Should I delete infected(?) Windows ME OS before installing Linux? genyes Linux - Newbie 4 06-10-2004 08:59 PM
Linux.slapper infected system! Help!! cmiwebmaster Linux - Newbie 1 04-16-2003 05:46 PM

LinuxQuestions.org > Forums > Non-*NIX Forums > General

All times are GMT -5. The time now is 12:59 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration